unibet.de
HTML metadata
Technology
- Server
- kindred-loadbalancer
Third-party hosts loaded (1)
- cdnjs.cloudflare.com×1
Registration
- Updated
- 2024-10-22
- Name servers
-
- dns-ext1.northdev.net.
- dns-ext2.northdev.net.
- emea.excedodns.eu.
- global.excedodns.com.
- sto.excedodns.se.
- world.excedodns.org.
DNS records live
- NS
-
- dns-ext1.northdev.net
- dns-ext2.northdev.net
- emea.excedodns.eu
- global.excedodns.com
- sto.excedodns.se
- world.excedodns.org
- MX
-
- 0 unibet-de.mail.protection.outlook.com
- TXT
-
Show 9 TXT records
e8184e5d-26ae-4479-bc3c-9b12d70c7dbcfacebook-domain-verification=kho1njq6elon92w5q59uq14q4ryr92IjFt/SepqsHpNHOjRz1XXDWTMaNah+uwpvyY4MvDLpdDwt9TOk76zfxceUtKl2gbnI3f4q3SsZ7JQJ4ost5/Zw==MS=ms783565820c9c829f-4582-4734-88c9-adf347c919820d1cc225-fdd7-49de-8b9a-fff714f84ffd75490f4b-224f-42e3-aac2-4a3610676a8a8d93c81d-6aaf-402e-acfa-4095d04a5ac3d738c231-2e90-4d58-a56f-eda6e327f304
Email authentication strong
- SPF
-
v=spf1 mx include:sp.unibet.com include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;aspf=r;adkim=r;rua=mailto:dmarc@unibet.de; fo=1policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAu62iqpIoEbJRLGN6SnuzYqlzVw7t0w3VHFaCe+fcdWeyQGXCxILlwm+C1dQh+90ffrwD525ALFH2Ja… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtgm6HPTEa3c2L2Vowz+fMmwDezxBztrF182rGOv3QSFNsI6xerlIvl/LH0o64zjYeyyq7atN5N4F24…
selectors probed - selector1:
Certificate (current)
R13
Expires in 34 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- cross-origin-opener-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'unsafe-inline' 'unsafe-eval' http: https: data: wss: blob: jockey: unibetpro: *;- strict-transport-security
max-age=63072000; includeSubDomains; preload- cross-origin-opener-policy
same-origin-allow-popups