bad-brambacher.de

.de crawl

First seen 2026-04-17 · Last seen 2026-05-20 · ok HTTP/1.1 200 5059 ms crawled 2026-05-11

DE · 217.145.99.19 · AS16316 TMT GmbH & Co. KG

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
Bad Brambacher Mineralquelle – Von der Natur zum Menschen
Language
de
Generator
WordPress 6.9.4
Canonical
https://www.bad-brambacher.de/
Feeds

Technology

Server
Apache
CMS
WordPress
Analytics
  • Google Tag Manager

Third-party hosts loaded (3)

  • cloud.ccm19.de×1
  • gmpg.org×1
  • www.googletagmanager.com×1

Social

Contact

Email
Phone

Registration

Updated
2018-07-19
Name servers
  • ns0.tmt.de.
  • ns4.tmt.de.

DNS records live

NS
  • ns0.tmt.de
  • ns4.tmt.de
MX
  • 0 badbrambacher-de0i.mail.protection.outlook.com
TXT
  • 14DqRdVyfrfO7YUBaWBffaMUComPt1a+6SYTC+NPegBmlG0m8HuobNTXNWZKFZWlXGQb04evtW7MBXYJQyS6bg==
  • Nxa7rgXHo/WTDB0RJMvsBT1Go+8hPLb2Pkk8RGbYmi5XPoQ5tU2n28hba67BnnbfwckX5JApYMSbKyfzHZ5oOw==
Verified for
  • Microsoft 365

Email authentication weak

SPF
v=spf1 a mx include:_spf.symbiose.com include:spf.protection.outlook.com -all
strict (-all)
DMARC
not published
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDFD0NH/SdBokLWxkeBjSEseB9aqyVuMMJSqPDJ0zD2c9TtNg9qftv+ekAAfNmdVsxerXlmfDGR6YLI1J17II…
  • selector2: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCUWwJcu3h/aFQWWUpptWgKY5maRAmkLysnkPv7Io6bnqfSMxyv+ZiWirhZL6eCfo1VBYODYamygx8zipkW4c…
selectors probed

Certificate (current)

Sectigo Public Server Authentication CA DV R36
from 2025-06-03 to 2026-07-04
Expires in 44 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.bad-brambacher.de/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • weak content type protection
Header values
referrer-policy
strict-origin
x-frame-options
SAMEORIGIN
permissions-policy
, private-state-token-redemption=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com"), private-state-token-issuance=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com")
x-content-type-options
nosniff, nosniff
content-security-policy
script-src https: 'self' 'unsafe-inline' 'unsafe-eval'
strict-transport-security
max-age=31536000; preload

Links to (7)

Linked from (7)