drw.de

.de crawl

First seen 2026-04-20 · Last seen 2026-05-16 · ok HTTP/1.1 200 727 ms crawled 2026-05-13

DE · 159.69.188.178 · AS24940 Hetzner Online GmbH

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
Das Dominikus-Ringeisen-Werk
Description
Wir begleiten, wir fördern und wir unterstützen Menschen. Wir tun dies aus Überzeugung und auf dem Fundament unserer christlichen Grundhaltung. Jeder Mensch ist kostbar.
Language
de
Generator
TYPO3 CMS
Canonical
https://drw.de/

Technology

Server
Apache
Analytics
  • Google Tag Manager
Cookie consent
  • Usercentrics

Third-party hosts loaded (6)

  • cdn.eye-able.com×2
  • www.googletagmanager.com×2
  • access.eye-able.com×1
  • app.usercentrics.eu×1
  • plugins.flockler.com×1
  • privacy-proxy.usercentrics.eu×1

Social

Contact

Email

Registration

Updated
2017-03-29
Name servers
  • ns1.mars-solutions.it.
  • ns2.mars-solutions.it.

DNS records live

NS
  • ns1.mars-solutions.it
  • ns2.mars-solutions.it
MX
  • 10 drw-mail.ursberg.de
TXT
  • MS=ms84488851
  • google-site-verification=UrItgzbWt9gv4-qXPZFsrbGQw9OuysKL-DCGHnmal_o

Email authentication weak

SPF
v=spf1 ip4:62.159.14.122 ip4:159.69.188.178 include:spf.protection.outlook.com include:_spf-e.cegedim.fr include:_spf-i.cegedim.fr ~all
softfail (~all)
DMARC
not published
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDVVx0lQMI3BSbboZ/eNKKjK/2NuzWc8nxcyy9mEjeaByCm0E619tvDTe2Rgp0oOykucV/CyqeHJLadIlq/Cm…
selectors probed

Certificate (current)

R13
from 2026-05-01 to 2026-07-30
Expires in 73 days

HTTP security headers

Header hygiene 75/100 Checked live page: https://drw.de/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Permissions Policy
Header values
referrer-policy
strict-origin
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline' blob: *.usercentrics.eu *.googletagmanager.com *.eye-able.com *.flocklr.com *.flockler.com *.flockler.app *.youtube-nocookie.com *.youtube.com *.googleapis.com *.vhs-connect.de; worker-src blob:; img-src 'self' data: *.usercentrics.eu *.flocklr.com *.flockler.com *.googletagmanager.com *.eye-able.com *.google.de *.cdninstagram.com *.fbcdn.net *.gstatic.com *.googleapis.com *.ytimg.com hcm.drw.de *.vhs-connect.de; style-src 'self' 'unsafe-inline'; font-src 'self' data: *.gstatic.com; media-src 'self'; object-src 'self'; connect-src 'self' *.usercentrics.eu *.analytics.google.com *.flocklr.com *.flockler.com *.eye-able.com *.flockler.app *.google-analytics.com *.googleapis.com *.g.doubleclick.net *.doubleclick.net login.microsoftonline.com; style-src-elem 'self' 'unsafe-inline' *.googleapis.com *.eye-able.com *.vhs-connect.de; frame-ancestors 'self' drw.meine-vhs.de ; frame-src 'self' *.youtube-nocookie.com
strict-transport-security
max-age=63072000; includeSubdomains;

Links to (13)

Linked from (8)