heimhaus.de

.de crawl

First seen 2026-04-15 · Last seen 2026-05-17 · ok HTTP/1.1 200 2900 ms crawled 2026-05-10

DE · 85.13.131.53 · AS34788 Neue Medien Muennich GmbH

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
HEIM & HAUS | exklusive Bauelemente direkt ab Werk
Description
HEIM & HAUS ist Deutschlands führendes Direktvertriebsunternehmen im Markt der Bauelemente. Erfahren Sie mehr über uns!
Language
de
Generator
TYPO3 CMS
Canonical
https://www.heimhaus.de/

Technology

Server
Apache
Social widgets
  • YouTube Embed

Third-party hosts loaded (1)

  • www.youtube-nocookie.com×1

Social

Registration

Updated
2018-08-07
Name servers
  • dns.globvill.de.
  • dns.globvill.ruhr.
  • dns.voerde.globvill.de.

DNS records live

NS
  • dns.globvill.de
  • dns.globvill.ruhr
  • dns.voerde.globvill.de
MX
  • 10 heimhaus-de.mail.cloud.nospamproxy.com
TXT
Show 4 TXT records
  • atlassian-sending-domain-verification=5715596c-1f83-49ed-817c-e76a51c72354
  • MS=8BB23DB0EF672EC441938FFDCBF337E4DE184A88
  • 1b03bef5-9ac2-4545-a880-f22265ca5d8d
  • Aa+JcVWeklvGLIylN8gy5kKHYBX4mbLCge6MoZCDB3Q=
Verified for
  • 1Password

Email authentication strong

SPF
v=spf1 a:w019ebed.kasserver.com ip4:85.13.155.24 include:spf.lamapoll.de include:spf.heimhaus-de.cloud.nospamproxy.com include:spf.protection.outlook.com ~all
softfail (~all)
DMARC
v=DMARC1; p=quarantine; sp=none; rua=mailto:it@heimhaus.de,mailto:dmarc_aggregate_analyser+54d9b81f7cd33ba8a5daf3efd5ef46b1@zerobounce.net; ruf=mailto:it@heimhaus.de,mailto:dmarc_forensics_analyser+54d9b81f7cd33ba8a5daf3efd5ef46b1@zerobounce.net; fo=1; rf=afrf; pct=100; ri=86400;
policy: quarantine · sp=none
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDI3qTckiOfoDmeVGQPtFG2Athc3UJDh463NyVPS1Fwobb1t6Fi5DFbZJ7E6C/E2UYTKiSiuUoi8hyfG7SIq+…
selectors probed

Certificate (current)

R13
from 2026-04-11 to 2026-07-10
Expires in 51 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://www.heimhaus.de/

present
  • x-content-type-options
findings
  • missing HSTS
  • missing Content Security Policy
  • missing frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-content-type-options
nosniff

Links to (5)

Linked from (4)