peterhugi.ch

.ch crawl

First seen 2026-05-29 · Last seen 2026-05-29 · ok HTTP/1.1 200 399 ms crawled 2026-05-31

CH · 149.126.4.138 · AS47302 cyon AG

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
Peter Hugi – creating beauty
Description
Jeder Haarschnitt, jede Farbe, jedes Styling ist für mich ein Kunstwerk. Mein Ziel ist es, für meine Kundinnen und Kunden den perfekten Look zu kreieren und ihn…
Language
de-CH
Canonical
https://peterhugi.ch/
Feeds

Open Graph

url
https://peterhugi.ch/
title
Peter Hugi – creating beauty
locale
de_CH
site name
Peter Hugi
description
Jeder Haarschnitt, jede Farbe, jedes Styling ist für mich ein Kunstwerk. Mein Ziel ist es, für meine Kundinnen und Kunden den perfekten Look zu kreieren und ihn…

Technology

CMS
WordPress

Social

Contact

Email
Phone

DNS records live

NS
  • ns1.cyon.ch
  • ns2.cyon.ch
MX
  • 0 mail.peterhugi.ch
Verified for
  • Google

Email authentication weak

SPF
v=spf1 include:spf.protection.cyon.net -all
strict (-all)
DMARC
not published
DKIM
  • default: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0fIj+H5CTptFbZsbKLTlT0CdbSjf4d3OLDBhby8fy+my/KTOPjDu6Ku3HN1fRZg4kEVL1wlPpSVkoq…
selectors probed

Certificate (current)

R13
from 2026-03-30 to 2026-06-28
Expires in 28 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://peterhugi.ch/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self' *.stutz-medien.dev; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.wordpress.org *.wp.com *.stutz-medien.dev *.googletagmanager.com *.google.com *.gstatic.com *.typekit.net s3.amazonaws.com *.list-manage.com *.userback.io privacybee.io *.privacybee.io; worker-src 'self' blob:; style-src 'self' 'unsafe-inline' *.wp.com *.stutz-medien.dev *.googleapis.com *.typekit.net *.userback.io privacybee.io *.privacybee.io; img-src 'self' data: *.wp.com *.wordpress.org *.gravatar.com *.stutz-medien.dev *.userback.io privacybee.io *.privacybee.io; font-src 'self' data: *.stutz-medien.dev *.gstatic.com *.typekit.net *.typekit.com *.userback.io privacybee.io *.privacybee.io; frame-src 'self' *.stutz-medien.dev *.youtube.com *.google.com *.vimeo.com *.userback.io privacybee.io *.privacybee.io; frame-ancestors 'self'; media-src 'self' *.stutz-medien.dev; connect-src 'self' *.stutz-medien.dev *.google.com *.userback.io *.amazonaws.com *.googletagmanager.com *.google-analytics.com pr
strict-transport-security
max-age=31536000

Links to (4)

Linked from (1)