gps-login.de

.de crawl

First seen 2026-05-04 · Last seen 2026-05-18 · ok HTTP/1.1 200 7575 ms crawled 2026-05-11

DE · 217.64.169.118 · AS15960 WIIT AG

Reputation 89/100 weak security headers dmarc monitor-only

Classifying

HTML metadata

Title
Das TELEMATIKWERK

Technology

Server
nginx

Third-party hosts loaded (2)

  • maps.googleapis.com×1
  • www.paypalobjects.com×1

Registration

Updated
2012-01-17
Name servers
  • ns1.smart-nic.de.
  • ns2.smart-nic.de.
  • ns3.smart-nic.de.
  • ns4.smart-nic.de.

DNS records live

NS
  • ns1.smart-nic.de
  • ns2.smart-nic.de
  • ns3.smart-nic.de
  • ns4.smart-nic.de
MX
  • 10 mail.blpkt.de

Email authentication partial

SPF
v=spf1 ip4:217.64.169.120 ~all
softfail (~all)
DMARC
v=DMARC1; p=none; rua=mailto:sth.admin.dmarc-gpslogin@tejp.de; pct=100; sp=none; adkim=r; aspf=r
policy: none (monitoring only) · sp=none
DKIM
no key found at common selectors

Certificate (current)

E7
from 2026-04-02 to 2026-07-01
Expires in 41 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://www.gps-login.de/customer/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
script-src-attr 'self' data: *.paypal.com *.paypalobjects.com *.googleapis.com *.gstatic.com *.google.com 'unsafe-inline' 'unsafe-eval';

Links to (1)

Linked from (2)