certiqua.ch

.ch crawl

First seen 2026-06-01 · Last seen 2026-06-02 · ok HTTP/1.1 200 2576 ms crawled 2026-06-01

DE · 18.158.203.232 · AS16509 Amazon.com, Inc.

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
Kundenbewertungen für mehr Umsatz | CertiQua.ch
Description
CertiQua ist das Qualitätslabel für das Schweizer Handwerk. Ausgezeichnet vom Kunden - Neutral überwacht ★★★★★
Language
de
Canonical
https://www.certiqua.ch/
Translations
  • de
  • fr
  • it

Technology

Server
Microsoft-IIS
jQuery
1.12.4 known XSS (<3.5)
Stack
PHP
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts
Third-party hosts loaded (8)
  • f-live-certiqua-bewertungskarten.s3.amazonaws.com×15
  • cdn.jsdelivr.net×2
  • code.jquery.com×2
  • www.googletagmanager.com×2
  • ajax.googleapis.com×1
  • cdnjs.cloudflare.com×1
  • fonts.googleapis.com×1
  • maxcdn.bootstrapcdn.com×1

Contact

Email
Phone

DNS records live

NS
  • ns-1437.awsdns-51.org
  • ns-1866.awsdns-41.co.uk
  • ns-235.awsdns-29.com
  • ns-747.awsdns-29.net
MX
  • 1 aspmx.l.google.com
  • 10 alt3.aspmx.l.google.com
  • 10 alt4.aspmx.l.google.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com

Email authentication weak

SPF
v=spf1 include:_spf.google.com ~all
softfail (~all)
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

Sectigo Public Server Authentication CA DV R36
from 2025-06-15 to 2026-07-17
Expires in 44 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.certiqua.ch/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • short HSTS max-age
  • CSP allows unsafe inline scripts/styles
Header values
referrer-policy
no-referrer
x-frame-options
DENY
permissions-policy
geolocation=(), midi=(), sync-xhr=(), accelerometer=(), gyroscope=(), magnetometer=(), payment=(), camera=(), microphone=(), usb=(), fullscreen=(self)
x-content-type-options
nosniff
content-security-policy
script-src 'self' 'unsafe-inline' https://maps.googleapis.com https://maps.google.com https://apis.google.com https://ajax.googleapis.com https://cdn.jsdelivr.net https://code.jquery.com https://www.googletagmanager.com https://www.google-analytics.com https://cdnjs.cloudflare.com
strict-transport-security
max-age=2592000

Linked from (5)