junfermann.de

.de crawl

First seen 2026-04-25 · Last seen 2026-05-20 · ok HTTP/1.1 200 2916 ms crawled 2026-05-18

FR · 62.138.180.29 · AS8972 Host Europe GmbH

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Startseite | Junfermann Verlag
Description
Entdecken Sie Fachbücher &Ratgeber zu den Themen Psychologie, Psychotherapie, Kommunikation, Persönlichkeitsentwicklung, Coaching bei Junfermann!
Language
de-DE
Canonical
https://www.junfermann.de/startseite/c-1?p=1

Technology

Third-party hosts loaded (4)

  • res.cloudinary.com×51
  • cookiemanager.wirth-horn.de×2
  • pp.payengine.de×1
  • rybbit.wirth-horn.de×1

Social

Registration

Updated
2026-04-15
Name servers
  • ns1.vegasystems.de.
  • ns2.vegasystems.de.

DNS records live

NS
  • ns1.vegasystems.de
  • ns2.vegasystems.net
MX
  • 10 mx01.hornetsecurity.com
  • 20 mx02.hornetsecurity.com
  • 30 mx03.hornetsecurity.com
  • 40 mx04.hornetsecurity.com
TXT
  • 9zxp1vxt1wz12kz4twxtpg154xmt5rs2
Verified for
  • Microsoft 365

Email authentication partial

SPF
v=spf1 ip4:94.186.152.98 ip4:212.18.11.33/27 include:spf.vegasystems.de include:_spf.wirth-horn.de include:spf.hornetsecurity.com ip4:84.17.184.240/28 ip4:84.17.190.192/26 ip4:84.17.171.128/26 -all
strict (-all)
DMARC
v=DMARC1;p=none;pct=100;
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

R12
from 2026-05-03 to 2026-08-01
Expires in 72 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.junfermann.de/

present
  • strict-transport-security
  • content-security-policy
  • content-security-policy-report-only
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
sameorigin
x-content-type-options
nosniff
content-security-policy
default-src 'self' junfermann.de www.junfermann.de captcha.wirth-horn.de cookiemanager.wirth-horn.de rybbit.wirth-horn.de *.vimeo.com *.payengine.de https://*.googleusercontent.com whstatistics-api.wirth-horn.de https://www.google-analytics.com https://tagmanager.google.com https://www.googletagmanager.com https://www.googleadservices.com *.g.doubleclick.net https://fonts.googleapis.com https://www.youtube.com https://www.youtube-nocookie.com https://www.blickinsbuch.de https://appjs.blickinsbuch.de https://www.blickinsbuch.net https://appjs.blickinsbuch.net https://www.instagram.com *.matomo.cloud 'unsafe-eval' 'unsafe-inline'; img-src data: *; media-src *; font-src data: 'self' https://fonts.gstatic.com https://fonts.googleapis.com; frame-ancestors 'self' junfermann.matomo.cloud
strict-transport-security
max-age=15552000; preload
content-security-policy-report-only
default-src 'self' junfermann.de www.junfermann.de captcha.wirth-horn.de cookiemanager.wirth-horn.de rybbit.wirth-horn.de *.vimeo.com *.payengine.de https://*.googleusercontent.com whstatistics-api.wirth-horn.de https://www.google-analytics.com https://tagmanager.google.com https://www.googletagmanager.com https://www.googleadservices.com *.g.doubleclick.net https://fonts.googleapis.com https://www.youtube.com https://www.youtube-nocookie.com https://www.blickinsbuch.de https://appjs.blickinsbuch.de https://www.blickinsbuch.net https://appjs.blickinsbuch.net https://www.instagram.com *.matomo.cloud 'unsafe-eval' 'unsafe-inline'; img-src data: *; media-src *; font-src data: 'self' https://fonts.gstatic.com https://fonts.googleapis.com; frame-ancestors 'self' junfermann.matomo.cloud; report-uri /csp-report.cfm

Links to (5)

Linked from (8)