wienerjobs.at
HTML metadata
Technology
- CMS
- Next.js
Third-party hosts loaded (1)
- a.storyblok.com×17
Social
DNS records live
- NS
-
- ns5.kasserver.com
- ns6.kasserver.com
- MX
-
- 0 wienerjobs-at.mail.protection.outlook.com
- TXT
-
ceufchqott8qhlepf7qijmnao8qv2ig3fgqh8ujtp93ctb88gkif
- Verified for
-
- GlobalSign
- Meta
- Microsoft 365
Email authentication weak
- SPF
-
v=spf1 a mx include:u18126827.wl078.sendgrid.net include:spf.protection.outlook.com -allstrict (-all) - DMARC
- not published
- DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzlpvvqWb7P/2V+2NHTK/+M4rK9PD8Cii/6BXjVAV5oR7exZCgh6XDEA23ku6by0XjJLK1yo8U7qZrO… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApBr1EegERE0RruR27zoSQpGwLadYeMUsn2mp16RRshzJEZLdMr+pduwf763m00BwzC289VwqTXt81i… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAw00TECbDWwfFdNDtds2Xoj3jsKlQzc5wbSFrEPXcOYAkDPTpb3oWgLdLKo0duO+EhaqXEe6Yvf+dg9WaPF… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCr+mn/2VMIneenEr5Bk7ze3TUS0wbqidsok9hRJhBtx0ZYYPsdQ6TAffxHejaxQgzN5/l/+ByIkveJP9bThdqpaL…
selectors probed - selector1:
Certificate (current)
R12
Expires in 45 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
no-referrer, strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(), document-domain=(), encrypted-media=(), fullscreen=(), geolocation=(), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(), usb=(), xr-spatial-tracking=()- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self' https://newapp.etracker.com https://*.devloc.site; default-src 'self' *.storyblok.com; script-src 'self' 'nonce-ZmZmYTIzYTQtNGRmMi00MzJiLWFkMmQtMzE3ODhiMjVhMWJk' 'strict-dynamic' 'unsafe-eval' *.googletagmanager.com *.googlesyndication.com *.google-analytics.com *.googleadservices.com *.adtrafficquality.google *.google.com *.google.de *.google.at *.google.ch *.google.pl snap.licdn.com connect.facebook.net accent.tirolerjobs.at *.devloc.site *.gstatic.com t--1.0.0--i6nnxym9p9wb--f.tirolerjobs.at *.etracker.com *.etracker.de *.spotify.com stats.wienerjobs.at ipinfo.io *.digiaccess.org front.wienerjobs.at cdn.ckeditor.com; style-src 'self' 'unsafe-inline' fonts.googleapis.com t--1.0.0--i6nnxym9p9wb--f.tirolerjobs.at accent.tirolerjobs.at *.devloc.site *.digiaccess.org cdn.ckeditor.com; img-src 'self' data: blob: www.wienerjobs.at beta2.wienerjobs.at www.facebook.com *.google-analytics.com *.analytics.google.com *.googletagmanager.com *.googlesyndication.com *.adtraf- strict-transport-security
max-age=2592000; includeSubDomains