kopfhandundfuss.de

.de crawl

First seen 2026-05-05 · Last seen 2026-05-05 · ok HTTP/1.1 200 1474 ms crawled 2026-05-11

DE · 81.169.145.156 · AS6724 Strato GmbH

Reputation 87/100 weak security headers no dmarc policy

sector other type homepage

HTML metadata

Title
KOPF, HAND und FUSS
Description
Inklusion bedenken, begreifen und bewegen.
Language
de
Canonical
https://kopfhandundfuss.de/

Open Graph

url
https://kopfhandundfuss.de/
title
Startseite | KOPF+HAND+FUSS gGmbH - KOPF, HAND und FUSS
locale
de_DE
site name
KOPF, HAND und FUSS
description

Technology

Server
Apache
CMS
WordPress

Third-party hosts loaded (1)

  • cdn.jsdelivr.net×1

Social

Contact

Email
Phone

Registration

Updated
2023-08-19
Name servers
  • docks16.rzone.de.
  • shades05.rzone.de.

DNS records live

NS
  • docks16.rzone.de
  • shades05.rzone.de
MX
  • 20 kopfhandundfuss-de.mail.protection.outlook.com

Email authentication weak

SPF
v=spf1 include:spf.protection.outlook.com include:spf.crsend.com include:buchhaltungsbutler.de -all
strict (-all)
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

Sectigo Public Server Authentication CA DV R36
from 2026-01-29 to 2027-01-30
Expires in 254 days

HTTP security headers

Header hygiene 45/100 Checked live page: https://kopfhandundfuss.de/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' data: https: https://player.vimeo.com https://f.vimeocdn.com https://fresnel.vimeocdn.com https://i.vimeocdn.com https://www.gstatic.com; style-src 'self' 'unsafe-inline' https://f.vimeocdn.com https://cdn.jsdelivr.net https://use.fontawesome.com; img-src 'self' data: https://f.vimeocdn.com https://i.vimeocdn.com; font-src 'self' data: https://use.fontawesome.com https://fonts.googleapis.com; frame-src 'self' https: https://player.vimeo.com; connect-src 'self' https://www.googleapis.com https://fresnel.vimeocdn.com https://i.vimeocdn.com; object-src 'none';, default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' data: https: https://player.vimeo.com https://f.vimeocdn.com https://fresnel.vimeocdn.com https://i.vimeocdn.com https://www.gstatic.com; style-src 'self' 'unsafe-inline' https://f.vimeocdn.com https://cdn.jsdelivr.net https://use.fontawesome.com; img-src 'self' data: https://f.vimeocdn.com https:/

Links to (3)

Linked from (1)