baeder-ettlingen.de

.de crawl

First seen 2026-04-27 · Last seen 2026-05-20 · ok HTTP/1.1 200 6667 ms crawled 2026-05-20

DE · 213.133.105.131 · AS24940 Hetzner Online GmbH

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Ettlinger Bäder
Language
de
Generator
TYPO3 CMS
Canonical
https://www.baeder-ettlingen.de//startseite

Technology

Server
Apache
CMS
Joomla
jQuery
1.11.3 known XSS (<3.5)

Contact

Phone
Address
Albgaubad EttlingenLuisenstraße 1476275 EttlingenTelefonnummer07243 101-811E-Mail schreibenBäderverwaltung im AlbgaubadLuisenstraße 1476275 EttlingenTelefonnummer07243 101-631E-Mail schreiben

Registration

Updated
2019-12-10
Name servers
  • fay.ns.cloudflare.com.
  • jeff.ns.cloudflare.com.

DNS records live

NS
  • fay.ns.cloudflare.com
  • jeff.ns.cloudflare.com
MX
  • 8 mail.baeder-ettlingen.de

Email authentication partial

SPF
v=spf1 a mx a:dedi4183.your-server.de mx:dedi4183.your-server.de ip4:213.133.105.131 ip6:2a01:4f8:d0a:20af::2 ~all
softfail (~all)
DMARC
v=DMARC1;p=none;sp=none;pct=50;adkim=r;aspf=r;
policy: none (monitoring only) · pct=50 · sp=none
DKIM
no key found at common selectors

Certificate (current)

Encryption Everywhere DV TLS CA - G2
from 2026-04-10 to 2026-10-26
Expires in 158 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.baeder-ettlingen.de/startseite

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
no-referrer-when-downgrade, strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'none'; object-src 'none'; script-src secure.pay1.de 'self'; style-src 'self' 'unsafe-inline'; img-src *.tile.openstreetmap.org data: 'self'; font-src 'self'; connect-src secure.pay1.de 'self'; frame-ancestors 'self'; child-src www.google.com/maps/ www.youtube-nocookie.com secure.pay1.de; base-uri 'self'; manifest-src 'self'
strict-transport-security
max-age=31536000; includeSubDomains

Links to (6)

Linked from (1)