Security
How this website is built
- Static pages without database, login or server-side form processing.
- All scripts and styles load from the same domain; there are no inline scripts.
- The deployment files (_headers, .htaccess) configure a strict Content-Security-Policy, a framing prohibition and other security headers; whether the host actually serves them must be verified on the host.
- No external fonts, trackers or embedded services are loaded.
Reporting a vulnerability
If you find a security issue on this website, write to support@spnorth.at with the subject “Security”. Reports are answered manually. There is no bug bounty programme.
Scope of this page
This page describes the website's technical set-up. It is not a certification or a guarantee of a security level.