koelnerkarneval.de

.de crawl

First seen 2026-04-15 · Last seen 2026-05-15 · ok HTTP/1.1 200 2505 ms crawled 2026-05-10

DE · 136.243.1.245 · AS24940 Hetzner Online GmbH

Reputation 89/100 weak security headers dmarc monitor-only

Classifying

HTML metadata

Title
Alles rund um den Karneval in Köln - Kölner Karneval
Description
Kölle Alaaf! Hier klicken für alle Termine und aktuelle Infos rund um den Kölner Karneval. Von der Sitzung bis zum Kölner Dreigestirn ist alles dabei.
Language
de
Generator
TYPO3 CMS
Canonical
https://koelnerkarneval.de/

Open Graph

title
Festkomitee des Kölner Karnevals von 1823 e.V.
image:url
https://koelnerkarneval.de/fileadmin/_processed_/3/1/csm_2027_FK-Mottologo_181ce20072.png
description
Alle Informationen rund um die Session 2027 des Kölner Karneval. Alle Termine und aktuelle Meldungen der Gesellschaften und des Festkomitees von der Proklamation über Rosenmontag bis Aschermittwoch.

Technology

Server
LiteSpeed

Social

Contact

Email
Phone
Address
Haus des Kölner KarnevalsMaarweg 13450825 KölnÖffnungszeitenMo – Fr 9:00 Uhr – 13:00 Uhr undMo – Do 14:00 Uhr – 16:00 Uhr

Registration

Updated
2024-02-29
Name servers
  • ns1.ganzgraph.de.
  • nsb1.schlundtech.de.
  • nsc1.schlundtech.de.
  • nsd1.schlundtech.de.

DNS records live

NS
  • ns1.ganzgraph.de
  • nsb1.schlundtech.de
  • nsc1.schlundtech.de
  • nsd1.schlundtech.de
MX
  • 0 koelnerkarneval-de.mail.protection.outlook.com
Verified for
  • Microsoft 365

Email authentication partial

SPF
v=spf1 ip4:136.243.1.245 +a +mx +ip4:88.99.146.149 +ip4:188.40.158.150 +ip4:5.9.106.101 +include:spf.protection.outlook.com +include:spf.codepiraten.com ~all
softfail (~all)
DMARC
v=DMARC1; p=none;
policy: none (monitoring only)
DKIM
  • default: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzWkHoC8L1xa0adSh/sGU/VxC7Qdv6YwrP1e5edcII6tp2uMwCL8MZcZWpR4N7Zoj7QMGGK8mIjIcN/…
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed

Certificate (current)

E7
from 2026-05-05 to 2026-08-03
Expires in 74 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://koelnerkarneval.de/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
default-src 'self'; script-src 'self' 'nonce-ixRyi_N4MJ-OmH3O30Co3dMIQ0lHUgoYnLVUJiWtJgkA4VOyRvRg4w' https://*.youtube.com 'unsafe-inline' https://stat.ganzgraph.de 'sha256-rIj6dYL4D/m6YzqeBP4U67Mpdjc2ThOw/NKYd3JNAwo=' 'sha256-AN9wGT6yawoOqb5c0QfNZLpB90KkpYGKZGnUNuD/Qbs=' 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: *.ytimg.com *.vimeocdn.com https://*.openstreetmap.org https://stat.ganzgraph.de; base-uri 'self'; frame-src 'self' *.youtube-nocookie.com *.youtube.com *.vimeo.com https://*.youtube.com; style-src-elem 'self' 'nonce-ixRyi_N4MJ-OmH3O30Co3dMIQ0lHUgoYnLVUJiWtJgkA4VOyRvRg4w' 'report-sample'; connect-src 'self' https://stat.ganzgraph.de; worker-src 'self' 'nonce-ixRyi_N4MJ-OmH3O30Co3dMIQ0lHUgoYnLVUJiWtJgkA4VOyRvRg4w' blob: 'report-sample'; style-src 'self' 'unsafe-inline' 'report-sample'; script-src-elem 'self' 'nonce-ixRyi_N4MJ-OmH3O30Co3dMIQ0lHUgoYnLVUJiWtJgkA4VOyRvRg4w' https://*.youtube.com 'unsafe-hashes' 'sha256-Xo4t9KNhwrlM3X4GRj7

Links to (7)

Linked from (3)