merlato.de

.de crawl

First seen 2026-05-10 · Last seen 2026-05-16 · ok HTTP/1.1 200 3085 ms crawled 2026-05-16

DE · 68.183.220.214 · AS14061 DigitalOcean, LLC

Reputation 89/100 weak security headers dmarc monitor-only

Classifying

HTML metadata

Title
Merlato Präventionsschulungen und Sozialkonzepte | Merlato Onlineshop
Description
Merlato - Ihr Profi für Sozialkonzepte, Präventionsschulungen, Sachkundenachweise und Zutrittskontrolle für Automatenaufsteller, Spielhallen, Sportwe…
Language
de
Canonical
https://www.merlato.de/

Open Graph

title
Merlato Onlineshop
site name
Merlato Onlineshop
description
Merlato - Ihr Profi für Sozialkonzepte, Präventionsschulungen, Sachkundenachweise und Zutrittskontrolle für Automatenaufsteller, Spielhallen, Sportwe…

Technology

Server
nginx
Analytics
  • Google Tag Manager

Third-party hosts loaded (1)

  • www.googletagmanager.com×1

Social

Contact

Phone

Registration

Updated
2026-04-08
Name servers
  • ns.udag.de.
  • ns.udag.net.
  • ns.udag.org.

DNS records live

NS
  • ns.udag.de
  • ns.udag.net
  • ns.udag.org
MX
  • 10 merlato-de.mail.protection.outlook.com
Verified for
  • Meta

Email authentication partial

SPF
v=spf1 ip4:37.61.206.229 ip4:68.183.220.214 ip4:68.183.217.165 ip4:104.248.38.200 ip4:144.126.244.8 include:spf.protection.outlook.com include:servers.mcsv.net include:spf.strold.io include:secureserver.net -all
strict (-all)
DMARC
v=DMARC1; p=none
policy: none (monitoring only)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDgk6bd4M/r5XM3s5IYdB/TGI4VThG8v2ZPAri1Nq3EVjKab1xAxURDln6AGu+d6S8S3vZw4Kd1pKZxNU5smd…
  • k1: k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed

Certificate (current)

R13
from 2026-03-28 to 2026-06-26
Expires in 37 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://www.merlato.de/

present
  • x-frame-options
findings
  • missing HSTS
  • missing Content Security Policy
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN

Links to (2)

Linked from (2)