eragon.de

.de crawl

First seen 2026-05-14 · Last seen 2026-05-19 · ok HTTP/1.1 200 2382 ms crawled 2026-05-19

DE · 185.225.133.195 · AS48314 IP-Projects GmbH & Co. KG

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Eragon und die fantastische Welt Alagaësia – von Christopher Paolini
Description
Die offizielle deutsche Website zu Eragon
Language
de

Open Graph

url
https://www.eragon.de/
title
ERAGON – Alles über die Eragon-Saga
locale
de_DE
description
Als Eragon auf der Jagd einen glänzenden blauen Stein findet, ahnt er nicht, dass dieser Fund sein Leben verändern wird und ihm ein Vermächtnis beschert, das so alt ist wie die Welt. Folge Drachenreiter Eragon und Saphira auf ihren Abenteuern in Alagaësia!

Technology

Third-party hosts loaded (1)

  • penguin.epccm19.com×3

Social

Registration

Updated
2023-04-27
Name servers
  • ns1.altoplan.net.
  • ns2.altoplan.net.
  • ns3.altoplan.net.

DNS records live

NS
  • ns1.altoplan.net
  • ns2.altoplan.net
  • ns3.altoplan.net
MX
  • 10 eragon-de.mail.protection.outlook.com
Verified for
  • Microsoft 365

Email authentication partial

SPF
v=spf1 mx include:spf.protection.outlook.com -all
strict (-all)
DMARC
v=DMARC1; p=none; sp=none; rua=mailto:_dmarc@eragon.de; pct=100; ri=86400
policy: none (monitoring only) · sp=none
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAywkTo/4OhgtQ8upaVVs5nTe+XUljmiaLw4Kqm2ucCXH5NuGAfXM3hk6RYaU/vV/iaCYgW3f5ZzJAaS…
selectors probed

Certificate (current)

R13
from 2026-04-15 to 2026-07-14
Expires in 55 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.eragon.de/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-resource-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
same-origin
x-frame-options
sameorigin
permissions-policy
accelerometer=(), autoplay=(), camera=(), encrypted-media=(), fullscreen=(), geolocation=(), gyroscope=(), magnetometer=(), midi=(), microphone=(), payment=(), picture-in-picture=(), sync-xhr=(), usb=()
x-content-type-options
nosniff
content-security-policy
default-src 'none' ; base-uri 'self' ; child-src 'self' *.youtube.com *.youtube-nocookie.com ; connect-src 'self' 'unsafe-inline' https://stats.g.doubleclick.net https://www.facebook.com https://www.google.com https://adservice.google.com https://www.google.de https://www.google-analytics.com https://www.googleapis.com https://www.googletagmanager.com https://www.gstatic.com https://tr.outbrain.com https://ct.pinterest.com *.taboola.com https://penguin.epccm19.com ; font-src 'self' data: https://fonts.gstatic.com ; form-action 'self' ; frame-ancestors 'self' ; frame-src 'self' https://ct.pinterest.com *.youtube.com *.youtube-nocookie.com ; img-src 'self' 'unsafe-inline' data: blob: https://cx.atdmt.com https://googleads.g.doubleclick.net https://stats.g.doubleclick.net https://www.facebook.com https://connect.facebook.net https://www.google.at https://www.google.be https://www.google.bg https://www.google.ch https://www.google.co.id https://www.google.co.in https://www.
strict-transport-security
max-age=31536000; includeSubDomains; preload
cross-origin-resource-policy
same-origin

Links to (5)

Linked from (1)