degussa.com
HTML metadata
Technology
- Server
- Apache
Third-party hosts loaded (2)
- static.klaviyo.com×1
- widget.trustpilot.com×1
Social
Contact
- Phone
- Address
- Friedrich‑Ebert‑Anlage 35‑37, 60327, Frankfurt am Main, DE
Registration
- Registrar
- COREhub, S.R.L.
- Created
- 1994-04-28
- Expires
- 2027-04-29 343 days left
- Updated
- 2025-12-19
- Name servers
-
- ns1.lemarit.de
- ns1.lemarit.net
- ns2.lemarit.de
- ns2.lemarit.net
- ns3.lemarit.de
DNS records live
- NS
-
- ns1.lemarit.de
- ns1.lemarit.net
- ns2.lemarit.de
- ns2.lemarit.net
- ns3.lemarit.de
- MX
-
- 0 degussa-com.mail.protection.outlook.com
- TXT
-
klaviyo-site-verification=W3d44UMS=57580094
- Verified for
-
- Atlassian
Email authentication partial
- SPF
-
v=spf1 mx a:mail01.degussa-goldhandel.de include:spf.protection.outlook.com include:spf.dc-cluster.de ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAx0YahLFDLAQ1t5K6Gwxn5wCY5uEv7cuDXTk5c15GM8jwp8FvD3QDPgwDsCQ6gs/l7qlqm/IO3DQhZ0… - dkim:
v=DKIM1; k=rsa; p=MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA6Kp0xavKVhUDg8UzVzb82DzqRnyOO2mjh/1+ejQbTu1zSWkGaQKrrArECFvRh6tRdZQAQU7fx3KirL…
selectors probed - selector1:
Certificate (current)
R13
Expires in 49 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
default-src 'self' payments-de-sandbox.amazon.com payments-de.amazon.com payments.amazon.de *.algolia.net *.algolianet.com *.google.com ws://127.0.0.1:35729 degussa.com; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.algolia.net *.algolianet.com *.unpkg.com *.convertexperiments.com use.typekit.net *.googletagmanager.com *.google.com *.google-analytics.com *.gstatic.com *.googleapis.com connect.facebook.net *.payments-amazon.com payments-de-sandbox.amazon.com *.clarity.ms *.collanapay.com *.paypal.com degussa.com *.trustpilot.com https://lztdxm.degussa.com https://static.hotjar.com https://googleads.g.doubleclick.net https://script.hotjar.com https://snap.licdn.com https://*.klaviyo.com https://rdjmi2.degussa.com https://*.tiktok.com; style-src 'self' 'unsafe-inline' unpkg.com *.googletagmanager.com use.typekit.net fonts.googleapis.com tagmanager.google.com degussa.com https://p.typekit.net; img-src 'self' data: *.imgix.net *.basemaps.cartocdn.com *.stamen.com *.algolia.net *.algo- strict-transport-security
max-age=31536000; includeSubDomains; preload