unita.de
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
Third-party hosts loaded (2)
- cdn.cookielaw.org×2
- www.googletagmanager.com×1
Contact
- Phone
Registration
- Updated
- 2025-09-11
- Name servers
-
- gabe.ns.cloudflare.com.
- jacqueline.ns.cloudflare.com.
DNS records live
- NS
-
- gabe.ns.cloudflare.com
- jacqueline.ns.cloudflare.com
- MX
-
- 10 unita-de.mail.protection.outlook.com
- TXT
-
Show 6 TXT records
brevo-code:7c542a5a42617b8f3f2175e1dd96ed5ffigma-domain-verification=4edf6bb712dfce6e6182b1b7b030583195567d37834e8e24e495152f92eaef82-1760028563google-site-verification=IF6k-vD1866pzgmk63aki1TIL2nqd9LBgF9-kIFl1C4ibmid=7ffa7167-ef8b-4097-a8fd-585812375a737v3lfm64c891722mrpbff1j2l3mdxlbs_gquhu803w7306z2hdzm6to8xhyenu2r
Email authentication strong
- SPF
-
v=spf1 include:spf.aon.net include:spf.sendinblue.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; fo=1; rua=mailto:dmarc_agg@vali.email; ruf=mailto:aon@ruf-reporting.vali.emailpolicy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAo/ecGh+xbvqwDmNEKYAqpDLQd+cjG9eqHEEeVAWmfeP9qHwanjGZhxJsJ52XcahMm9+Og9ErTRQMbp… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0cL/kwEO2MWwraE5kpqdbYZ/CIoX8uwVPu2Uq2OWr87DiyE4x40hgSNc+LNiw16SySJBavSwr/xlUf4eBa… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCnerybDh8+Atke5c+LlBX69M9M0jpMz2ES6COVOXyZNMVnKc4zd0tOYz2cBFvsDoDLDBQOw4pZJ4Iy4Vp5CB5s2S…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 45 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src https: 'unsafe-inline' 'unsafe-eval'; img-src 'self' *.aon.de https://mitarbeiterplus.de *.mitarbeiterplus.de https://unita.de *.unita.de https://oneunderwriting.de *.oneunderwriting.de data: https:; font-src 'self' *.aon.de https://mitarbeiterplus.de *.mitarbeiterplus.de https://unita.de *.unita.de https://oneunderwriting.de *.oneunderwriting.de data: https:; script-src 'self' 'unsafe-eval' 'unsafe-hashes' 'unsafe-inline' *.aon.de https://mitarbeiterplus.de *.mitarbeiterplus.de https://unita.de *.unita.de https://oneunderwriting.de *.oneunderwriting.de https://cdn.cookielaw.org https://cdnjs.cloudflare.com https://ajax.googleapis.com https://maxcdn.bootstrapcdn.com https://www.googletagmanager.com https://s3.amazonaws.com; style-src 'self' 'unsafe-inline' *.aon.de https://mitarbeiterplus.de *.mitarbeiterplus.de https://unita.de *.unita.de https://oneunderwriting.de *.oneunderwriting.de https://fast.fonts.net https://fonts.googleapis.com https://maxcdn.bootstrapcdn.com http- strict-transport-security
max-age=15552000; includeSubDomains
Links to (1)
- aon.com×2