ewgrobbel.com

.com crawl

First seen 2026-04-15 · Last seen 2026-05-09 · ok HTTP/1.1 200 2742 ms crawled 2026-05-09

US · 151.101.1.75 · AS54113 Fastly, Inc.

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
EW Grobbel | Food For Generations
Description
EW Grobbel is a family food company that was established in 1883 by Emil Wilhelm Grobbel. We believe that individual attention to detail will ensure the quality necessary to bring your customers back time and time again!
Language
en-US
Canonical
https://www.ewgrobbel.com/

Open Graph

url
https://www.ewgrobbel.com/
title
EW Grobbel | Food For Generations
site name
EW Grobbel's | Family Food Company in Detroit, MI
description
EW Grobbel is a family food company that was established in 1883 by Emil Wilhelm Grobbel. We believe that individual attention to detail will ensure the quality necessary to bring your customers back time and time again!

Technology

Analytics
  • Google Tag Manager
Fonts
  • Google Fonts
Social widgets
  • YouTube Embed
Third-party hosts loaded (13)
  • theme-assets.getbento.com×4
  • app-assets.getbento.com×3
  • images.getbento.com×3
  • assets-cdn-refresh.getbento.com×1
  • cdnjs.cloudflare.com×1
  • fonts.googleapis.com×1
  • fonts.gstatic.com×1
  • media-cdn.getbento.com×1
  • widgets.resy.com×1
  • www.google.com×1
  • www.googletagmanager.com×1
  • www.gstatic.com×1
  • www.youtube.com×1

Registration

Registrar
GoDaddy.com, LLC
Created
2018-04-02
Expires
2028-04-02 682 days left
Updated
2023-04-03
Name servers
  • ns47.domaincontrol.com
  • ns48.domaincontrol.com

DNS records live

NS
  • ns47.domaincontrol.com
  • ns48.domaincontrol.com
MX
  • 0 ewgrobbel-com.mail.protection.outlook.com

Email authentication weak

SPF
v=spf1 include:spf.protection.outlook.com -all
strict (-all)
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

R12
from 2026-04-26 to 2026-07-25
Expires in 66 days

HTTP security headers

Header hygiene 65/100 Checked live page: https://www.ewgrobbel.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • cross-origin-opener-policy
findings
  • short HSTS max-age
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
content-security-policy
default-src * blob: data: 'unsafe-inline' 'unsafe-eval'; script-src 'self' * https://cdn.us.heap-api.com https://heapanalytics.com https://viewer.threshold360.com 'unsafe-inline' 'unsafe-eval'; script-src-elem * https://viewer.threshold360.com 'unsafe-inline' 'unsafe-eval'; img-src 'self' * https://heapanalytics.com https://viewer.threshold360.com blob: data:; style-src 'self' * https://heapanalytics.com https://viewer.threshold360.com 'unsafe-inline' 'unsafe-eval' blob:; connect-src 'self' * https://c.us.heap-api.com https://heapanalytics.com https://viewer.threshold360.com wss://viewer.threshold360.com blob:; font-src 'self' * https://heapanalytics.com https://viewer.threshold360.com data:; frame-src 'self' * https://viewer.threshold360.com; worker-src * blob:; media-src * blob: data:; frame-ancestors 'self';
strict-transport-security
max-age=2592000; includeSubDomains
cross-origin-opener-policy
same-origin

Links to (1)

Linked from (1)