webwide.de
HTML metadata
Technology
- Server
- Apache
Contact
- Phone
Registration
- Updated
- 2017-02-23
- Name servers
-
- ns1.domainit.de.
- ns2.domainit.de.
DNS records live
- NS
-
- ns1.domainit.de
- ns2.domainit.de
- MX
-
- 10 mx1.europeanmx.eu
- 20 mx2.europeanmx.eu
- 30 mx3.europeanmx.eu
- 40 mx4.europeanmx.eu
- TXT
-
nordpass-domain-verification=29f54c9bcd684ece903dce733e946dad
- Verified for
-
- GlobalSign
- OpenAI
Email authentication partial
- SPF
-
v=spf1 a:mx2.webwide.de a:merlin.webwide.de ip4:80.83.120.195 ip4:80.83.115.8 ip4:78.46.179.117 ip6:2a01:4f8:d0a:6039::2 include:spf.europeanmx.eu ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:af19d2099b68.a@dmarcinput.com,mailto:rua@webwide.net; ruf=mailto:af19d2099b68.f@dmarcinput.com,mailto:ruf@webwide.net; fo=1policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
EUNETIC RSA Domain Validation Secure Server CA 4
Expires in 325 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
cross-origin-isolated=(self), display-capture=(), fullscreen=(self), geolocation=(), microphone=()- x-content-type-options
nosniff- content-security-policy
style-src 'self' 'unsafe-inline' *.webwide.de *.eunetic.com *.consentmanager.net *.tinymce.com *.tiny.cloud *.googleapis.com *.gstatic.com https://cdn.ckeditor.com https://cdnjs.cloudflare.com https://cdn.jsdelivr.net https://chat.copexa.net https://chat.webwide.de https://chat.eunetic.com https://googletagmanager.com https://tagmanager.google.com https://*.googleapis.com https://*.googletagmanager.com; script-src *.webwide.de 'self' 'unsafe-inline' *.eunetic.com *.tinymce.com *.tiny.cloud *.googleapis.com *.hotjar.com *.hotjar.io https://onstats.de https://www.callexa.com https://cdn.ckeditor.com https://js.stripe.com https://cdnjs.cloudflare.com https://cdn.jsdelivr.net https://chat.copexa.net https://chat.webwide.de https://chat.eunetic.com *.google.com https://googletagmanager.com https://tagmanager.google.com https://*.googletagmanager.com https://www.googleadservices.com https://www.google.com https://googleads.g.doubleclick.net *.consentmanager.net *.acsbapp.com; object-src 'sel- strict-transport-security
max-age=31536000; includeSubDomains; preload