coop-heizoel.ch

.ch crawl

First seen 2026-05-28 · Last seen 2026-05-31 · ok HTTP/1.1 200 505 ms crawled 2026-05-31

GB · 135.236.11.54 · AS8075 Microsoft Corporation

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Cmaspartacus
Language
en

Technology

Server
*

DNS records live

NS
  • ch.pro.io
  • nl.pro.io
  • p.dnh.net
MX
  • 10 coopheizoel-ch01b.mail.protection.outlook.com
Verified for
  • Microsoft 365

Email authentication partial

SPF
v=spf1 ip4:217.20.192.17 ip4:213.193.109.130 ip4:46.140.190.210 include:spf.protection.outlook.com -all
strict (-all)
DMARC
v=DMARC1; p=none; rua=mailto:dmarc_agg@vali.email;
policy: none (monitoring only)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCnNCIoZLIYkh+ygQXW1K9EBQcel2dg/bK7cd/A3Ah0NGypmlfCOG2wm18Q1KVoxZMvTdpouGbuHRlVwn5R4P…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5kl7Ld6ggIjSZ249dEJJ/4tlYANyiOejREitVzplFjS5E+mRPmRUMtMSAzv2R730i2yuAgJeAg/AqJ…
selectors probed

Certificate (current)

Sectigo Public Server Authentication CA DV R36
from 2025-11-25 to 2026-12-27
Expires in 207 days

HTTP security headers

Header hygiene 75/100 Checked live page: https://www.coop-heizoel.ch/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • missing frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-content-type-options
nosniff
content-security-policy
default-src 'self' https://api.coop-heizoel.ch/ https://backoffice.cy4ya4doff-coopminer1-p1-nat.model-t.cc.commerce.ondemand.com/; style-src 'self' https://api.coop-heizoel.ch/ https://backoffice.cy4ya4doff-coopminer1-p1-nat.model-t.cc.commerce.ondemand.com/ 'unsafe-inline'; script-src 'self' https://api.coop-heizoel.ch/ https://backoffice.cy4ya4doff-coopminer1-p1-nat.model-t.cc.commerce.ondemand.com/ 'unsafe-hashes' 'sha256-MhtPZXr7+LpJUY5qtMutB+qWfQtMaPccfe7QXtCcEYc='; img-src 'self' https://api.coop-heizoel.ch/ https://backoffice.cy4ya4doff-coopminer1-p1-nat.model-t.cc.commerce.ondemand.com/ data:; form-action 'self'; base-uri 'self'; object-src 'none'; frame-ancestors https://backoffice.cy4ya4doff-coopminer1-p1-nat.model-t.cc.commerce.ondemand.com/; connect-src 'self' https://api.coop-heizoel.ch/ https://backoffice.cy4ya4doff-coopminer1-p1-nat.model-t.cc.commerce.ondemand.com/; upgrade-insecure-requests
strict-transport-security
max-age=15724800

Linked from (3)