ici-gemeinsam-hier.ch

.ch crawl

First seen 2026-05-28 · Last seen 2026-05-31 · ok HTTP/1.1 200 502 ms crawled 2026-05-31

CH · 34.65.191.150 · AS396982 Google LLC

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
For a Switzerland that stands together. | "ici. here together."
Description
For a Switzerland that stands together. | "ici. here together."
Language
en
Canonical
https://www.ici-gemeinsam-hier.ch/en
Translations
  • de
  • en
  • fr
  • it

Open Graph

url
https://www.ici-gemeinsam-hier.ch/en
title
For a Switzerland that stands together. | "ici. here together."
site name
"ici. here together."
description
For a Switzerland that stands together. | "ici. here together."

Technology

Analytics
  • Google Tag Manager
Cookie consent
  • OneTrust

Third-party hosts loaded (4)

  • www.googletagmanager.com×2
  • cdn.cookielaw.org×1
  • cdn.migros.ch×1
  • www.facebook.com×1

Social

DNS records live

NS
  • migze100.migros.ch
  • migze104.migros.ch
  • ns3.migros.ch
MX
  • 10 mail.ici-gemeinsam-hier.ch
TXT
  • dtm-domain-verification=braGjfh4r6eIWZhcC09rfEpNW9gopC1vH8Qkm2hWap4

Email authentication weak

SPF
v=spf1 include:spf.protection.cyon.net -all
strict (-all)
DMARC
not published
DKIM
  • default: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxQ6OAGE7gGGh9dZVvv7E2z/b7QxcZzih2J2DZ6DdoPfnv+iFnHvYusqONqYfdKf6pmO5smGRrpx4w7…
selectors probed

Certificate (current)

R12
from 2026-04-25 to 2026-07-24
Expires in 54 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.ici-gemeinsam-hier.ch/en

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
style-src player.podigee-cdn.net 'self' 'unsafe-inline' 'unsafe-eval' *.google.com fonts.googleapis.com *.googletagmanager.com optimize.google.com; child-src *.googlesyndication.com *.google.com *.googletagmanager.com *.doubleclick.net 'self' blob: *.facebook.com connect.facebook.net; base-uri 'self'; script-src script.hotjar.com static.hotjar.com *.tiktok.com *.tiktokw.us *.migros.ch player.podigee-cdn.net connect.facebook.net graph.facebook.com js.facebook.com www.facebook.com 'self' 'unsafe-inline' 'unsafe-eval' *.siteintercept.qualtrics.com siteintercept.qualtrics.com cdn.cookielaw.org www.youtube.com *.google.com *.googleadservices.com *.googlesyndication.com *.googletagservices.com *.google-analytics.com *.googleanalytics.com *.googletagmanager.com maps.google.com maps.googleapis.com tagmanager.google.com *.googleoptimize.com optimize.google.com *.doubleclick.net *.gstatic.com gstatic.com; worker-src 'self' blob: www.google.com; object-src *.googlesyndication.com; form-action 'se
strict-transport-security
max-age=31536000; includeSubDomains

Links to (3)

Linked from (2)