dachbleche24-shop.de
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Shopify
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (6)
- cdn.shopify.com×86
- shop-cms.db24.oofone.de×26
- integrations.etrusted.com×1
- st.pandect.es×1
- widgets.trustedshops.com×1
- www.googletagmanager.com×1
Social
Registration
- Updated
- 2026-02-13
- Name servers
-
- ns3.stratoserver.net.
- ns4.stratoserver.net.
DNS records live
- NS
-
- ns3.stratoserver.net
- ns4.stratoserver.net
- MX
-
- 100 relay.rzone.de
- 20 mx-in.redoo.cloud
- TXT
-
google-site-verification=34boI_u3h0EIuJ_bse9_QX5N4ulhN2zQ37M0Rtw04NY"klaviyo-site-verification=V9VdpZ"google-site-verification=k32NY9ubjl7VyKX4_Dlx91Ay4f-MnEA6g6r-fBh4_AE
Email authentication strong
- SPF
-
v=spf1 mx a include:spf.odermedia.de ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=none;rua=mailto:dmarc-report@dachbleche24-shop.de;ruf=mailto:dmarc@dachbleche24-shop.de;fo=1policy: none (monitoring only) - DKIM
-
- default:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDW8LNnts9O0pO0dz857LsgPNDmNPzSYoihYLU/UQ+JT/60iwbwwrBOF8piGHDvCSUk6V04byLJ2dL0hsP04r…
selectors probed - default:
Certificate (current)
E8
Expires in 60 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; default-src 'self' 'nonce-95c5b9bffc05f073bb47c5620bd33d10' https://cdn.shopify.com https://shopify.com; frame-ancestors 'self' https://shop-cms.db24.oofone.de localhost:3001; style-src *.googletagmanager.com *.google.com *.doubleclick.net *.google.de *.google-analytics.com *.etrusted.com *.trustedshops.com *.db24.oofone.de localhost:3000 *.shopify.com *.myshopify.dev *.myshopify.com *.pandect.es *.dash0.com *.klaviyo.com *.cloudfront.net *.hotjar.com *.googlesyndication.com *.dachbleche24-shop.de *.klarinsights.net *.bing.net *.bing.com *.clarity.ms *.facebook.net *.facebook.com *.tiktok.com *.tiktokw.us *.posthog.com 'self' 'unsafe-inline' https://cdn.shopify.com; connect-src 'self' https://*.etrusted.com wss://*.db24.oofone.de https://*.dash0.com wss://*.dash0.com https://*.pandect.es https://*.google.com https://*.doubleclick.net https://*.google-analytics.com https://*.analytics.google.com https://*.googletagmanager.com https://*.googlesyndication.com https://*.kl- strict-transport-security
max-age=31536000