vov.eu
HTML metadata
Technology
- Server
- nginx
Social
Contact
- Phone
DNS records live
- NS
-
- docks11.rzone.de
- shades15.rzone.de
- MX
-
- 10 vov-eu.mail.protection.outlook.com
- TXT
-
Show 4 TXT records
cj97q6vso96pndqbi4u167ndi34t5nj7gd1nm9u7ke1tse0k89armsqgc2dm89lb3uhkecrr3i7nabjurRMcHkpzTSqd8hOoIM3f+Tq9dZJKSDUz4uwpdv3SzItblPq0mOFvHG3E6ZbwBxmTdVhgp7J8gV6RtGuC5kbQ==
- Verified for
-
- Brevo
Email authentication strong
- SPF
-
v=spf1 a mx include:spf.protection.outlook.com include:spf-de.emailsignatures365.com include:spf.sendinblue.com include:mail.timmehosting.de -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantinepolicy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCb7v+sdtIzZ2m8geXUxojNLOnUyuimm4k4rtSCZ4BZ1UWHoNKWUq4BcEiN5/AmK+0UK0FgU97pYzvWB+Cna2… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed - selector1:
Certificate (current)
R13
Expires in 44 days
HTTP security headers
- present
-
- content-security-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'self'; script-src 'self' 'nonce-4mq0qzgkioB54Q-qpzA6gJBhijlzcnwyR8_rxKap70vMGYXRbpIy9w' 'sha256-Ql/zC0gXqfHGxfbJlb27JQDrrfOsrGj9dATclE/E8g0=' https://www.youtube.com/ https://code.etracker.com/ https://www.etracker.de/ https://webcontr.vov.eu/ https://*.licdn.com/ https://www.googleadservices.com/ https://www.googletagmanager.com/ 'report-sample'; connect-src 'self' https://webcontr.vov.eu/ https://www.etracker.de/ https://*.linkedin.com/ https://www.google-analytics.com https://stats.g.doubleclick.net https://www.googleadservices.com https://www.google.com/ https://www.googletagmanager.com/; style-src 'self' 'unsafe-inline' 'report-sample'; img-src 'self' data: https://*.ytimg.com/ https://*.linkedin.com/ https://googleads.g.doubleclick.net https://www.googletagmanager.com/ https://www.google.com/ https://www.google.de/; frame-src 'self' https://*.youtube-nocookie.com/ https://www.googletagmanager.com/; report-uri https://vov.eu/@http-reporting?csp=report&requestTime=1780