baby-rose.ch

.ch crawl

First seen 2026-06-01 · Last seen 2026-06-02 · ok HTTP/1.1 200 435 ms crawled 2026-06-02

CH · 193.93.22.3 · AS31052 Exigo AG

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
Home Baby-Rose :: babyrose
Language
de
Generator
Concrete CMS
Canonical
https://baby-rose.ch/

Open Graph

title
Home Baby-Rose

Technology

Server
Apache
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts

Third-party hosts loaded (4)

  • www.googletagmanager.com×2
  • cdn.jsdelivr.net×1
  • fonts.googleapis.com×1
  • fonts.gstatic.com×1

DNS records live

NS
  • ns1.trendhosting-net.ch
  • tux20.trendhosting-net.ch
MX
  • 10 mx1.trendhosting-net.ch
  • 20 mx2.trendhosting-net.ch

Email authentication weak

SPF
v=spf1 +a +mx ip4:91.205.149.143 ip4:193.93.20.0/26 a:spf.trendhosting-net.ch include:shops.shopify.com include:_spf.sui-inter.net -all
strict (-all)
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

E8
from 2026-05-27 to 2026-08-25
Expires in 83 days

HTTP security headers

Header hygiene 95/100 Checked live page: https://baby-rose.ch/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
Header values
referrer-policy
no-referrer
x-frame-options
SAMEORIGIN
permissions-policy
geolocation=(self), microphone=() camera=()
x-content-type-options
nosniff
content-security-policy
default-src 'none'; base-uri 'self'; connect-src 'self' https://maps.googleapis.com api.mapbox.com events.mapbox.com my.tikee.io www.google-analytics.com www.facebook.com graph.facebook.com stats.g.doubleclick.net region1.analytics.google.com; frame-src 'self' https://maps.googleapis.com https://goo.gl www.youtube.com services.logismata.ch www.google.com my.tikee.io intranet.eventag.ch; form-action 'self' https://secure.innopay.ch/vads-payment/; img-src 'self' data: https: blob:; script-src 'self' data: cdn.jsdelivr.net www.google.com www.gstatic.com www.google-analytics.com connect.facebook.net https://www.googletagmanager.com blob: 'unsafe-inline' 'unsafe-eval'; style-src 'self' fonts.googleapis.com 'unsafe-inline'; frame-ancestors 'self' services.logismata.ch; font-src 'self' fonts.googleapis.com fonts.gstatic.com; object-src 'self'; media-src 'self';
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (1)

Linked from (1)