festool.com

.com crawl

First seen 2026-06-01 · Last seen 2026-06-02 · ok HTTP/1.1 200 575 ms crawled 2026-06-02

NL · 4.175.67.237 · AS8075 Microsoft Corporation

Reputation 92/100 spf without fallback

Classifying

HTML metadata

Title
Festool Worldwide - Tools for the toughest demands
Description
Festool power tools and accessories for the toughest demands, such as plunge-cut saws, circular saws, jigsaws, cordless drills, joining machines and routers.
Language
en
Canonical
https://www.festool.com/

Technology

Stack
ASP.NET
Analytics
  • Google Analytics
Cookie consent
  • Usercentrics
Third-party hosts loaded (8)
  • media.cdn.festool.io×44
  • assets.cdn.festool.io×14
  • cdn.jsdelivr.net×13
  • app.usercentrics.eu×3
  • privacy-proxy.usercentrics.eu×2
  • www.google-analytics.com×2
  • api.usercentrics.eu×1
  • walls.io×1

Social

Contact

Email
Phone

Registration

Registrar
CSC Corporate Domains, Inc.
Created
1999-10-13
Expires
2026-10-13 132 days left
Updated
2025-10-09
Name servers
  • ns1.netnames.net
  • ns2.netnames.net
  • ns5.netnames.net
  • ns6.netnames.net

DNS records live

NS
  • ns1.netnames.net
  • ns2.netnames.net
  • ns5.netnames.net
  • ns6.netnames.net
MX
  • 10 festool-com.mail.protection.outlook.com
TXT
  • 1ifZceHzsFHoK23d
  • knowbe4-site-verification=b4c70fcaa3fbe9dc9e8cc18725fdb481
Verified for
  • Atlassian
  • Meta

Email authentication strong

SPF
v=spf1 redirect=tts-company.com
missing all
DMARC
v=DMARC1; p=reject; pct=100; sp=reject;
policy: reject (enforced) · sp=reject
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCgvpLYMKFjes2ZWSM7YJZjul0RS0dLE7yk0xB0OFbsh+xJUa05+pdWVDbhp8vxc4tZwRhri3ngTXIQGnsqXY…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA16jNLfOGeh1Hq/r56uhLoemAvU8qbd9sdh8KHIWxX/QNKiOqiSWTc+0kTBAiDxfTEOprVOP2D1nkjK…
selectors probed

Certificate (current)

YR1
from 2026-06-02 to 2026-08-31
Expires in 89 days

HTTP security headers

Header hygiene 75/100 Checked live page: https://www.festool.com/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-content-type-options
nosniff
content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' data: blob: amazon-adsystem.com *.amazon-adsystem.com paa-reporting-advertising.amazon *.paa-reporting-advertising.amazon *; frame-ancestors 'self' ekat.festool.de *.festool.com
strict-transport-security
max-age=31536000; includeSubDomains

Links to (4)

Linked from (1)