kompass.de

.de crawl

First seen 2026-04-11 · Last seen 2026-05-19 · ok HTTP/1.1 200 3119 ms crawled 2026-05-19

US · 162.159.134.42 · AS13335 Cloudflare, Inc.

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
KOMPASS Wanderkarten, Wanderführer und Fahrradkarten
Description
KOMPASS-Wanderkarten, redaktionell geprüfte Wandertouren, Tourenplaner, Online-Wanderkarte: Du kennst dein Ziel - wir kennen den Weg.
Language
de-DE
Generator
WPML ver:4.6.9 stt:38,1,3;
Translations
  • de
Feeds

Technology

CDN
Cloudflare
CMS
WordPress
Analytics
  • Google Tag Manager
  • Plausible
Cookie consent
  • Cookiebot

Third-party hosts loaded (6)

  • www.googletagmanager.com×2
  • cdn.stroeerdigitalgroup.de×1
  • consent.cookiebot.com×1
  • plausible.io×1
  • tag.md-nx.com×1
  • unpkg.com×1

Social

Registration

Updated
2021-01-13
Name servers
  • helium.ns.hetzner.de.
  • hydrogen.ns.hetzner.com.
  • oxygen.ns.hetzner.com.

DNS records live

NS
  • helium.ns.hetzner.de
  • hydrogen.ns.hetzner.com
  • oxygen.ns.hetzner.com
MX
  • 10 mx01.mep.pandasecurity.com
  • 10 mx02.mep.pandasecurity.com
TXT
Show 4 TXT records
  • MS=ms83722509
  • ca3-24561e250a4c4016983556bb0fe4b845
  • google-site-verification=Q5q1KC8BvbZHtSrx4NBWcbS6n0IqInUSb43-mdUsmSE
  • google-site-verification=eQcbdi94nGfAeOJP1PMUnWOo9a6orkXv_zHJ2521UGo

Email authentication weak

SPF
v=spf1 include:spf.mailjet.com include:spf.mep.pandasecurity.com -all
strict (-all)
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

WE1
from 2026-04-23 to 2026-07-22
Expires in 64 days

HTTP security headers

Header hygiene 55/100 Checked live page: https://www.kompass.de/

present
  • content-security-policy
  • x-content-type-options
  • permissions-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Referrer Policy
Header values
permissions-policy
web-share=*
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' http://localhost:* https://*.kompass.de:* https://*; frame-src 'self' https://* https://js.stripe.com https://app.mailjet.com https://xhiu7.mjt.lu; connect-src 'self' https://*.kompass.de:* http://localhost:* wss://*.kompass.de:* https://* https://api.stripe.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com; img-src 'self' https://ade.googlesyndication.com https://* data: blob:; font-src 'self' https://*.kompass.de data:; worker-src 'self' blob:; frame-ancestors * data: blob: ;

Links to (3)

Linked from (4)