vsvi-bayern.de
HTML metadata
Technology
- Server
- nginx
Registration
- Updated
- 2021-02-15
- Name servers
-
- ns-1434.awsdns-51.org.
- ns-1576.awsdns-05.co.uk.
- ns-305.awsdns-38.com.
- ns-900.awsdns-48.net.
DNS records live
- NS
-
- ns-1434.awsdns-51.org
- ns-1576.awsdns-05.co.uk
- ns-305.awsdns-38.com
- ns-900.awsdns-48.net
- MX
-
- 10 mail.vsvi-bayern.de
Email authentication strong
- SPF
-
v=spf1 +a +mx +a:stuttgart.jweiland.cloud -allstrict (-all) - DMARC
-
v=DMARC1; p=rejectpolicy: reject (enforced) - DKIM
-
- default:
v=DKIM1; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCuc/8SSNIZJHXljnobtkyox6yFE6fsAxAeYkfoK+JhuZ98DShRlrlQ89Uo3Rqhcu24h0gqbMM9UghCsHOieIRUnlKUZ…
selectors probed - default:
Certificate (current)
E7
Expires in 50 days
HTTP security headers
- present
-
- content-security-policy
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'report-sample'; img-src 'self' data:; base-uri 'self'; frame-src 'self' *.youtube-nocookie.com *.youtube.com *.vimeo.com; connect-src 'self' https://flow.cleverreach.com; style-src 'self' 'unsafe-inline' 'report-sample'; report-uri https://www.vsvi-bayern.de/@http-reporting?csp=report&requestTime=1779206414400392&requestHash=b54aca0bdea55fa6926ffb9464d09d8b853f11b5