gbv.de

.de crawl dns

First seen 2026-04-11 · Last seen 2026-05-19 · ok HTTP/1.1 200 899 ms crawled 2026-05-19

DE · 193.174.240.199 · AS680 Verein zur Foerderung eines Deutschen Forschungsnetzes e.V.

Reputation 67/100 wrong cert no dmarc policy

Classifying

HTML metadata

Title
Willkommen — Verbundzentrale des GBV
Language
de
Generator
Plone - https://plone.org/
Canonical
https://www.gbv.de
Feeds

Open Graph

url
https://www.gbv.de
title
Willkommen
site name
Verbundzentrale des GBV

Technology

Server
nginx

Registration

Updated
2013-06-05
Name servers
  • deneb.dfn.de.
  • inets1.gbv.de.
  • inets2.gbv.de.

DNS records live

NS
  • deneb.dfn.de
  • inets1.gbv.de
  • inets2.gbv.de
MX
  • 10 a1234.mx.srv.dfn.de
  • 50 b1234.mx.srv.dfn.de
  • 50 c1234.mx.srv.dfn.de
TXT
  • OSSRH-73866

Email authentication weak

SPF
v=spf1 ip4:193.174.240.41 ip4:193.174.240.42 ip4:193.174.240.101 include:spf.gwdg.de ~all
softfail (~all)
DMARC
not published
DKIM
  • k1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA86yMLiIZf41cr+ljtOxN5OKoHp5LqG/LYUVX6kU+sMfqlyoHrcX/BynS+5p5ev8RMHhAQDjtq8W5Xl…
selectors probed

Certificate (current) wrong cert

GEANT TLS RSA 1
from 2025-12-03 to 2026-12-03
Expires in 198 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.gbv.de/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self' data:; img-src data: *; style-src 'self' 'unsafe-inline'; script-src 'self' 'unsafe-inline' 'unsafe-eval'; frame-ancestors 'self' *.suub.uni-bremen.de
strict-transport-security
max-age=15768000; includeSubDomains

Links to (4)

Linked from (25)