thw-rinteln.de
HTML metadata
Technology
- Server
- nginx
Social
Registration
- Updated
- 2008-02-06
- Name servers
-
- docks20.rzone.de.
- shades11.rzone.de.
DNS records live
- NS
-
- docks20.rzone.de
- shades11.rzone.de
- MX
-
- 5 smtpin.rzone.de
Certificates
Loading certificate
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN, SAMEORIGIN- permissions-policy
microphone=(), camera=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'nonce-OOkN-H6VaNX6QjQDURLpGALhafAb1iGyIzsnodL6BJ4k6B3o55jhvw' data: https://*.openstreetmap.org 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: *.ytimg.com *.vimeocdn.com https://*.openstreetmap.org https://maps.ov-cms.thw.de https://*.dwd.de; base-uri 'self'; frame-src *.youtube-nocookie.com *.vimeo.com; connect-src 'self' data: https://*.openstreetmap.org https://maps.dwd.de; report-uri https://ov-cms.thw.de/csp-reporter- strict-transport-security
max-age=31536000- content-security-policy-report-only
default-src 'self'; script-src 'self' 'nonce-OOkN-H6VaNX6QjQDURLpGALhafAb1iGyIzsnodL6BJ4k6B3o55jhvw' data: https://*.openstreetmap.org 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: *.ytimg.com *.vimeocdn.com https://*.openstreetmap.org https://maps.ov-cms.thw.de https://*.dwd.de; base-uri 'self'; frame-src *.youtube-nocookie.com *.vimeo.com; connect-src 'self' data: https://*.openstreetmap.org https://maps.dwd.de; report-uri https://ov-cms.thw.de/csp-reporter