dtgonlineplus.de

.de crawl

First seen 2026-04-24 · Last seen 2026-05-18 · ok HTTP/1.1 200 5432 ms crawled 2026-05-18

DE · 185.111.170.101 · AS204147 Cordes & Graefe KG

Reputation 89/100 weak security headers dmarc monitor-only

sector other type parked

HTML metadata

Language
de

Registration

Updated
2025-08-22
Name servers
  • ns5.adacor.net.
  • ns.europe.adacor.net.
  • ns.global.adacor.net.

DNS records live

NS
  • ns.europe.adacor.net
  • ns.global.adacor.net
  • ns5.adacor.net
MX
  • 0 dtgonlineplus-de.mail.protection.outlook.com
TXT
  • MS=ms29169730
  • globalsign-domain-verification=O84cqP1jpGliJHK_e3PQgxcUr449-_7o9fQBF0kYXu

Email authentication partial

SPF
v=spf1 mx ip4:185.111.169.10 ip4:185.111.169.12 ip4:185.111.169.29 ip4:185.111.170.23 include:spf.protection.outlook.com -all
strict (-all)
DMARC
v=DMARC1;p=none;aspf=r;adkim=r
policy: none (monitoring only)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArVFN63h0qYP7OkYC95xSLxo+YvqZs6kMyh18Oq19J2fXAXh29croB9uK/oovfqSMWGM4vFSooM/QMn…
selectors probed

Certificate (current)

GlobalSign GCC R3 DV TLS CA 2020
from 2026-02-10 to 2027-03-14
Expires in 299 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://dtgonlineplus.de/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://static.hotjar.com https://script.hotjar.com https://www.datadoghq-browser-agent.com/ https://maps.google.com/ https://maps.googleapis.com/ https://youtu.be/ https://*.usercentrics.eu/ https://*.omtrdc.net/ https://*.tt.omtrdc.net/ https://*.demdex.net/ https://cm.everesttech.net https://assets.adobedtm.com/ https://wconfigure.com/ https://at.wconfigure.com/ https://widget.itek.de/ https://widget.itek.de/ http://static.hotjar.com http://script.hotjar.com http://www.datadoghq-browser-agent.com/ http://maps.google.com/ http://maps.googleapis.com/ http://youtu.be/ http://*.usercentrics.eu/ http://*.omtrdc.net/ http://*.tt.omtrdc.net/ http://*.demdex.net/ http://cm.everesttech.net http://assets.adobedtm.com/ http://wconfigure.com/ http://at.wconfigure.com/ http://widget.itek.de/ http://widget.itek.de/; style-src 'self' 'unsafe-inline' https://static.hotjar.com https://script.hotjar.com https://wconfigure.com/ https:

Links to (5)

Linked from (2)