scheurich-shop.de
HTML metadata
Technology
- Server
- Apache
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- maxcdn.bootstrapcdn.com×2
- matomo.constancy.biz×1
- www.googletagmanager.com×1
Social
Contact
Registration
- Updated
- 2021-08-10
- Name servers
-
- ns.udag.de.
- ns.udag.net.
- ns.udag.org.
DNS records live
- NS
-
- ns.udag.de
- ns.udag.net
- ns.udag.org
- MX
-
- 10 mail.scheurich-shop.de
Email authentication partial
- SPF
-
v=spf1 mx ip4:51.89.104.176 ip4:51.89.104.180 ip4:51.89.74.4 ip4:46.252.25.244 ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@constancy.de; pct=100; ri=86400; sp=none; adkim=r; aspf=rpolicy: none (monitoring only) · sp=none - DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 66 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- short HSTS max-age
- missing Content Security Policy
- weak frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN, SAMEORIGIN- permissions-policy
geolocation=(), camera=(), microphone=(), payment=(self 'https://www.paypal.com' 'https://www.sandbox.paypal.com' 'https://api.paypal.com' 'https://api.sandbox.paypal.com' 'https://partnerapi.staging.bezahl.de' 'https://api.bezahl.de'), fullscreen=(self)- x-content-type-options
nosniff- strict-transport-security
max-age=300- content-security-policy-report-only
font-src fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com www.paypalobjects.com *.fontawesome.com *.cloudflare.com *.twitter.com https://www.gstatic.com *.twimg.com *.trustedshops.com *.googleapis.com *.google.com *.youtube.com maps.googleapis.com *.justsellingapp.com *.justsellingapp.de *.justselling.de https://fonts.gstatic.com fonts.googleapis.com https://fonts.bunny.net maxcdn.bootstrapcdn.com *.skynettechnologies.com *.skynettechnologies.us https://vlibras.gov.br https://dicionario2.vlibras.gov.br https://acessos.vlibras.gov.br https://static.unzer.com https://applepay.cdn-apple.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com *.twitter.com *.google.com *.youtube.com maps.googleapis.com *.justsellingapp.com *.justse