bad-mergentheim.de

.de crawl

First seen 2026-04-25 · Last seen 2026-05-18 · ok HTTP/1.1 200 3881 ms crawled 2026-05-18

DE · 49.13.15.167 · AS24940 Hetzner Online GmbH

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Bad Mergentheim Kur- und Urlaubsstadt im Lieblichen Taubertal
Description
Lebensfreude beginnt hier: Entdecken Sie Altstadt-Charme, Park-Oasen, Gesundheitskompetenz und ein pulsierendes Stadtleben.
Language
de
Canonical
https://www.bad-mergentheim.de/de/

Open Graph

site name
Bad Mergentheim Heilbad und Kurort im Lieblichen Taubertal

Technology

CMS
Nuxt

Third-party hosts loaded (1)

  • analytics.webcontact.de×1

Social

Contact

Email
Phone
Address
Bahnhofplatz 197980 Bad MergentheimTelefon:07931 57-0Telefax: 07931 57-1900E-Mail:info@bad-mergentheim.de

Registration

Updated
2018-10-09
Name servers
  • k1z01s003.kivbf.de.
  • k1z01s004.kivbf.de.
  • ns.frei.net.

DNS records live

NS
  • k1z01s003.kivbf.de
  • k1z01s004.kivbf.de
  • ns.frei.net
MX
  • 10 mx6.kvnbw.de
  • 10 mx7.kvnbw.de
  • 10 mx8.kvnbw.de
  • 10 mx9.kvnbw.de
TXT
Show 4 TXT records
  • amazon-business-verification=4d99e044804be578623a4ee8738e93739d01d1fe97659b96f4678c4869e38b61
  • apple-domain-verification=7l9fduo4w9Rk3Jsc
  • MS=1972170D7A80AACC1A7427E5C1684A877D258BAB
  • google-site-verification=9QbmBK_ulcfYka_xkmjDGtzfyPuJCEfmI4cKJAtd83U

Email authentication partial

SPF
v=spf1 a a:w0146d8c.kasserver.com include:spf.protect.kvnbw.de include:_spf.webcontact.de ~all
softfail (~all)
DMARC
v=DMARC1; p=none
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

E8
from 2026-04-22 to 2026-07-21
Expires in 62 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.bad-mergentheim.de/de/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self' https://*.webcontact.de https://*.kommuneo.de https://*.bad-mergentheim.de; img-src 'self' data: https://*.webcontact.de https://*.kommuneo.de https://*.bad-mergentheim.de https://*.tile.openstreetmap.org https://*.oastatic.com https://www.outdooractive.com https://cdn.tomas-travel.com https://api.service-digitale-verwaltung.de; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*.webcontact.de https://*.kommuneo.de https://*.bad-mergentheim.de https://code.etracker.com https://api.service-digitale-verwaltung.de https://api.service-digitale-verwaltung.de/embed; connect-src 'self' https://*.webcontact.de https://*.kommuneo.de https://*.bad-mergentheim.de https://api.service-digitale-verwaltung.de https://api.service-digitale-verwaltung.de/embed; frame-ancestors 'self' multimaps360.de *.multimaps360.de savoyhotel-bad-mergentheim.de *.savoyhotel-bad-mergentheim.de; style-src 'self' 'unsafe-inline' https://*.webcontact.de https://*.kommuneo.de https://*.bad-mergenth
strict-transport-security
max-age=15552000; includeSubDomains

Links to (4)

Linked from (5)