bbe.de

.de crawl

First seen 2026-04-19 · Last seen 2026-05-13 · ok HTTP/1.1 200 8268 ms crawled 2026-05-13

DE · 93.184.181.4 · AS47297 NetCom BW GmbH

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
BBE Handelsberatung - Wissen schafft Zukunft
Description
Die Unternehmensberatung für den Handel. Die BBE schafft Gewissheit für Entscheider von Handelsunternehmen, Immobilienwirtschaft und öffentlicher Hand durch methodische Analyse, konkrete Empfehlung und operativen Umsetzungssupport.
Language
de

Technology

CMS
Gatsby
Cookie consent
  • Usercentrics

Third-party hosts loaded (3)

  • app.usercentrics.eu×3
  • privacy-proxy.usercentrics.eu×3
  • api.usercentrics.eu×1

Social

Contact

Email
Phone

Registration

Updated
2010-01-27
Name servers
  • ns1.m-online.net.
  • ns2.m-online.net.
  • ns3.m-online.net.
  • ns4.m-online.net.

DNS records live

NS
  • ns1.m-online.net
  • ns2.m-online.net
  • ns3.m-online.net
  • ns4.m-online.net
MX
  • 0 bbe-de.mail.protection.outlook.com
TXT
  • 0WioEkMCqN9EwlX77U5MDpJrLbovL0crrPR93t966ig6yUBYCR+/KCx8LsL+dhgVCB6bgWYMZ+oma397ZO6Pzg==
  • MS=ms85102278
  • apple-domain-verification=PnCaKXB3GYEsOPLN

Email authentication weak

SPF
v=spf1 mx ip4:109.68.53.255 ip4:81.169.137.238 ip4:5.28.40.197 include:spf.protection.outlook.com include:spf.eu.exclaimer.net -all
strict (-all)
DMARC
not published
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6draraJSPQeaaPNocGET9ts2V3MIcoMGpZTglTtbN1mL4CzqCLI7tneL/Jo3QjK8ZtCWo9c+N0lgSQ…
selectors probed

Certificate (current)

E8
from 2026-03-21 to 2026-06-19
Expires in 31 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.bbe.de/de/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-opener-policy
  • cross-origin-embedder-policy
  • cross-origin-resource-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
sameorigin
permissions-policy
microphone=*, fullscreen=*, accelerometer=*, autoplay=*, camera=*, display-capture=*, encrypted-media=*, geolocation=*, gyroscope=*, payment=*, picture-in-picture=*, sync-xhr=*, usb=()
x-content-type-options
nosniff
content-security-policy
default-src * 'unsafe-inline' 'unsafe-eval' data: blob: mediastream:; script-src * data: blob: mediastream: 'unsafe-inline' 'unsafe-eval'; connect-src * 'unsafe-inline' data: blob: mediastream:; img-src * data: blob: 'unsafe-inline'; frame-src *; style-src * data: blob: 'unsafe-inline'; font-src * blob: data: 'unsafe-inline'; worker-src * data: blob: mediastream: 'unsafe-inline' 'unsafe-eval'
strict-transport-security
max-age=63072000; includeSubdomains;
cross-origin-opener-policy
unsafe-none
cross-origin-embedder-policy
unsafe-none
cross-origin-resource-policy
cross-origin

Links to (2)

Linked from (2)