stadtmobil.de
HTML metadata
Technology
- Server
- Apache
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (1)
- consent.cookiebot.com×1
Registration
- Updated
- 2019-11-28
- Name servers
-
- ns1.first-ns.de.
- robotns2.second-ns.de.
- robotns3.second-ns.com.
DNS records live
- NS
-
- ns1.first-ns.de
- robotns2.second-ns.de
- robotns3.second-ns.com
- MX
-
- 5 mailin.punkt.de
- TXT
-
MS=ms28933105Stadtmobil-Gruppe
Email authentication strong
- SPF
-
v=spf1 ip4:217.29.41.110 ip6:2a00:b580:8000:11:44e8:ab80:816:77e2 include:_spf.cantamen.de include:_spf.google.com include:spf.protection.outlook.com include:spf.nl2go.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=nonepolicy: none (monitoring only) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnvtNNXQBmshvXHXR0jTtgdPQQhbloCE+KddaaWO+GbaZWBTepCrhAIieUFGUBo3iCa2c1HD1u531hF…
selectors probed - google:
Certificate (current)
E8
Expires in 17 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(self "https://www.stadtmobil.de"), microphone=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.stadtmobil.de statistik.stadtmobil.de *.cookiebot.com www.google.com www.gstatic.com www.meinungsmeister.de statics.gurado.de connect.facebook.net 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: https://*.stadtmobil.de www.meinungsmeister.de imgsct.cookiebot.com *.openstreetmap.org www.facebook.com; base-uri 'self'; frame-src 'self' *.stadtmobil.de consentcdn.cookiebot.com *.youtube-nocookie.com *.cantamen.de www.google.com app.cituro.com www.vvs.de www.meinungsmeister.de www.stadtradeln.de login.stadtradeln.de *.openstreetmap.org widget.gurado.de; form-action 'self' https://www.stadtmobil.de https://*.stadtmobil.de https://*.stadtmobil.prev.ueberbit.de https://ewi3-stadtmobil.cantamen.de; style-src 'self' 'unsafe-inline' *.cookiebot.com 'report-sample'; style-src-elem 'self' 'unsafe-inline' 'report-sample'; font-src 'self' data: https://*.stadtmobil.de fonts.gstatic.com fonts.go- strict-transport-security
max-age=31536000; includeSubDomains
Links to (1)
- adac.de×2