cratos.de

.de crawl

First seen 2026-05-12 · Last seen 2026-05-18 · ok HTTP/1.1 200 1279 ms crawled 2026-05-18

FR · 92.205.213.177 · AS21499 Host Europe GmbH

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
CRATOS – Strategie & Digital Business Consulting
Description
CRATOS ist Ihr Partner für Strategie, Digitalisierung, Data Innovation, Governance und Security. Wir gestalten sichere und nachhaltige Unternehmenswelten.
Language
de

Technology

Server
nginx

Social

Contact

Email
Phone

Registration

Updated
2021-06-18
Name servers
  • ns81.domaincontrol.com.
  • ns82.domaincontrol.com.

DNS records live

NS
  • ns81.domaincontrol.com
  • ns82.domaincontrol.com
MX
  • 100 cratos-de.mail.protection.outlook.com
TXT
  • MS=ms79415615
  • google-site-verification=ZDMaOk2RR_RPl3MeYG7_NkhfkdLMpUEe3oXwbCyez6E

Email authentication partial

SPF
v=spf1 include:spf.protection.outlook.com include:_spf.rexx-systems.com include:_spf.rexx-suite.com mx -all
strict (-all)
DMARC
v=DMARC1; p=none; rua=mailto:dmarc@cratos.de; ruf=mailto:dmarc@cratos.de; adkim=r; aspf=r
policy: none (monitoring only)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqV9AIWj/+G2Vku5ZBFBXotUKi8A7Y7gOGYKSgolSZNNQfU7RaPo4Lb4gOO3ufjnl9HrSxpnQBRTinZ…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAz4UTzc1ufmJptYNEAKNeRfFbvV59bN0Hz/p648RykmX7aFMlukYs0jkTkVaGMnDzt+LdNU4qScHS3H…
  • mail: k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed

Certificate (current)

Starfield Secure Certificate Authority - G2
from 2026-04-15 to 2026-10-29
Expires in 162 days

HTTP security headers

Header hygiene 95/100 Checked live page: https://cratos.de/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
geolocation=(), microphone=(), camera=()
x-content-type-options
nosniff
content-security-policy
default-src 'self' https: data: blob:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https:; style-src 'self' 'unsafe-inline' https:; img-src 'self' data: blob: https:; font-src 'self' data: https:; connect-src 'self' https: wss:; frame-src 'self' https:; object-src 'none'; base-uri 'self'; form-action 'self' https:; frame-ancestors 'self';
strict-transport-security
max-age=63072000; includeSubDomains; preload

Links to (5)

Linked from (2)