merz.co.at

.at crawl

First seen 2026-05-30 · Last seen 2026-05-30 · ok HTTP/1.1 200 1331 ms crawled 2026-05-31

CH · 185.101.159.80 · AS207143 hosttech GmbH

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
Home - Merz Pharma
Generator
WordPress 6.6.5
Canonical
https://merz.co.at/

Open Graph

url
https://merz.co.at/
title
Home - Merz Pharma
locale
de_DE
site name
Merz Austria

Technology

Server
nginx
CMS
WordPress 6.6.5
jQuery
2.1.4 known XSS (<3.5)
Stack
PHP

Third-party hosts loaded (1)

  • ajax.googleapis.com×2

Contact

Email
Phone

DNS records live

NS
  • dns1.cscdns.net
  • dns2.cscdns.net
MX
  • 5 merz-co-at.mail.protection.outlook.com
TXT
  • AlBJD0PYifAO0GfU9AndNe0UJ1CZJUtBTdpbsJgk5/zgrJRvZoKuKkEN7+vyqM3eIqKqtaHlf5gaut6UqdPybQ==
  • EuVYepOWxApOZXvtPwwPj04iT4HfRK8Snd0mpZopDAEYUMifu6gyocx0mdaTASNdKgoWzAoFKB07ztt1o69y+Q==
Verified for
  • Cisco
  • Cisco Webex
  • Miro

Email authentication strong

SPF
v=spf1 a mx ip4:91.212.243.80 ip4:188.95.7.19 ip4:185.55.232.147 ip4:45.87.137.104 ip4:46.29.101.1 ip4:46.29.101.2 ip4:217.150.155.10 ip4:217.150.155.12 ip4:94.100.254.155 ip4:4.180.241.48 ip4:20.50.250.10 ip4:57.153.160.20 ip4:57.153.164.184 ip4:135.236.72.96 include:_spf.retarus.com include:spf.protection.outlook.com include:_spf.mail.hostserv.eu -all
strict (-all)
DMARC
v=DMARC1; p=quarantine; rua=mailto:dmarc_agg@vali.email;
policy: quarantine
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwNPA61aJ1opyhpFP2jTEnaOiREDbfleP4b1PeArxnLjnK6jHpdkr3vBzlDQq9qJu6uckbO5ACJyFEt…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAs8pmEpm3li6nAOrNQ9BEl40aqq6bHpO4QkHVLjDQMf+A6OHrRax0VsHIqRI3pmtFIvlNeK6HoJ0L9K…
selectors probed

Certificate (current)

Sectigo Public Server Authentication CA OV R36
from 2026-01-15 to 2027-01-16
Expires in 229 days

HTTP security headers

Header hygiene 30/100 Checked live page: https://merz.co.at/

findings
  • missing HSTS
  • missing Content Security Policy
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy

Links to (2)

Linked from (1)