bosch-tahsilat.com

.com crawl

First seen 2026-04-22 · Last seen 2026-05-12 · ok HTTP/1.1 200 1104 ms crawled 2026-05-15

TR · 37.205.1.201 · AS211225 Ecozum Bilgi Teknolojileri A.S

Reputation 100/100

Classifying

HTML metadata

Title
Bosch Sanayi ve Ticaret A.Ş.

Technology

Server
Microsoft-IIS
CMS
Ghost

Third-party hosts loaded (1)

  • unpkg.com×2

Registration

Registrar
CSC Corporate Domains, Inc.
Created
2016-03-29
Expires
2027-03-29 312 days left
Updated
2026-03-25
Name servers
  • gwa.fe.bosch.de
  • gwa2.fe.bosch.de

DNS records live

NS
  • gwa.fe.bosch.de
  • gwa2.fe.bosch.de
  • ns1.fe.bosch.de
  • ns2.fe.bosch.de
  • ns3.fe.bosch.de
  • ns4.fe.bosch.de
  • ns5.fe.bosch.de
  • ns6.fe.bosch.de
MX
  • 10 boschtahsilat-com01c.mail.protection.outlook.com
TXT
Show 5 TXT records
  • _ai8omrs5tgcd9otahuik5b5d6fp3q98
  • MS=CBE2D128A2FDFCFC6DDCDACB3FE9A9E9E481F037
  • sw72pLuSMPAPHrNy0P/tPGTfnvB6bVdn040tXmGEtWTvz3KQh2bGw5c31cWNKBFFK5ZqbUPNLEZMEkDic6/Jsw==
  • OjHWdwGwTEB79odq2+AeqsB2SWiTJuo30FUBrfJ1RM7xjonwLVgxnOgP7yvsLYhQz341D7TQeR5WrOB48hjwCA==
  • _onoib5kv8tpjbkjcihcevupl7as6r1w
Verified for
  • Apple
  • Google
  • Microsoft 365
  • Miro

Email authentication strong

SPF
v=spf1 include:_spf.bosch.de -all
strict (-all)
DMARC
v=DMARC1; p=reject; sp=none; aspf=s; adkim=s;
policy: reject (enforced) · sp=none
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDOSsEQnh0AN/DOCKNmUo9CX42oOFAK+WyaVoTP4hrD/nJHF4qoU5q4BoyvDzLiaNUm592BGqJE7Iw9zlE7La…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwKoY27lhrrq+dWmP+O67r8+KkBe0gCnTvo6XyJPXXAUvjUUASWd0/DMfwv/+6E943cgZr8rNgk7Ibr…
selectors probed

Certificate (current)

Sectigo Public Server Authentication CA DV E36
from 2026-02-05 to 2027-02-18
Expires in 273 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://bosch-tahsilat.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
no-referrer
x-frame-options
SAMEORIGIN
permissions-policy
accelerometer=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()
x-content-type-options
nosniff
content-security-policy
default-src 'self' *.bosch.tech *.zohocdn.com *.zohostatic.com *.zoho.com *.zohopublic.com *.ecozum.com *.google.com *.gstatic.com.com *.google-analytics.com *.googletagmanager.com *.doubleclick.net; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.bosch.tech *.zohostatic.com *.zohocdn.com *.zoho.com *.google-analytics.com *.googletagmanager.com *.paynet.com.tr *.bkmexpress.com.tr *.masterpassturkiye.com *.ecozum.com *.google.com *.gstatic.com *.gstatic.com unpkg.com *.paramtech.com.tr *.param.com.tr cdn.jsdelivr.net; style-src 'self' 'unsafe-inline' *.bosch.tech *.zohocdn.com *.zohostatic.com *.ecozum.com; img-src 'self' data: *.zohocdn.com *.zohostatic.com *.zoho.com *.zohopublic.com *.bkmexpress.com.tr *.ecozum.com *.google-analytics.com *.googletagmanager.com stats.g.doubleclick.net *.google.com *.google.com.tr *.masterpassturkiye.com *.ecozum.com *.ecozum.com.tr ecozum.com.tr; font-src 'self' *.zohocdn.com *.bosch.tech *.zohostatic.com *.zoho.com *.zohopublic.com *.
strict-transport-security
max-age=31536000; includeSubDomains

Links to (1)

Linked from (1)