sparkasse-aachen.de
HTML metadata
Technology
Third-party hosts loaded (1)
- www.sparkasse.de×1
Social
Contact
Registration
- Updated
- 2023-12-12
- Name servers
-
- ns1.relaix.net.
- ns2.relaix.net.
- ns3.relaix.net.
DNS records live
- NS
-
- ns1.relaix.net
- ns2.relaix.net
- ns3.relaix.net
- MX
-
- 10 g01es.mail.s-web.de
- 10 g02es.mail.s-web.de
- TXT
-
Show 6 TXT records
_mr4n72i4q2a93hg1yy798uv0zenx87r_vsgm79136out2ymtz5ggbjsnlzd2wzn_6aggvpxfg3qojwd34u8ape2y360kxen_lvvaf02p74vn0ukarddmaw0732trupb_s1r77mgcreadzd7i8hapbwh6j4worjdv=spf1 include:spf.mail.s-web.de include:spf.sosafe.de include:_spf.pixelpark.eu include:_spf.axs-net.de ip4:109.234.127.0/24 ip4:80.82.206.0/26 ip4:185.98.184.0/24 ip4:93.159.248.64/28 ip4:3.67.54.56 ip4:3.65.81.9 ip4:217.68.159.64 ip4:217.68.159.63 ip4:217.68.146.193 ip4:195.200.194.99 ~all
- Verified for
-
- Apple
- Cisco
Certificate (current)
DigiCert G2 TLS EU RSA4096 SHA384 2022 CA1
Expires in 148 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
script-src 'self' blob: https://morris-server.de:8801 'unsafe-inline' 'unsafe-eval'; style-src 'self' 'unsafe-inline'; img-src 'self' data: blob: https:; font-src 'self' data:; media-src 'self' data: blob: https://api.sparkassen-mediacenter.de https://sparkassen-mediacenter.de https://cdn.sparkassen-mediacenter.de- strict-transport-security
max-age=31536000