stiwa.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- CloudFront
- PHP
- 8.3.30 security-only
- Cookie consent
-
- Usercentrics
- Social widgets
-
- Vimeo Embed
Third-party hosts loaded (3)
- player.vimeo.com×1
- privacy-proxy.usercentrics.eu×1
- web.cmp.usercentrics.eu×1
Social
Contact
- Phone
- Address
- Salzburger Straße 52, 4800, Attnang-Puchheim, Austria
Registration
- Registrar
- Network Solutions, LLC
- Created
- 1996-12-10
- Expires
- 2026-12-09 189 days left
- Updated
- 2023-10-10
- Name servers
-
- ns1.stiwa.com
- secondary.ns.lagis.at
DNS records live
- NS
-
- ns1.stiwa.com
- secondary.ns.lagis.at
- MX
-
- 10 email.stiwa.com
- TXT
-
Show 5 TXT records
SqD4Iat5jwwLqNwMhi4ybGLlNl3J4I7cenyFAsRfVk01vW+vmV2829/66HDFLI28khtqEgWlfQxTaoDOY12guw==3mb896pqq24c6495lumkh4csj1amazonses:SnvqbQQSfa4nFTLjnJpMKUg+csLEWexxFC1ZanpGrxI=spycloud-domain-verification=a265e4d4-dbfe-4a00-87c8-d831446ba2c9MS=8AA5C491BFEB0A1D8F20FFE443FD3351BFE5CC58
- Verified for
-
- Apple
Email authentication strong
- SPF
-
v=spf1 a:email.stiwa.com ip4:193.104.82.0/24 ip4:212.183.16.200/32 ip4:212.183.16.201/32 ip4:212.183.0.26/32 ip4:83.164.137.22/32 include:spf.siwa.at include:spf.protection.outlook.com include:145810932.spf05.hubspotemail.net -allstrict (-all) - DMARC
-
v=DMARC1;p=quarantine;pct=100;rua=mailto:philipp.reisinger@stiwa.com;ruf=mailto:philipp.reisinger@stiwa.com;fo=1:d;aspf=r;adkim=r;ri=86400policy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCsqRnvj0ec7hOlyrDQWck29j6G5oBxxM46ypCZSsE00pNqnp4WR2oWgMN4pAc5aW0jDXjoM0owpd014AxHBi… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3ETFlws4AhnPcrOVxHfpX5Bf6G30rtx1t4Y+H2JsvvqnYCjJanthyxNU13RxmCil6QCVQQgIrkEWK+…
selectors probed - selector1:
Certificate (current)
R12
Expires in 60 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' data: *.google-analytics.com *.gstatic.com *.ggpht.com *.piwik.pro *.friendlycaptcha.eu *.hubspot.com *.hs-scripts.com *.hs-banner.com *.hscollectedforms.net *.hs-analytics.net *.hsforms.com *.googletagmanager.com *.google.com *.usercentrics.eu *.linkedin.com *.webtraxs.com *.scoreapp.com; img-src 'self' data: *.gstatic.com *.googleapis.com *.ggpht.com *.piwik.pro *.ytimg.com *.vimeo.com vimeo.com *.vimeocdn.com *.marketingsuite.info *.hubspot.com *.hs-scripts.com *.hs-banner.com *.hscollectedforms.net *.hs-analytics.net *.hsforms.com *.googletagmanager.com *.usercentrics.eu *.linkedin.com *.webtraxs.com *.leadinfo.net *.leadinfo.com; frame-src 'self' *.vimeo.com *.youtube-nocookie.com google.com *.google.com *.ggpht.com *.googlevideo.com *.cloudfront.net *.hubspot.com *.hs-scripts.com *.hs-banner.com *.hscollectedforms.net *.hs-analytics.net *.hsforms.com *.googletagmanager.com *.usercentrics.eu *.hsforms.net *.scoreapp.com; script-src 'self' 'unsafe-inline' 'unsafe- strict-transport-security
max-age=31536000
Links to (5)
Linked from (1)
- wsoe.at×1