willax.com
HTML metadata
Technology
- Server
- LEIBOLD
- CMS
- Gatsby
Contact
Registration
- Registrar
- InterNetX GmbH
- Created
- 1999-06-18
- Expires
- 2026-06-18 28 days left
- Updated
- 2025-06-19
- Name servers
-
- a.ns14.net
- b.ns14.net
- c.ns14.net
- d.ns14.net
DNS records live
- NS
-
- a.ns14.net
- b.ns14.net
- c.ns14.net
- d.ns14.net
- MX
-
- 0 willax-com.mail.protection.outlook.com
- Verified for
-
- Apple
Email authentication weak
- SPF
-
v=spf1 a mx ip4:94.130.205.51 ip4:93.241.208.104 include:spfserver.auctores.de include:spf.protection.outlook.com -allstrict (-all) - DMARC
- not published
- DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCTShvjp8MlowcZ/179hrPiCvvphCMQWnSDEM2sGmVIn6hlEeDyglLYwN7ru2m4X4s9rbLINLOvof34qlOmoP… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq/NWsHngtzM5fX8Gtnjn3+rwfsHqMJ0FFzKV6bbJ0sxi4d/U1E6uiCBTIIfRg4jRUzhVoHnnkYFTUN…
selectors probed - selector1:
Certificate (current)
E7
Expires in 38 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
deny- permissions-policy
camera=self, microphone=(), geolocation=(), payment=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'self' https://willax.com/org.dreamox.cmsmox.divlayout/org/dreamox/cmsmox/divlayout/view/jsp/images/socialshare/svg/sprite.svg ;base-uri 'none';object-src 'none';form-action 'self' www.paypal.com www.sandbox.paypal.com www.ipg-online.com test.ipg-online.com;frame-ancestors 'self' ;connect-src 'self' ;img-src 'self' willax.com data: www.paypal.com www.sandbox.paypal.com https://*.google.com https://bullstar.de willax-puma.proto-type.de willax.com data: 'self';media-src 'self' ;script-src 'self' 'strict-dynamic' 'nonce-au786l5p2bq2c3ohg2lvtks3rkm' https://*.google.com 'unsafe-eval';style-src 'self' 'unsafe-inline' ;font-src 'self' data:;manifest-src 'self';upgrade-insecure-requests;report-uri https://csp-report.auctores.de/resources/index;frame-src 'self' pp.payengine.de pptest.payengine.de;- strict-transport-security
max-age=31536000
Links to (2)
Linked from (14)
- bullstar.de×2
- hagebaumarkt-husum.de×2
- hagebaumarkt-ratzeburg.de×1
- hagebaumarkt-luebz.de×1
- hagebaumarkt-wittstock.de×1
- hagebaumarkt-schwarzenbek.de×1
- hagebaumarkt-kyritz.de×1
- hagebaumarkt-guestrow.de×1
- hagebaumarkt-badoldesloe.de×1
- hagebaumarkt-badsegeberg.de×1
- hagebaumarkt-rellingen.de×1
- hagebaumarkt-pritzwalk.de×1
- hagebaumarkt-gadebusch.de×1
- hagebaumarkt-gaegelow.de×1