steirerjobs.at
HTML metadata
Technology
- CMS
- Next.js
Third-party hosts loaded (1)
- a.storyblok.com×17
Social
DNS records live
- NS
-
- ns5.kasserver.com
- ns6.kasserver.com
- MX
-
- 10 w00e9360.kasserver.com
- TXT
-
ds8hst1528c2ki2fqbt1360k39obc2vb0h344f9mrkbk51lnep5pnews.tirolerjobs.at news.suedtirolerjobs.it news.salzburgerjobs.at news.steirerjobs.at news.wienerjobs.at survey _globalsign-domain-verification=DJr-VVG0PhaH7We0DnokKeqot3FAKR-xpSBQ2epwal
- Verified for
-
Email authentication partial
- SPF
-
v=spf1 a mx include:u18126827.wl078.sendgrid.net -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:236e54db@mxtoolbox.dmarc-report.com; ruf=mailto:236e54db@forensics.dmarc-report.com; fo=1policy: none (monitoring only) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAw00TECbDWwfFdNDtds2Xoj3jsKlQzc5wbSFrEPXcOYAkDPTpb3oWgLdLKo0duO+EhaqXEe6Yvf+dg9WaPF… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCr+mn/2VMIneenEr5Bk7ze3TUS0wbqidsok9hRJhBtx0ZYYPsdQ6TAffxHejaxQgzN5/l/+ByIkveJP9bThdqpaL…
selectors probed - s1:
Certificate (current)
R12
Expires in 80 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
no-referrer, strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(), document-domain=(), encrypted-media=(), fullscreen=(), geolocation=(), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(), usb=(), xr-spatial-tracking=()- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self' https://newapp.etracker.com https://*.devloc.site; default-src 'self' *.storyblok.com; script-src 'self' 'nonce-ODg1MzcyMzUtZTliZC00ODQ5LWFjZTktZmU5ODQwMmU5MTAx' 'strict-dynamic' 'unsafe-eval' *.googletagmanager.com *.googlesyndication.com *.google-analytics.com *.googleadservices.com *.adtrafficquality.google *.google.com *.google.de *.google.at *.google.ch *.google.pl snap.licdn.com connect.facebook.net accent.tirolerjobs.at *.devloc.site *.gstatic.com t--1.0.0--i6nnxym9p9wb--f.tirolerjobs.at *.etracker.com *.etracker.de *.spotify.com stats.steirerjobs.at ipinfo.io *.digiaccess.org front.steirerjobs.at cdn.ckeditor.com; style-src 'self' 'unsafe-inline' fonts.googleapis.com t--1.0.0--i6nnxym9p9wb--f.tirolerjobs.at accent.tirolerjobs.at *.devloc.site *.digiaccess.org cdn.ckeditor.com; img-src 'self' data: blob: www.steirerjobs.at beta2.steirerjobs.at www.facebook.com *.google-analytics.com *.analytics.google.com *.googletagmanager.com *.googlesyndication.com *.ad- strict-transport-security
max-age=2592000; includeSubDomains