schule-des-schreibens.de
HTML metadata
Technology
- Server
- Apache
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (2)
- app.usercentrics.eu×1
- www.fernstudiumcheck.de×1
Social
Contact
- Phone
- Address
- Doberaner Weg 18, 22143, Hamburg, Deutschland
Registration
- Updated
- 2023-06-07
- Name servers
-
- ns1.rrpproxy.net.
- ns2.rrpproxy.net.
- ns3.rrpproxy.net.
DNS records live
- NS
-
- ns1.rrpproxy.net
- ns2.rrpproxy.net
- ns3.rrpproxy.net
- MX
-
- 10 schuledesschreibens-de01ee.mail.protection.outlook.com
- TXT
-
RhXoEfSYKSxoG4PS0pt9x6kecbaONllnpvgYbUp3K9BdfeNQd+JtY6fyU7QClQQ3DGm9S+Ydob3tPao258Ug1A==k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCfvgMo245lekN+eHQipbDcEzEzAYtWg3/OAvp66FLqRnF29yG/rUddTjFhA+KgZ5F3kXqK/ksX3N+oVFh150zZRc9HNxbJNdTeb/m+EKMpwjiejL9mb8yuJo36QqEsgz5NohU8jBj10vNhkdnsjhLumO/VJQ/LiU78kOvJsT+EEwIDAQAB;
- Verified for
-
- Microsoft 365
Email authentication weak
- SPF
-
v=spf1 mx a:pxmail1.fernschulen-hh.de ip4:82.141.26.56 ip4:217.6.14.131 include:spf.protection.outlook.com include:_spf.salesforce.com ~allsoftfail (~all) - DMARC
- not published
- DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6Za6viOQQLIy4KhYsmrgRPvTnciELxxzgt4z7Hn+y5EbjEG0T7tEciK2YGmDgIaTA6P4LF33Bk64I2… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAr3zpd9NEgLdIXdiGdLTdGlRksdEiJllX+czgGusf91G9z2lYpkcnH9GVVgAsMKyP+KOqzQP02bTDJu…
selectors probed - selector1:
Certificate (current)
R13
Expires in 30 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(), autoplay=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' https: data: blob:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https: *.visualwebsiteoptimizer.com *.vwo.com *.googletagmanager.com *.usercentrics.eu *.varify.com; worker-src 'self' blob:; style-src 'self' 'unsafe-inline' https: *.usercentrics.eu; img-src 'self' data: https: *.visualwebsiteoptimizer.com *.vwo.com *.usercentrics.eu; font-src 'self' data: https:; connect-src 'self' https: *.visualwebsiteoptimizer.com *.vwo.com *.usercentrics.eu *.varify.com; frame-src 'self' https: *.visualwebsiteoptimizer.com *.vwo.com *.googletagmanager.com *.usercentrics.eu; frame-ancestors 'self'- strict-transport-security
max-age=31536000