stargames.de
HTML metadata
Technology
- Server
- volt-adc
- Analytics
-
- Google Analytics
- Google Tag Manager
Third-party hosts loaded (6)
- stargames-de-cdn-static.gt-cdn.net×21
- www.googletagmanager.com×2
- cdn.dfsdk.com×1
- cdn.optimizely.com×1
- rmg-crm-api-at.greentube.com×1
- www.google-analytics.com×1
Registration
- Updated
- 2024-04-29
- Name servers
-
- edns5.ultradns.biz.
- edns5.ultradns.com.
- edns5.ultradns.net.
- edns5.ultradns.org.
- ns0051.secondary.cloudflare.com.
- ns0200.secondary.cloudflare.com.
DNS records live
- NS
-
- edns5.ultradns.biz
- edns5.ultradns.com
- edns5.ultradns.net
- edns5.ultradns.org
- ns0051.secondary.cloudflare.com
- ns0200.secondary.cloudflare.com
- MX
-
- 10 mx1.greentube.com
- 20 mx2.greentube.com
- TXT
-
Show 8 TXT records
facebook-domain-verification=yb9uj0aoui6rvgumswv0wa2x4opqukgoogle-site-verification=6L_ijxPuYp8Si2GIlDD5KopuEb7NPasTyB6DNRNp5Hkgoogle-site-verification=aqFP3JdwujHEaJjyB7cE4HA6Cf84xtbqwBKpomdqacMgoogle-site-verification=ig10ShW3CyhTqBesl0TIMH0PeAAqumnQY1VoG59rC1gMS=ms78619026_254bks6naye9t8wv7v9u9dv3gfbpi8k_ag6mmo260tz3gqnve2k6zlw8aubqyxv_k46tuqeb6idv9ah361mftypn7dczij5
Email authentication partial
- SPF
-
v=spf1 include:spf.greentube.com include:u1975883.wl134.sendgrid.net include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; adkim=r; aspf=s; sp=none; rua=mailto:report-dmarc@greentube.com; ruf=mailto:report-dmarc@greentube.com;policy: none (monitoring only) · sp=none - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwXusD8BBUruKTGEhnd6y5XgWXy6H1JpEScXSUOTZQS9UGyfpaedTxadl9K0XCKQdq0RV6dz+15FW/XYZVz… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQD462KebB3L0lz1c/grIR8fYRzMlTGKykaMB4bLJoD/VAqxUKgt3EMVPsfAIVogYFyUaocymKGoRfCnaZm3+AhGlX…
selectors probed - s1:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 143 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- cross-origin-opener-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src *;script-src * 'unsafe-inline' 'unsafe-eval';style-src * 'unsafe-inline';img-src * data: blob:;child-src * blob:;connect-src *;font-src * data:;object-src *;media-src *;frame-src *;base-uri *;form-action *;frame-ancestors *;script-src-attr *;upgrade-insecure-requests- strict-transport-security
max-age=31536000- cross-origin-opener-policy
same-origin- cross-origin-resource-policy
same-origin