wisplinghoff.de
HTML metadata
Technology
- Server
- Apache
Third-party hosts loaded (1)
- code.etracker.com×1
Social
Contact
Registration
- Updated
- 2026-04-02
- Name servers
-
- dns3.netcologne.de.
- dns4.netcologne.de.
- dns5.netcologne.de.
DNS records live
- NS
-
- dns3.netcologne.de
- dns4.netcologne.de
- dns5.netcologne.de
- MX
-
- 10 mailgw.insigma.de
- TXT
-
Show 5 TXT records
cisco-ci-domain-verification=431b9557424e52438d22a75e9cc3f1061a690aa9c69fa9bdc78b3204422185bfMS=ms94355951MS=17811A8949311015EBD84D4E6ACFCB270309B450sophos-domain-verification=0c2544a270ef461df8e2175ffeca3acd2aa5b537c58de641906c115110960aa4ojosqrd4d7s6oedelc02pcqp4f
Email authentication weak
- SPF
-
v=spf1 include:spf-policy.mailrelay-out.netcologne.de include:agenturserver.de include:spf.protection.outlook.com include:_spf.jpberlin.de include:spf-policy.insigma.de -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 49 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://*.etracker.de https://*.etracker.com; media-src 'self'; font-src 'self' wisplinghoff.inity.net fonts.gstatic.com; style-src 'self' 'unsafe-inline' wisplinghoff.inity.net fonts.googleapis.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*.etracker.com https://*.etracker.de https://code.jquery.com blob:; img-src 'self' data: wisplinghoff.inity.net maps.gstatic.com maps.googleapis.com; frame-ancestors 'self' https://*.etracker.com;- strict-transport-security
max-age=63072000