transgourmet.at
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- consent.cookiebot.eu×1
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- ns1.coop.ch
- ns1.ip-plus.net
- MX
-
- 0 transgourmet-at.mail.protection.outlook.com
- TXT
-
Show 10 TXT records
adobe-idp-site-verification=52c2fecdf4defc9dce779005a9a231fc7c250fb35749d07cf0c3213d4a907330atlassian-domain-verification=DKU9C/LBVaTLDr7d3p6q53SpnxJG/MlNIFUMgoNx2Gpy8gzK2qn4M2wuPZ58Aq3swebexdomainverification.2RAE9=86da5a48-6b72-4901-aad1-c4686157c6eedocusign=50f6e212-77d5-4eb0-b465-0d86b9b9178cnintex.6246a0665bb70b00698db94ccisco-ci-domain-verification=104860dbf4eb4f3ed7c8fb83fcb87603b5b7d00914d9faf2a6d54b3b33a415fMS=4BFA067B292D3AC59974FEE6B82A0CFC17471FFCapple-domain-verification=2rmqJ20VNPDGFJa9google-site-verification=agBu0z-k_iIx7nH5NhYDkpDfhj90C6e47JfvQ3lsJwI8EcdlQfRWUPnztHak8vWftu9g5NsRq/UZOYOHfengxOaVghPQ/C6p5bmz+4qXdEoE4lch4WeN2j38TlGpOrBKw==
Email authentication partial
- SPF
-
v=spf1 a mx ip4:195.2.221.53 ip4:168.119.32.213 ip4:195.128.170.0/24 ip4:83.164.133.2 ip4:83.164.133.3 ip4:78.47.83.210 a:er-mail.erecruiter.net include:mail.sensational.ch include:emarsys.net include:emsmtp.com include:spf.mailjet.com include:spf.protection.outlook.com include:spf.emailsignatures365.com include:secureserver.net ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=none;rua=mailto:dmarc-report@transgourmet.at;ruf=mailto:dmarc-report@transgourmet.at;fo=1policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
EUNETIC RSA Domain Validation Secure Server CA 3
Expires in 4 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- referrer-policy
- findings
-
- short HSTS max-age
- CSP uses wildcard sources
- missing content type protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer, strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- content-security-policy
default-src 'self'; block-all-mixed-content; connect-src 'self' googleads.g.doubleclick.net *.googleapis.com *.gstatic.com *.google.com bat.bing.com *.doubleclick.net *.googlesyndication.com *.g.doubleclick.net *.google.at *.cookiebot.eu *.google-analytics.com connect.facebook.net px.ads.linkedin.com px4.ads.linkedin.com stats.g.doubleclick.net *.transgourmet.com *.transgourmet.at svrdntfctn.com analytics.tiktok.com *.tiktokw.us *.googleadservices.com *.clarity.ms c.bing.com; font-src 'self' data: *.googleapis.com *.gstatic.com *.google-analytics.com; frame-src *; img-src 'self' data: *.googleapis.com *.doubleclick.net *.googlesyndication.com *.g.doubleclick.net *.google.com *.google.at *.gstatic.com *.googletagmanager.com *.google-analytics.com bat.bing.com api.mapbox.com *.mindspace.at *.vorauerfriends.com *.usercentrics.eu px.ads.linkedin.com px4.ads.linkedin.com *.transgourmet.com *.transgourmet.at *.facebook.com *.clarity.ms c.bing.com; script-src 'self' bat.bing.com *.google.com- strict-transport-security
max-age=3600; includeSubDomains;