zkb.ch
HTML metadata
Technology
- Server
- Apache
Social
DNS records
Email authentication strong
- SPF
-
v=spf1 ip4:62.240.192.0/23 -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:mailauth-reports@zkb.ch; ruf=mailto:mailauth-reports@zkb.ch;policy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
SwissSign RSA TLS EV ICA 2022 - 1
Expires in 172 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
camera=(), microphone=(), usb=(), display-capture=(), bluetooth=()- x-content-type-options
nosniff- content-security-policy
default-src 'none'; connect-src 'self' data: https://same.zkb.ch https://samct.zkb.ch https://sameo.zkb.ch https://sandbox.api.zkb.ch https://player.3qsdn.com https://playout.3qsdn.com https://sdn-global-prog-cache.3qsdn.com https://sdn-global-streaming-cache.3qsdn.com https://watchtime.3qsdn.com https://dpm.demdex.net https://edge.adobedc.net https://adobedc.demdex.net https://*.doubleclick.net https://pagead2.googlesyndication.com https://www.google.com/pagead/landing https://www.google.ch/pagead/landing https://privacyportal-ch.onetrust.com https://geolocation.onetrust.com https://*.googleapis.com; font-src 'self' data: https://sdn-global-prog-cache.3qsdn.com https://player.3qsdn.com https://fonts.gstatic.com; form-action 'self'; frame-src 'self' https://www.google.ch https://www.google.com https://zkb.demdex.net https://dpm.demdex.net https://*.doubleclick.net; frame-ancestors 'self' https://*.adobe.com/; img-src 'self' data: https://sdn-global-prog-cache.3qsdn.com https://dpm.demd- strict-transport-security
max-age=31536000; includeSubDomains; preload
Links to (10)
- facebook.com×1
- frankly.ch×1
- instagram.com×1
- linkedin.com×1
- mdgms.com×1
- swisscanto.com×1
- tiktok.com×1
- twitter.com×1
- weaver.ch×1
- youtube.com×1