schottlander.com
HTML metadata
Technology
- jQuery
- 3.7.0
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (4)
- cdn.jsdelivr.net×1
- code.jquery.com×1
- consent.cookiebot.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- CSL Computer Service Langenbach GmbH d/b/a joker.com
- Created
- 1996-06-29
- Expires
- 2026-06-28 23 days left
- Updated
- 2025-06-21
- Name servers
-
- ns1.gtt.net
- ns2.gtt.net
- ns3.gtt.net
DNS records live
- NS
-
- ns1.gtt.net
- ns2.gtt.net
- ns3.gtt.net
- MX
-
- 10 cluster1.eu.messagelabs.com
- 20 cluster1a.eu.messagelabs.com
- TXT
-
vanglffsb20n89ehh00j28acrv202111091134565sq8nk0e2iumkng99thesmfzbt8bilpuqaapqk5n51tbeshdq5
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com ip4:87.86.27.28 ip4:35.176.181.253 ip4:35.179.203.138 ip4:87.86.27.26 ip4:79.170.40.114 -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;pct=100;rua=mailto:b3baacbb12@rua.easydmarc.eu;ruf=mailto:b3baacbb12@ruf.easydmarc.eu;ri=86400;fo=1;policy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 181 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://consent.cookiebot.com https://consentcdn.cookiebot.com https://code.jquery.com https://cdn.jsdelivr.net https://cdnjs.cloudflare.com https://www.youtube.com https://www.youtube-nocookie.com https://s.ytimg.com https://www.gstatic.com https://www.google-analytics.com https://www.googletagmanager.com blob:; worker-src 'self' blob:; style-src 'self' 'unsafe-inline' https://cdnjs.cloudflare.com https://cdn.jsdelivr.net https://fonts.googleapis.com; img-src 'self' data: blob: https://imgsct.cookiebot.com https://*.umbraco.com https://our.umbraco.com https://i.ytimg.com https://img.youtube.com https://www.google-analytics.com; font-src 'self' data: https://cdnjs.cloudflare.com https://fonts.gstatic.com; connect-src 'self' blob: https://consentcdn.cookiebot.com https://api.umbraco.com https://our.umbraco.com https://*.umbraco.com https://login.microsoftonline.com https://ax-apibridge.schottlander.com https://sl-apibri