cronbank.de

.de crawl

First seen 2026-04-23 · Last seen 2026-05-17 · ok HTTP/1.1 200 15373 ms crawled 2026-05-17

DE · 195.200.52.158 · AS15590 Atruvia AG

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Startseite - CRONBANK
Description
Willkommen bei der CRONBANK!
Language
de-DE
Canonical
https://www.cronbank.de/startseite.html

Open Graph

url
https://www.cronbank.de/startseite.html
title
Willkommen bei der CRONBANK!
language
de
description
Willkommen bei der CRONBANK!

Technology

Third-party hosts loaded (1)

  • atruvia.scene7.com×5

Social

Registration

Updated
2025-08-20
Name servers
  • nsh1.atruvia.de.
  • nsh2.atruvia.com.
  • nsh3.atruvia.de.
  • nsh4.atruvia.com.

DNS records live

NS
  • nsh1.atruvia.de
  • nsh2.atruvia.com
  • nsh3.atruvia.de
  • nsh4.atruvia.com
MX
  • 10 cronbank-de.mail.protection.outlook.com
TXT
Show 8 TXT records
  • D-TRUST=T4EEKWIKDOLZ3DX7UJM3ZPI
  • globalsign-domain-verification=iBapaog2SHRqMnh9DC0oXyMcKxlkoi6Md-OdSbwuOt
  • D-TRUST=5P75ZJ2B759DW8IWXFRAU38
  • apple-domain-verification=WwlcwbbBUhKxbnOf
  • QuoVadis=51473130-54b5-4060-ab9f-dbe32b61facd
  • GwR/1AzwtqUDbinR3UpqB+WG2aNn9aP1kExhhIE2LxA=
  • miro-verification=fe8187b45660a6a6083928bef2613a48521922a0
  • MS=ms24851133

Email authentication partial

SPF
v=spf1 mx ip4:195.185.213.186 include:hostedoffice.ag include:spf.crsend.com include:spf.protection.outlook.com ip4:62.144.112.5 ip4:62.27.72.5 include:26117785.spf04.hubspotemail.net -all
strict (-all)
DMARC
v=DMARC1; p=none
policy: none (monitoring only)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC9LrkPvdffFY+2ExyKxcgeu0Q29O9sbT9KThCIy3quDzMhQ6pgH2KiyWFar0/ARk55Myu+REpT5Pi8SSRB6q…
  • selector2: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDKSOQgtuW8NizQmq5s72t2ALxPyrtOYPBgIK6cKqjFuGxvuNHVstXTtwzDn8NnldkyttCNHurAI1SeGBbH7u…
selectors probed

Certificate (current)

D-TRUST SSL Class 3 CA 1 EV 2009
from 2026-04-05 to 2026-10-20
Expires in 154 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.cronbank.de/startseite.html

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
no-referrer
x-frame-options
DENY
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' https://maps.googleapis.com 'sha256-aSqN2R3jDvHFUL3vVOUtG6OJr1IF+Y31IPMdo0dLU6U=' 'nonce-014c0a241974150309791d69757611ce'; base-uri 'self'; font-src 'self' https: data:; form-action 'self'; frame-src 'self' https://www.youtube-nocookie.com https://www.mein-check-in.de https://cronbank.helixjobs.com; frame-ancestors 'none'; object-src 'self'; style-src 'self' 'unsafe-inline' https:; img-src https: data:; connect-src 'self' data: https://maps.googleapis.com wss://*.mypurecloud.de https://atruvia.scene7.com; block-all-mixed-content; script-src-attr 'none'; media-src https: https://atruvia.scene7.com
strict-transport-security
max-age=31536000

Links to (2)

Linked from (1)