nordwasser.de

.de crawl

First seen 2026-04-23 · Last seen 2026-05-17 · ok HTTP/1.1 200 10229 ms crawled 2026-05-17

DE · 109.71.74.172 · AS47447 23M GmbH

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Startseite - Nordwasser GmbH
Language
de
Generator
TYPO3 CMS
Canonical
https://www.nordwasser.de/

Technology

Server
nginx

Third-party hosts loaded (2)

  • cdn.consentmanager.net×1
  • maps.google.com×1

Social

Contact

Email
Phone
Address
+49 381 81715-0info@nordwasser.deNordwasser GmbHCarl-Hopp-Straße 118069 RostockFolgen Sie uns!

Registration

Updated
2025-04-11
Name servers
  • ns1.netclusive.net.
  • ns2.netclusive.net.

DNS records live

NS
  • ns1.netclusive.net
  • ns2.netclusive.net
MX
  • 10 mail.nordwasser.de
TXT
Show 5 TXT records
  • apple-domain-verification=gSdEyoZeEbkmXc4o
  • google-site-verification=KXYO4iaj1XLhwCny7CQ4qVm075HC8Z5cKohJ7P7KKrY
  • sophos-domain-verification=a68674894c9f423d3fafd3763f1a72debae63bb5247d9c4e85c923e486a61133
  • MS=ms64915750
  • maxcluster-domain-verification=8t56oe8lwbnzuvy5b0fbi91l3udaxeuz

Email authentication partial

SPF
v=spf1 ip4:10.0.1.150 ip4:10.0.1.151 ip4:87.129.154.23 ip4:109.71.74.172 ip4:89.110.131.186 ip4:159.48.12.68 ip6:2a05:cc00::12:68:10 a:mail-de.maxcluster.neta:nordwasser.psnmedia.de a:kvasy.nordwasser.deinclude:spf.protection.outlook.com include:spf.de.umantis.com -all
strict (-all)
DMARC
v=DMARC1; p=none; rua=mailto:dmarc@psnmedia.de; fo=1; adkim=r; aspf=r
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

E7
from 2026-04-26 to 2026-07-25
Expires in 66 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.nordwasser.de/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
DENY
x-content-type-options
nosniff
content-security-policy
default-src 'self'; base-uri 'self'; frame-ancestors 'none'; object-src 'none'; form-action 'self'; img-src 'self' data: https:; font-src 'self' data:; style-src 'self' 'unsafe-inline'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https: blob:; connect-src 'self' https:; frame-src https:; upgrade-insecure-requests;
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (3)

Linked from (2)