ukraine-wiederaufbauen.de
HTML metadata
Social
Registration
- Updated
- 2026-02-16
- Name servers
-
- a.babieldns.de.
- b.babieldns.de.
- c.babieldns.de.
- d.babieldns.de.
DNS records live
- NS
-
- a.babieldns.de
- b.babieldns.de
- c.babieldns.de
- d.babieldns.de
- MX
-
- 10 mail2.babiel.net
Email authentication partial
- SPF
-
v=spf1 ip4:185.132.24.12/32 ip4:185.132.24.51/32 ip4:185.132.24.46/32 ip4:185.132.24.70 ip4:46.243.123.88/32 -allstrict (-all) - DMARC
-
v=DMARC1; p=none; sp=none; rua=mailto:dmarc-reports@babiel.net; ruf=mailto:dmarc-reports@babiel.net; fo=1;policy: none (monitoring only) · sp=none - DKIM
-
- default:
v=DKIM1; h=sha256; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA98+GdTvRQpTsz/2kT2hxeD4mEpKXtDxp3YByCaV4kYVeptXCdlKAIxpasSMlNGCF5k7g…
selectors probed - default:
Certificate (current)
E8
Expires in 39 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
connect-src 'self' bmz.de *.bmz.de; style-src 'self' 'unsafe-inline'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://statistik.bmz.de studio.bmz.de; object-src 'none'; form-action 'self' https://*.mailingwork.de https://*.giz.de; upgrade-insecure-requests; img-src 'self' data: https://statistik.bmz.de *.bmz.de *.ukraine-wiederaufbauen.de; default-src 'self'; font-src 'self' data:; frame-src https://statistik.bmz.de https://www.youtube-nocookie.com https://webtv.bundestag.de- strict-transport-security
max-age=31536000