grunenthal.at

.at crawl

First seen 2026-05-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 29899 ms crawled 2026-05-18

NL · 20.50.2.24 · AS8075 Microsoft Corporation

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
Grünenthal Österreich
Description
Bei Grünenthal verfolgen wir das Ziel, das Leben der Patienten zu verbessern. Unsere Kernkompetenzen liegt im Bereich Schmerz.
Language
de-AT
Canonical
https://www.grunenthal.at

Open Graph

url
https://www.grunenthal.at
title
Grünenthal Österreich
description
Bei Grünenthal verfolgen wir das Ziel, das Leben der Patienten zu verbessern. Unsere Kernkompetenzen liegt im Bereich Schmerz.

Technology

CDN
Azure Front Door
CMS
Next.js
Analytics
  • Matomo
Social widgets
  • Vimeo Embed

Third-party hosts loaded (5)

  • player.vimeo.com×2
  • cdn.consentmanager.net×1
  • cdn.matomo.cloud×1
  • edge-platform.sitecorecloud.io×1
  • edge.sitecorecloud.io×1

Social

Contact

Phone

DNS records live

NS
  • ns1.markmonitor.com
  • ns2.markmonitor.com
  • ns3.markmonitor.com
  • ns4.markmonitor.com
  • ns5.markmonitor.com
  • ns6.markmonitor.com
  • ns7.markmonitor.com
MX
  • 10 mail.grunenthal.at
  • 20 pspool.utanet.at
TXT
  • google-site-verification=Fuv8BFS3l5ARx9z5X7iS1a2EdkQO8Oii4u8PzRtWCDA
  • uq18no7qek5e2tul2t0ea0bi3l

Email authentication weak

SPF
not published
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

GeoTrust TLS RSA CA G1
from 2026-02-22 to 2026-08-23
Expires in 96 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.grunenthal.at/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' blob: 'unsafe-eval' 'unsafe-inline' https://*.consentmanager.net https://*.matomo.cloud ; connect-src 'self' https://*.matomo.cloud https://*.sitecorecloud.io https://*.consentmanager.net https://*.microsoft.com ; style-src 'self' 'unsafe-inline' https://*.sitecorecloud.io https://*.matomo.cloud ; img-src 'self' blob: data: https://*.consentmanager.net https://*.sitecorecloud.io https://*.vimeocdn.com https://*.matomo.cloud https://*.grunenthal.com https://*.wma.comb.es ; media-src 'self' https://*.sitecorecloud.io; frame-src 'self' https://*.vimeo.com https://*.consentmanager.net https://*.microsoft.com ; font-src 'self' blob: data: https://*.matomo.cloud https://*.microsoft.com ; object-src 'none'; base-uri 'self' https://*.matomo.cloud; form-action 'self'; frame-ancestors 'self' ; upgrade-insecure-requests;
strict-transport-security
max-age=63072000; includeSubDomains; preload

Links to (11)

Linked from (1)