hogum
dis-ag.com

dis-ag.com security report

Certificate, security headers, email authentication, DNS, registration, and exposed hosts — from public sources.

24risk

Low

Minor observations only.

0Critical
0High
2Medium
2Low
1Info
Collected 9.2sfrom cache
  1. Certificate Transparency3
  2. DNS resolution5
  3. Network ownership0
  4. CDN / WAF detection0
  5. Exposed ports & CVEs10
  6. Registration
  7. DNS posture4
  8. Email authentication2
  9. Certificate
  10. Security headers5
  11. Archived URLs
  12. Analysis5
  • noteCertificate inspection is unavailable in this runtime.
  • noteNetwork ownership lookup is unavailable in this runtime; ASN and org are omitted.
  • noteCDN/WAF detection is unavailable in this runtime.
final https://www.dis-ag.com/de-destatus 200time 2440msstack cloudflare
  • http:// redirects to https://
  • !Strict-Transport-Security
    max-age=604800; includeSubDomains
  • Content-Security-Policy
  • Clickjacking protection
    SAMEORIGIN
  • X-Content-Type-Options
    nosniff
  • Referrer-Policy
    strict-origin-when-cross-origin
  • Permissions-Policy
    accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(), document-domain=(), encrypted-me
  • security.txt publishedoptional — tells researchers where to report bugs
  • Receives mail via 1 server
  • !SPFends in ~all
    v=spf1 include:adecco.net include:spf.prosolution.com include:_spf.qualtrics.com include:_spf.itandtel.at +ip4:193.110.129.115 +ip4:193.110.129.111 ~all
  • !DMARCp=none
    v=DMARC1; p=none; rua=mailto:2cd9750f0d9c816@rep.dmarcanalyzer.com; ruf=mailto:2cd9750f0d9c816@for.dmarcanalyzer.com; fo=1;
  • !MTA-STSinbound mail can be downgraded to plaintext
AddressPortsCVEsEdgeNetwork
13.69.228.51
80443
0direct
20.210.64.27
80443
0direct
20.49.97.69
80443
0direct
20.105.216.36
80443
0direct
150.171.110.102
80443
0direct
Archived URLs

Endpoints the Wayback Machine has kept — config files, backups, scripts. Slow to fetch, so it is here on request.