panefresco.ch

.ch crawl

First seen 2026-06-01 · Last seen 2026-06-02 · ok HTTP/1.1 200 924 ms crawled 2026-06-02

CH · 149.126.0.58 · AS47302 cyon AG

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
Frisches Brot online bestellen Frischesbrot Startseite Frisches Brot online bestellen
Language
it

Technology

CMS
Gatsby
Stack
PHP

Social

DNS records live

NS
  • ns1.cyon.ch
  • ns2.cyon.ch
MX
  • 0 mail.panefresco.ch

Email authentication weak

SPF
v=spf1 include:spf.protection.cyon.net -all
strict (-all)
DMARC
not published
DKIM
  • default: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuvDRAbCcoMLtRp735HPOknAG6LTq7FsZzA2tfDhHPf+5/b6K/L/Xstcbr66YLex8zNEYYFPhZ0jrIN…
selectors probed

Certificate (current)

R13
from 2026-05-11 to 2026-08-09
Expires in 68 days

HTTP security headers

Header hygiene 60/100 Checked live page: https://panefresco.ch/

present
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
font-src *.gstatic.com *.googleapis.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src fast.amc.demdex.net *.adobe.com bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com player.vimeo.com https://www.google.com/recaptcha/ checkout.postfinance.ch www.google.com https://app-wallee.com https://checkout.postfinance.ch 'self' 'unsafe-inline'; img-src assets.adobedtm.com amcglobal.sc.omtrdc.net dpm.demdex.net cm.everesttech.net *.adobe.com data: widgets.magentocommerce.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net www.googleadservices.com *.google-analytics

Links to (11)

Linked from (2)