brennenstuhl.com

.com crawl

First seen 2026-04-20 · Last seen 2026-05-19 · ok HTTP/1.1 200 1424 ms crawled 2026-05-13

DE · 78.47.183.99 · AS24940 Hetzner Online GmbH

Reputation 94/100 dmarc monitor-only

sector home type homepage

HTML metadata

Title
brennenstuhl® | Licht- und Stromverteilung
Description
Entdecken Sie brennenstuhl® - die international führende Marke für Kabeltrommeln, Steckdosenleisten, Verlängerungskabel, Leuchten und Strahler sowie viele weitere innovative Produktbereiche. Hier finden Sie Lösungen für Handwerk, Industrie und Heimwerker mit höchstem Qualitätsanspruch!
Language
de
Canonical
https://www.brennenstuhl.com/

Technology

Server
Apache
Analytics
  • Google Tag Manager
Fonts
  • Adobe Fonts

Third-party hosts loaded (2)

  • www.googletagmanager.com×2
  • use.typekit.net×1

Social

Contact

Address
Seestraße 1-3, 72074, Tübingen, Germany

Registration

Registrar
IONOS SE
Created
1997-09-29
Expires
2026-09-28 130 days left
Updated
2025-09-29
Name servers
  • ns3.kundenserver.de
  • ns4.kundenserver.de

DNS records live

NS
  • ns3.kundenserver.de
  • ns4.kundenserver.de
MX
  • 0 d340235.a.ess.de.barracudanetworks.com
  • 5 d340235.b.ess.de.barracudanetworks.com
TXT
  • klaviyo-site-verification=RuHF47
Verified for
  • Google
  • Meta

Email authentication partial

SPF
v=spf1 include:spf.ess.de.barracudanetworks.com include:spf.protection.outlook.com include:spf.eu.signature365.net -all
strict (-all)
DMARC
v=DMARC1; p=none;
policy: none (monitoring only)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDIS14wClkrGYfmLIYEh+JftNDu+9EcFo9TZKe1nff0hJ0R5gmGKCCI50XQgeJCa8Zc0BtRnhfmNho4/eDLG5…
  • selector2: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDJkdYFaqXNkQsHVLvKAwo986Yy/kklmksNv1RYynVmcnxt8kT0/IGAamdHIFmG1DSL1miEigB78I3zTQS0pI…
selectors probed

Certificate (current)

R13
from 2026-04-21 to 2026-07-20
Expires in 61 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.brennenstuhl.com/?lang=de&country=de

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-opener-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • weak frame protection
  • weak content type protection
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
sameorigin, SAMEORIGIN
permissions-policy
notifications=(self), push=(self)
x-content-type-options
nosniff, nosniff
content-security-policy
default-src 'self' *.google-analytics.com *.googletagmanager.com *.doubleclick.net *.mouseflow.com *.amazon-adsystem.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.google-analytics.com sibautomation.com *.googletagmanager.com *.youtube.com *.facebook.net vjs.zencdn.net amazon-adsystem.com maps.googleapis.com *.mouseflow.com *.amazon-adsystem.com *.googleadservices.com *.doubleclick.net *.google.com *.google.de secure.pay1.de api.deepl.com api-free.deepl.com *.amazonaws.com; connect-src 'self' *.googleapis.com *.google-analytics.com *.google.com *.google.de *.doubleclick.net *.doubleclick.com *.sendinblue.com pro.ip-api.com *.mouseflow.com *.deepl.com api.deepl.com api-free.deepl.com pro.ip-api.com *.doofinder.com *.googlesyndication.com *.brevo.com c.amazon-adsystem.com aax-eu.amazon-adsystem.com ara.paa-reporting-advertising.amazon; style-src 'self' 'unsafe-inline' cloud.typenetwork.com fonts.googleapis.com *.typekit.net; img-src 'self' *.webtype.com *.youtube.com *.facebook.c
strict-transport-security
max-age=15768000;includeSubDomains
cross-origin-opener-policy
same-origin

Links to (7)

Linked from (15)