patho.ch

.ch crawl

First seen 2026-05-31 · Last seen 2026-05-31 · ok HTTP/1.1 200 647 ms crawled 2026-06-01

US · 99.83.165.243 · AS16509 Amazon.com, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Pathologie Medica Enge | Pathologie-Labor in Zürich | Pathologie Medica Enge
Description
Pathologie Medica Enge – Ihr Laborspezialist für Pathologie. Das gesamte Spektrum der Pathologie aus einer Hand – im Zentrum Zürichs.
Language
de

Technology

jQuery
3.7.1

Third-party hosts loaded (2)

  • cdnjs.cloudflare.com×2
  • code.jquery.com×1

Social

DNS records live

NS
  • dns1.medisupport.ch
  • dns2.medisupport.ch
MX
  • 10 mail2.medisupport.ch
  • 10 mail3.medisupport.ch
TXT
Show 5 TXT records
  • _lyob1pwtoqepnvp1tvm11uwgaip8uq3
  • swisssign-check=93bGhtNXNUcdG2YADpLsHO4Il3RZeWvuEn9bjw2Les
  • knowbe4-site-verification=de30ff6180de0ce07ad0e804204ca80f
  • swisssign-check=3EXJatefpz2QVnyZ6HjzMzBHcG2gd7faF0tybasYJt
  • swisssign-check=UgMjBSjlkD7RWSyateG6H7t9UOTCVvvc4s8BPE6Q6E
Verified for
  • Atlassian
  • Cisco
  • Microsoft 365

Email authentication partial

SPF
v=spf1 mx +mx:hin.ch ip4:5.102.146.39 ip4:5.102.151.81 ip4:217.26.54.12 include:spf.umantis.com include:spf.protection.outlook.com -all
strict (-all)
DMARC
v=DMARC1; p=none; rua=mailto:abuse@medisupport.ch; ruf=mailto:abuse@medisupport.ch
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

Amazon ECDSA 384 M01
from 2026-01-13 to 2027-02-12
Expires in 255 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://patho.ch/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
accelerometer=(), camera=(),gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=(), interest-cohort=()
x-content-type-options
nosniff
content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval'; script-src 'self' *.sonichealthcare.com *.onetrust.com *.laborpublisher.staging.lfda.de https://www.googleadservices.com https://www.google.com https://www.googletagmanager.com https://pagead2.googlesyndication.com https://googleads.g.doubleclick.net *.googleads.com *.googleadservices.com *.googletagservices.com *.newsletter2go.com https://www.labor28.de *.labor28.de https://event.labor-dpl.de *.cloudfront.net app.10to8.com https://cdn.jsdelivr.net https://cdnjs.cloudflare.com https://code.jquery.com https://ajax.aspnetcdn.com *.matomo.cloud *.vimeocdn.com https://youtube.com *.google.com *.google-analytics.com *.googletagmanager.com *.googleapis.com *.gstatic.com https://hcaptcha.com https://js.hcaptcha.com *.surveymonkey.com *.googleoptimize.com *.cookiebot.com *.vimeo.com *.facebook.net *.laborpublisher.de 'unsafe-inline' 'unsafe-eval'; style-src data: 'self' *.googleapis.com *.sonichealthcare.com *.gstatic.com *.laborpublisher.de *.
strict-transport-security
max-age=157680000; includeSubDomains; preload

Links to (4)

Linked from (1)