almirall.at

.at crawl

First seen 2026-05-19 · Last seen 2026-05-30 · ok HTTP/1.1 200 30121 ms crawled 2026-05-26

US · 45.60.12.231 · AS19551 Incapsula Inc

Reputation 100/100

sector government type homepage

HTML metadata

Title
Austria
Language
de-AT
Generator
Elementor 3.32.2; features: e_font_icon_svg, additional_custom_breakpoints; settings: css_print_method-external, google_font-enabled, font_display-auto
Canonical
https://www.almirall.at/
Feeds

Technology

Server
nginx
CMS
WordPress
jQuery
3.6.0
Analytics
  • Google Analytics
  • Google Tag Manager
Cookie consent
  • OneTrust
Fonts
  • Google Fonts
Third-party hosts loaded (11)
  • fonts.googleapis.com×4
  • cdn-ukwest.onetrust.com×3
  • code.jquery.com×2
  • fonts.gstatic.com×2
  • www.google.com×2
  • cdn.equalweb.com×1
  • gmpg.org×1
  • img06.en25.com×1
  • www.google-analytics.com×1
  • www.googletagmanager.com×1
  • www.gstatic.com×1

DNS records live

NS
  • ns1-01.azure-dns.com
  • ns2-01.azure-dns.net
  • ns3-01.azure-dns.org
  • ns4-01.azure-dns.info
Verified for
  • Google

Email authentication no MX

SPF
not published
DMARC
not published
DKIM
no key found at common selectors

Certificates

Loading certificate

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.almirall.at/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
no-referrer-when-downgrade
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self' 'unsafe-eval' 'unsafe-hashes' 'unsafe-inline' data: blob: www.googletagmanager.com *.googleadservices.com almirall.at *.googleapis.com *.en25.com cdn.equalweb.com *.gstatic.com www.google.com js-agent.newrelic.com secure.gravatar.com bam.eu01.nr-data.net *.googlesyndication.com www.google.es www.google-analytics.com *.onetrust.com www.almirall.at www.wpo365.com *.cloudflare.com *.googletagmanager.com code.jquery.com cdnjs.cloudflare.com *.eloqua.com access.equalweb.com *.doubleclick.net; frame-ancestors 'self'
strict-transport-security
max-age=31536000

Links to (13)

Linked from (10)