berlet.de

.de crawl

First seen 2026-04-29 · Last seen 2026-05-07 · ok HTTP/1.1 200 865 ms crawled 2026-05-07

CZ · 217.198.127.122 · AS34222 ZONER a.s.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Berlet
Description
Berlet
Language
de
Generator
CS Designer 2
Canonical
https://www.berlet.de/

Technology

Analytics
  • Google Tag Manager

Third-party hosts loaded (4)

  • berlet.mh-cf.de×50
  • img.idealo.com×2
  • integrations.etrusted.com×1
  • www.googletagmanager.com×1

Contact

Email
Phone

Registration

Updated
2024-08-01
Name servers
  • root-dns.netcup.net.
  • second-dns.netcup.net.
  • third-dns.netcup.net.

DNS records live

NS
  • root-dns.netcup.net
  • second-dns.netcup.net
  • third-dns.netcup.net
MX
  • 10 berlet-de.mail.protection.outlook.com
TXT
  • MS=ms77388853
  • facebook-domain-verification=zz0npe3vvtdfgw6amivpsonaoa7vw9
  • google-site-verification=1mLp32My-dNUIJd04UXivC0lGnOsU8tYo8oFEqJU-ks

Email authentication partial

SPF
v=spf1 include:mail.zendesk.com include:spf.protection.outlook.com -all
strict (-all)
DMARC
v=DMARC1; p=none; rua=mailto:dmarc@berlet.de;
policy: none (monitoring only)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCcZDGQ+RL3chvZZ2lAG3QYz+wnsGRE+nIOy+9PuHTpJNJMaCzlRuefxJAYlljlPLpurKqyOJ9HT46vzL7ZG/…
selectors probed

Certificate (current)

R12
from 2026-03-26 to 2026-06-24
Expires in 36 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.berlet.de/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
Header values
x-frame-options
SAMEORIGIN
permissions-policy
microphone=()
x-content-type-options
nosniff
content-security-policy
default-src 'self'; connect-src *; font-src *; frame-src *; img-src * data:; media-src *; object-src *; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline';
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (20)

Linked from (2)