kaldewei.co.uk
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (18)
- assets.cdn.kaldewei.com×15
- images.cdn.kaldewei.com×9
- www.kaldewei.ch×3
- www.kaldewei.de×2
- app.usercentrics.eu×1
- files.cdn.kaldewei.com×1
- www.google.com×1
- www.googletagmanager.com×1
- www.kaldewei.cn×1
- www.kaldewei.com×1
- www.kaldewei.cz×1
- www.kaldewei.es×1
- www.kaldewei.fr×1
- www.kaldewei.it×1
- www.kaldewei.nl×1
- www.kaldewei.pl×1
- www.kaldewei.ru×1
- www.kaldewei.us×1
Registration
- Registrar
- united-domains GmbH
- Created
- 2000-01-05
- Expires
- 2027-01-05 230 days left
- Updated
- 2026-01-04
- Name servers
-
- ns.udag.de.
- ns.udag.net.
- ns.udag.org.
DNS records live
- NS
-
- ns.udag.de
- ns.udag.net
- ns.udag.org
Email authentication no MX
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 25 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
sameorigin, SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' c.a.kaldewei.com assets.cdn.kaldewei.com staging.cdn.kaldewei.de kald1.secure2.footprint.net kald-a1.secure2.footprint.net kald-b1.secure2.footprint.net kaldewei-fa1.secure.footprint.net kald.secure2.footprint.net kald-a.secure2.footprint.net kald-b.secure2.footprint.net kaldewei-fa.secure.footprint.net https://www.kaldewei.de *.kaldewei.de https://www.kaldewei.com http://test-lieferzeitenauskunft.kaldewei.de test-lieferzeitenauskunft.kaldewei.de lieferzeitenauskunft.kaldewei.de *.hotjar.com tagmanager.google.com www.googletagmanager.com www.google-analytics.com www.google.com www.gstatic.com jwpsrv.com www.polantis.com maps.googleapis.com maps.gstatic.com bat.bing.com https://interaktiv.contilla.de/15012d2d2e303369c8628723/0/webapp.js https://www.recaptcha.net/recaptcha/api.js https://connect.facebook.net/en_US/fbevents.js https://connect.facebook.net/signals/config/206776544034462 https://connect.facebook.net/signals/config/169033072170- strict-transport-security
max-age=15552000; includeSubDomains