tillmann-verpackungen.de
HTML metadata
Technology
- Server
- Apache
- CMS
- WordPress
Third-party hosts loaded (2)
- cookiemonkey.de×2
- widgets.kununu.com×1
Social
Contact
Registration
- Updated
- 2021-01-12
- Name servers
-
- ns19.domaincontrol.com.
- ns20.domaincontrol.com.
DNS records live
- NS
-
- ns19.domaincontrol.com
- ns20.domaincontrol.com
- MX
-
- 0 tillmannverpackungen-de02b.mail.protection.outlook.com
- TXT
-
sophos-domain-verification=dfcd867e7df504d7b254f542732751ce68defd380b62e044d02f21c1b4afb63c
Email authentication strong
- SPF
-
v=spf1 a ip4:185.66.135.7 include:spf.protection.outlook.com include:spf-de.emailsignatures365.com -allstrict (-all) - DMARC
-
v=DMARC1;p=quarantine;pct=20policy: quarantine · pct=20 - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPGHMjDKD6CWBCvL/aUYiiReq5vyKpO5jkhE6OFEYR/mVQPC0F+SlwnD5GPyfHG9PBy63Lp7UqimEv0Um7q0…
selectors probed - selector1:
Certificate (current)
Starfield Secure Certificate Authority - G2
Expires in 147 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
Header values
- referrer-policy
no-referrer- x-frame-options
allow-from https://wordpress.org/- permissions-policy
accelerometer=(), autoplay=(self), camera=(), encrypted-media=(), fullscreen=(self), geolocation=(self), gyroscope=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=(self), usb=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' https://*.emailsys1a.net https://newsletter.tillmann-verpackungen.de https://*.cookiemonkey.de https://cookiemonkey.de https://cdn.mouseflow.com https://*.facebook.net/ https://*.google.com https://*.googletagmanager.com https://*.google-analytics.com https://*.jsdelivr.net https://hcaptcha.com https://*.hcaptcha.com https://*.etracker.com https://*.etracker.de https://maps.googleapis.com 'unsafe-inline' 'unsafe-eval'; img-src 'self' https://*.emailsys1a.net https://*.cookiemonkey.de https://cookiemonkey.de https://*.kununu.com https://*.cleantalk.org/ https://www.facebook.com/ https://maps.gstatic.com https://maps.googleapis.com https://*.google-analytics.com https://secure.gravatar.com https://ps.w.org https://s.w.org https://www.etracker.de data:; style-src 'self' 'unsafe-inline' https://*.cookiemonkey.de https://cookiemonkey.de https://*.fonts.net https://*.myfonts.net https://fonts.googleapis.com; font-src 'self' https://fonts.gstatic.com data- strict-transport-security
max-age=31536000; includeSubDomains
Links to (5)
- facebook.com×2
- instagram.com×2
- kununu.com×2
- linkedin.com×2
- xing.com×2