worldofsweets.de
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (8)
- app.usercentrics.eu×3
- api.usercentrics.eu×1
- retrackkupona.kuponacdn.de×1
- static.criteo.net×1
- translate-cdn.eye-able.com×1
- userlike-cdn-widgets.s3-eu-west-1.amazonaws.com×1
- www.dwin1.com×1
- www.googletagmanager.com×1
Social
Registration
- Updated
- 2023-03-02
- Name servers
-
- guss.ns.cloudflare.com.
- hera.ns.cloudflare.com.
DNS records live
- NS
-
- guss.ns.cloudflare.com
- hera.ns.cloudflare.com
- MX
-
- 10 mx01.hornetsecurity.com
- 20 mx02.hornetsecurity.com
- 30 mx03.hornetsecurity.com
- 40 mx04.hornetsecurity.com
- TXT
-
9ndoq8asmr45c4q2qdkefsfogl
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:spf.smtp.net include:emarsys.net include:emsmtp.com include:spf.emailsys.net include:spf.hornetsecurity.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc@worldofsweets.de; ruf=mailto:dmarc@worldofsweets.de;policy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2UT00c8zZwWSylYSRFOJpQPPQhuLc2T/s/0t5yjBPVTybYIjtt3o5+24UgfRpKa9dZjUsw0NJWyBzt…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 33 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(self), microphone=(), camera=(), bluetooth=(), usb=()- x-content-type-options
nosniff- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' *.usercentrics.eu bat.bing.com www.googletagmanager.com googletagmanager.com tagmanager.google.com *.googletagmanager.com www.googleadservices.com www.google.com pagead2.googlesyndication.com googleads.g.doubleclick.net *.creativecdn.com connect.facebook.net analytics.tiktok.com t13.intelliad.de userlike-cdn-widgets.s3-eu-west-1.amazonaws.com snap.licdn.com widgets.trustedshops.com recommender.scarabresearch.com recommender-eu.scarabresearch.com static.scarabresearch.com static.criteo.net sslwidget.criteo.com widget.eu.criteo.com api2.ehi-siegel.de translate-cdn.eye-able.com ajax.cloudflare.com static.cloudflareinsights.com cloudflareinsights.com *.cloudflare.com userlike-cdn-umm.b-cdn.net www.gstatic.com maps.googleapis.com static-eu.payments-amazon.com t23.intelliad.de api.sovendus.com tracking.paqato.com www.dwin1.com www.awin1.com the.sciencebehindecommerce.com;script-src-elem 'self' 'unsafe-inline' 'unsafe-eval' *.usercentrics.eu bat- strict-transport-security
max-age=15768000; includeSubDomains