oetterlikaffee.ch

.ch crawl

First seen 2026-06-02 · Last seen 2026-06-03 · ok HTTP/1.1 200 315 ms crawled 2026-06-03

CH · 82.199.139.240 · AS201011 Core-Backbone GmbH

Reputation 100/100

Classifying

HTML metadata

Title
Oetterli Kaffee Röstkunst seit über 125 Jahren
Description
Wir rösten auserlesene Rohkaffees zu hocharomatischen Mischungen oder exklusivem «single origin» Kaffee und begleiten jede Bohne bis in die Tasse mit Leidenschaft, Wissen und Engagement.
Language
de

Technology

Server
nginx
CMS
Gatsby
Analytics
  • Google Tag Manager

Third-party hosts loaded (1)

  • www.googletagmanager.com×1

Contact

Email
Phone
Address
Hunnenweg 6, 4500, Solothurn, SO, CH

DNS records live

NS
  • ns1.hoststar.hosting
  • ns2.hoststar.hosting
MX
  • 10 oetterlikaffee-ch.mail.protection.outlook.com
Verified for
  • Google
  • Microsoft 365

Email authentication strong

SPF
v=spf1 a:spf.trendhosting-net.ch include:spf.hstex.comp-sys.net include:spf.protection.outlook.com -all
strict (-all)
DMARC
v=DMARC1;p=quarantine;adkim=s;aspf=s
policy: quarantine
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1IFsZ4GgnbMabGQ9eTh3iwtXCbFw5DGUBz4w0HCZgScY6a4/O4zFPuEXyNbqbmS4Vugaoxbt0PGD3h…
selectors probed

Certificate (current)

E7
from 2026-04-17 to 2026-07-16
Expires in 42 days

HTTP security headers

Header hygiene 60/100 Checked live page: https://oetterlikaffee.ch/

present
  • content-security-policy-report-only
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-opener-policy
  • cross-origin-embedder-policy
  • cross-origin-resource-policy
findings
  • missing HSTS
  • missing Content Security Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
geolocation=(self), payment=(self)
x-content-type-options
nosniff
cross-origin-opener-policy
same-origin-allow-popups;
cross-origin-embedder-policy
unsafe-none;
cross-origin-resource-policy
same-origin;
content-security-policy-report-only
font-src maxcdn.bootstrapcdn.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.cardinalcommerce.com *.paypal.com 3ds-secure.cardcomplete.com www.clicksafe.lloydstsb.com pay.activa-card.com *.wirecard.com acs.sia.eu *.touchtechpayments.com www.securesuite.co.uk rsa3dsauth.com *.monzo.com *.arcot.com *.wlp-acs.com * 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src fast.amc.demdex.net *.adobe.com bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com player.vimeo.com https://www.google.com/rec

Links to (1)

Linked from (2)