shd-online.de
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (3)
- app.usercentrics.eu×2
- www.googletagmanager.com×2
- api.usercentrics.eu×1
Social
Contact
- Phone
- Address
- Drescherhäuser 5B, 01159, Dresden, DE
Registration
- Updated
- 2026-03-12
- Name servers
-
- ns81.domaincontrol.com.
- ns82.domaincontrol.com.
DNS records live
- NS
-
- ns81.domaincontrol.com
- ns82.domaincontrol.com
- MX
-
- 10 mx01.hornetsecurity.com
- 20 mx02.hornetsecurity.com
- 30 mx03.hornetsecurity.com
- 40 mx04.hornetsecurity.com
- TXT
-
Show 6 TXT records
apple-domain-verification=ued42KOoBGj57Vr3111d6040960af0fbe20e6f91814fa03ae037e3b437ae08755fbeb14c07bc11e_zsxws71hajyjdqyuwep6qocemdrwb4aatlassian-domain-verification=6nnZfsUZHW/BM2v6kjxmCFhkVPXsQh5RPOOb0SVO2AQdfQ8CJW7Y9xavUkeS9fvi8nnkqxfnlhrcmdjqkjdzz52x6qwxlvls195912cef5926396ce9ea0994779cb18c46c50f1c98f63cfe3b3da3340f0365
Email authentication strong
- SPF
-
v=spf1 ip4:134.119.60.167 ip4:52.212.19.177 ip4:23.88.90.19 include:spf.protection.outlook.com include:spf.hornetsecurity.com include:spf.crsend.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; pct=100; rua=mailto:a.4q7nvas3@reports.hornetdmarc.compolicy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCTGiJ6JdP8+Vw05GiZX16ISWWLv8q6pPQcbII5t+jFabWjyZI74jmDFuHo9dDS3XJjI6pp1kwjfc9jqh9ELm…
selectors probed - selector1:
Certificate (current)
Encryption Everywhere DV TLS CA - G2
Expires in 93 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
Header values
- referrer-policy
origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(), midi=(),notifications=(),push=(),sync-xhr=(),accelerometer=(), gyroscope=(), magnetometer=(), payment=(), camera=(), microphone=(), usb=(), xr=(), speaker=(self), vibrate=(), fullscreen=(self)- content-security-policy
default-src 'self' *; script-src-elem 'self' 'unsafe-inline' 'unsafe-eval' blob: *; script-src 'self' 'unsafe-inline' 'unsafe-eval' *; img-src 'self' data: *; style-src 'self' 'unsafe-inline' *; font-src 'self' * data:; object-src 'self' *; frame-src 'self' *; worker-src 'self' blob: *; connect-src 'self' *- strict-transport-security
max-age=31536000; includeSubDomains; preload