schmalzl-stein.at
HTML metadata
Technology
- Server
- nginx
- CMS
- Joomla
- jQuery
- 3.3.1 known XSS (<3.5)
Third-party hosts loaded (3)
- stackpath.bootstrapcdn.com×2
- cdnjs.cloudflare.com×1
- code.jquery.com×1
Contact
DNS records live
- NS
-
- dns1.a1.net
- dns2.a1.net
- dns3.a1.net
- MX
-
- 10 mx1.bon.at
- TXT
-
v=DMARC1;p=none;
Email authentication weak
- SPF
-
v=spf1 include:bspf.a1.net ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
EUNETIC RSA Domain Validation Secure Server CA 3
Expires in 37 days
HTTP security headers
- present
-
- x-content-type-options
- findings
-
- missing HSTS
- missing Content Security Policy
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff