lotto-bw.de

.de crawl

First seen 2026-04-11 · Last seen 2026-05-19 · ok HTTP/1.1 200 1484 ms crawled 2026-05-19

DE · 93.122.80.10 · AS48951 Telekom Deutschland GmbH

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Lotto Baden-Württemberg – Online spielen beim Original
Description
Ihr Spiel in guten Händen: Staatlich lizenziert, seriös & sicher Lotto online spielen. Automatische Gewinnüberweisung. Ab 18. Hilfe: bzga.de.
Language
de
Canonical
https://www.lotto-bw.de/

Open Graph

url
https://www.lotto-bw.de/
title
Lotto Baden-Württemberg – Online spielen beim Original
description
Ihr Spiel in guten Händen: www.lotto-bw.de

Technology

CMS
Gatsby
Analytics
  • Google Tag Manager
Cookie consent
  • Usercentrics
Third-party hosts loaded (9)
  • app.usercentrics.eu×1
  • cdn.jsdelivr.net×1
  • code.etracker.com×1
  • maps.googleapis.com×1
  • qlwgscbc18.kameleoon.eu×1
  • service.force.com×1
  • widgets.trustedshops.com×1
  • www.google.com×1
  • www.googletagmanager.com×1

Social

Registration

Updated
2024-01-30
Name servers
  • ns1.telekom-domains.de.
  • ns2.telekom-domains.de.

DNS records live

NS
  • ns1.telekom-domains.de
  • ns2.telekom-domains.de
MX
  • 10 mx01.hornetsecurity.com
  • 20 mx02.hornetsecurity.com
  • 30 mx03.hornetsecurity.com
  • 40 mx04.hornetsecurity.com
TXT
  • zqyypwx8gmtrjdglbqf9gfttm68xp2l3
  • _7gnqvmjnoyzy48ko1ns64j8o7p57c9w
Verified for
  • Apple
  • Atlassian
  • Cisco
  • Meta
  • Microsoft 365

Email authentication partial

SPF
v=spf1 mx a:mail.lotto-bw.de a:lottobw.ibtserver.de a:hybrid.lotto-bw.de a:stl1.lotto-bw.de a:stl2.lotto-bw.de include:_spf.salesforce.com include:spf.protection.outlook.com include:spf.hornetsecurity.com -all
strict (-all)
DMARC
v=DMARC1; p=none; adkim=s; aspf=s
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

Thawte EV RSA CA G2
from 2025-07-17 to 2026-08-14
Expires in 85 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.lotto-bw.de/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
frame-ancestors 'self' https://*.etracker.com https://*.kameleoon.eu https://*.kameleoon.com
strict-transport-security
max-age=16070400; includeSubDomains; preload

Links to (11)

Linked from (33)