kreisau.de

.de crawl

First seen 2026-06-02 · Last seen 2026-06-02 · ok HTTP/1.1 200 468 ms crawled 2026-06-02

DE · 162.55.103.182 · AS24940 Hetzner Online GmbH

Reputation 100/100

Classifying

HTML metadata

Title
Kreisau-Initiative e.V.: Startseite
Language
de-DE
Generator
TYPO3 CMS

Technology

Server
Apache
jQuery
1.8.0 known XSS (<3.5)

Social

Registration

Updated
2023-09-18
Name servers
  • helium.ns.hetzner.de.
  • hydrogen.ns.hetzner.com.
  • oxygen.ns.hetzner.com.

DNS records live

NS
  • helium.ns.hetzner.de
  • hydrogen.ns.hetzner.com
  • oxygen.ns.hetzner.com
MX
  • 10 mx.herzlieb-it.de
TXT
  • MS=FD6C68B00891034DFC0BB54ADABD0957B4A37631
Verified for
  • Google
  • Microsoft 365

Email authentication strong

SPF
v=spf1 a:mx.herzlieb-it.de ip4:162.55.103.175 ip6:2a01:4f8:271:59d5::aaaa ip4:148.105.8.0/21 ip4:198.2.128.0/18 ip4:205.201.128.0/20 include:spf.civilisten.io include:spf-de.emailsignatures365.com include:spf.protection.outlook.com -all
strict (-all)
DMARC
v=DMARC1; p=quarantine; sp=reject; ruf=mailto:ruf@kreisau.de; rua=mailto:rua@kreisau.de;
policy: quarantine · sp=reject
DKIM
  • default: v=DKIM1; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCgArv1TFEhiwueaw4RDMcG+t2Mrn70ZssPgJWhHyT6OlubuOAHUUAKXvU2UoMWNNJyqW9RK7Mjpl93mIXUuewd…
selectors probed

Certificate (current)

R13
from 2026-05-05 to 2026-08-03
Expires in 60 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.kreisau.de/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • short HSTS max-age
  • CSP allows unsafe inline scripts/styles
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
autoplay=(self), camera=(self), fullscreen=(self "https://www.kreisau.de"), geolocation=(), microphone=(self), payment=()
x-content-type-options
nosniff
content-security-policy
default-src https:; script-src 'self' https://fonts.googleapis.com 'unsafe-inline' 'unsafe-eval'; style-src 'unsafe-inline'; style-src-elem 'self' https://fonts.googleapis.com 'unsafe-inline'; img-src 'self'
strict-transport-security
max-age=3153600; includeSubDomains

Links to (4)

Linked from (1)