wb.at
HTML metadata
Technology
- CMS
- Nuxt
- JS framework
- Nuxt
Third-party hosts loaded (3)
- a.storyblok.com×26
- cdn.cookiefirst.com×1
- challenges.cloudflare.com×1
Social
Contact
- Phone
- Address
- Grünmarkt 13, 4400, Steyr, AT
DNS records live
- NS
-
- cora.ns.cloudflare.com
- lou.ns.cloudflare.com
- MX
-
- 0 wb-at.mail.protection.outlook.com
- Verified for
-
- Anthropic
- Apple
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA38jxRca46iLk9502XZ5mYndN2YR8aaRGSJssPbskBhj3RBUR2p9tEzrqVbsO2/pkz1shYQpUVKD1VXjNtA… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv/O8xKjXzvy/SL5LOr71+aCFtlHJWFtOE8G6+8jmkR1pw6fvWSYDLMH4OK13730YdMJDEB+K93su6Sw++/…
selectors probed - s1:
Certificate (current)
R13
Expires in 66 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-embedder-policy
- cross-origin-resource-policy
- findings
-
- CSP uses wildcard sources
Header values
- referrer-policy
no-referrer- x-frame-options
SAMEORIGIN- permissions-policy
camera=(), display-capture=(), fullscreen=(), geolocation=(), microphone=()- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; font-src 'self' https: data:; form-action 'self'; frame-ancestors 'self' *.storyblok.com *.google.com; img-src 'self' data: *.storyblok.com *.cookiefirst.com *.wb.at *.unpkg.com *.vimeocdn.com *.google.com *.google-analytics.com *.googletagmanager.com *.g.doubleclick.net unpkg.com *.facebook.com *.clarity.ms *.posthog.com *.bing.com *.google.com *.google.ad *.google.ae *.google.com.af *.google.com.ag *.google.al *.google.am *.google.co.ao *.google.com.ar *.google.as *.google.at *.google.com.au *.google.az *.google.ba *.google.com.bd *.google.be *.google.bf *.google.bg *.google.com.bh *.google.bi *.google.bj *.google.com.bn *.google.com.bo *.google.com.br *.google.bs *.google.bt *.google.co.bw *.google.by *.google.com.bz *.google.ca *.google.cd *.google.cf *.google.cg *.google.ch *.google.ci *.google.co.ck *.google.cl *.google.cm *.google.cn *.google.com.co *.google.co.cr *.google.com.cu *.google.cv *.google.com.cy *.google.cz *.google.de *.google.dj *.google.dk *.googl- strict-transport-security
max-age=15552000; includeSubDomains- cross-origin-opener-policy
same-origin- cross-origin-embedder-policy
unsafe-none- cross-origin-resource-policy
cross-origin
Links to (7)
- youtube.com×1
- vimeo.com×1
- storyblok.com×1
- linkedin.com×1
- instagram.com×1
- facebook.com×1
- ankoe.at×1