wild.at
HTML metadata
Technology
- Server
- Apache
- CMS
- WordPress 6.9.4
- jQuery
- 3.7.1
Third-party hosts loaded (2)
- maps.googleapis.com×2
- gmpg.org×1
Social
Contact
DNS records live
- NS
-
- dns1.a1.net
- dns2.a1.net
- dns3.a1.net
- MX
-
- 0 wild-at.mail.protection.outlook.com
- TXT
-
atlassian-sending-domain-verification=81e2483d-1c87-4421-8540-5d24d2124d54
- Verified for
-
- Apple
- Atlassian
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 ip4:213.33.64.98 ip4:185.49.52.60 ip4:185.49.52.61 ip4:212.186.202.51 ip4:213.133.104.74 ip4:193.228.122.60 ip4:193.228.122.61 ip4:213.133.104.155 ip4:3.67.54.56 include:servers.mcsv.net include:spf.umantis.com include:spf.emailsignatures365.com include:spf.protection.outlook.com include:spf.de.umantis.com include:_spf.cloud.ccbao.at include:spf.sosafe.de -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:edv@wild.at; ruf=mailto:edv@wild.at; fo=1policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDTpAwAqXK2uV8jPcW5MS1dhGWYar1OS5R6rmkSrLlfZXmGkET2GFw9SErefmblBldFEiXukVvYwhQX2F52IG… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCcHSZY7MoOayhTH9WoRcrtWeUcrh+jnyYcAjEC0STVi+CwojbZbNc3kF0V4+rWdh8YRkndiXsXO+lpXNfq0i… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed - selector1:
Certificate (current)
GlobalSign GCC R3 DV TLS CA 2020
Expires in 63 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; font-src 'self' data: https://fonts.gstatic.com; img-src 'self' data: https://secure.gravatar.com https://*.google-analytics.com https://*.googletagmanager.com https://www.clarity.ms https://*.clarity.ms; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*.googletagmanager.com data: https://*; style-src 'self' 'unsafe-inline' https://*.gstatic.com https://fonts.googleapis.com; connect-src 'self' https://yoast.com https://*.google-analytics.com https://*.analytics.google.com https://*.googletagmanager.com https://*.g.doubleclick.net https://maps.googleapis.com https://www.clarity.ms https://*.clarity.ms wss://*.clarity.ms; frame-src 'self' https://www.youtube.com/ https://www.youtube-nocookie.com/ https://www.google.com;- strict-transport-security
max-age=63072000; includeSubDomains; prelaod
Links to (6)
- xing.com×1
- tiktok.com×1
- linkedin.com×1
- kwf.at×1
- instagram.com×1
- facebook.com×1