unia.ch
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Analytics
- Google Tag Manager
- Fonts
-
- Google Fonts
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (10)
- www.facebook.com×2
- ajax.googleapis.com×1
- cdn.jsdelivr.net×1
- fonts.gstatic.com×1
- img06.en25.com×1
- maps.googleapis.com×1
- s.ytimg.com×1
- www.google-analytics.com×1
- www.googletagmanager.com×1
- www.youtube-nocookie.com×1
Social
DNS records live
- NS
-
- ch.ch-inter.net
- de.ch-inter.net
- nl.ch-inter.net
- nsa2.nts.ch
- MX
-
- 0 unia-ch.mail.protection.outlook.com
- TXT
-
Show 8 TXT records
rytd5xkgbm743pj34sg5lkv2m46fgx12swisssign-check=jV0p5RjdjWGytjfDPGKOUYOcCB46g7vco4EikdyTvY_dmirspvkp53kn472uiew4tla0ty5cyz0aKVMkEBJQBzXpyEeW6YXYw8720oZic52Uuwwtyd4VpVEBW30G618d7DIqizkqk06t3xs61RqHb6x3q9QllF5A==_dn7tfg846h5r97ggllmibwmaxw0ud7kmx-528822be0cfde047b0ZnKtXZN/GDZDX7FzGZZ74cPnatXSvPc5fqZ7EkoDh/sFOH39cypXWts9W075ivdQumwsEhdq+nWsvPguoo5A==MS=CCD90020D7B4C361E6D13A93A10E454AEF2D75E9
- Verified for
-
- Apple
- Atlassian
- Meta
- Zoom
Email authentication partial
- SPF
-
v=spf1 ip4:93.187.212.28 ip4:93.187.212.29 ip4:93.187.212.220 ip4:93.187.212.221 ip4:93.187.212.223 ip4:83.16.132.48 ip4:10.5.15.190 ip4:83.166.151.248 ip4:195.65.93.90 include:salsalabs.net include:servers.mcsv.net include:amazonses.com include:spf1.unia.ch include:spf.protection.outlook.com include:spf_c.oraclecloud.com include:eu.rp.oracleemaildelivery.com -allstrict (-all) - DMARC
-
v=DMARC1; p=nonepolicy: none (monitoring only) - DKIM
-
Show 4 DKIM selectors
- default:
v=DKIM1; k=rsa; s=email;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqa53/QZQI9EAI750bP7fXahMsXIpRhT7lzJG9XMidt4rVg8HEy3ySY3KYVX8cQK91ZFMpx… - selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq6qbpg/g7MX4WsgzE5cR+g+Ega51fB6ttO09p6SlJsgsIHUcVXmx2xCrMw1rGIVRZoh3uVWTtrTt9B… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnqFc7jLWfSpkH2IzekNr/tRc9xIUJvczpBuwuFUTtkn1eYGzDt3T7Pryp8zUXwSLdyBufZDCAOdZsj… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - default:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 186 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-eval' 'unsafe-inline' *.goog *.google *.lohnrechner.ch *.unia.ch *.en25.com *.adsensecustomsearchads.com *.23video.com *.gstatic.com *.licdn.com *.google.ch *.google.com *.unia-api.gav-service.ch unia-api.gav-service.ch *.google-analytics.com *.googlesyndication.com *.googletagmanager.com *.doubleclick.net *.linkedin.com *.jquery.com *.facebook.net *.icdn.com *.mouseflow.com siteimproveanalytics.com *.jsdelivr.net *.aiaibot.com *.facebook.com *.youtube-nocookie.com *.youtube.com youtube.com unpkg.com *.unpkg.com *.openstreetmap.fr data:; font-src 'self' data:*; frame-ancestors 'self';- strict-transport-security
max-age=31536000