poellmann-contrabass.de

.de crawl

First seen 2026-04-20 · Last seen 2026-05-11 · ok HTTP/1.1 200 2868 ms crawled 2026-05-14

US · 172.67.219.23 · AS13335 Cloudflare, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Pöllmann Contrabässe – Tradition und Handwerkskunst
Language
de-DE
Canonical
https://poellmann-contrabass.de/
Translations
  • de ×2
  • en ×2
  • fr ×2
  • it ×2
  • ko ×2
  • zh ×2

Technology

CDN
Cloudflare
CMS
WordPress

Third-party hosts loaded (1)

  • cdn.jsdelivr.net×2

Registration

Updated
2025-03-12
Name servers
  • lars.ns.cloudflare.com.
  • meera.ns.cloudflare.com.

DNS records live

NS
  • lars.ns.cloudflare.com
  • meera.ns.cloudflare.com
MX
  • 0 poellmanncontrabass-de02c.mail.protection.outlook.com
TXT
  • seobility=60b3ae97b0fcc0bef8c56d41c79ca3d7
Verified for
  • Brevo
  • Google
  • Microsoft 365

Email authentication strong

SPF
v=spf1 include:spf.protection.outlook.com -all
strict (-all)
DMARC
v=DMARC1; p=quarantine; rua=mailto:27c0ebba56f6.a@dmarcinput.com,mailto:rua@dmarc.brevo.com;ruf=mailto:27c0ebba56f6.f@dmarcinput.com,mailto:27c0ebba56f6.a@dmarcinput.com; adkim=s; aspf=s; fo=1;
policy: quarantine
DKIM
Show 4 DKIM selectors
  • default: v=DKIM1; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1Ssgl/isNbgM+y84Fh4Fgbl1FPENekgVCuJTAaq8UjQJzlwbIydMkYBeW08wIq1eOTA6lzec377JWVLERgzw2…
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzbNmpap9Buuo5iVbhBlVJrO3V866Eef/hXZiOH5auwNRJh5mdOww/wb/x4yTjK15EYqHIvFB3LeWQw…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArdXI4u9i8xQUunMAKxyaXbgtFncjXiHVGtjBbxtB4VB6MLOkJg6+eCjK1Z1egw5+U9ICigpnfq7QOg…
  • mail: k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed

Certificate (current)

WE1
from 2026-03-25 to 2026-06-24
Expires in 34 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://poellmann-contrabass.de/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • short HSTS max-age
  • CSP allows unsafe inline scripts/styles
  • weak content type protection
  • missing Permissions Policy
Header values
referrer-policy
strict-origin
x-frame-options
SAMEORIGIN
x-content-type-options
"nosniff" always;
content-security-policy
default-src 'self' data: 'unsafe-hashes' 'unsafe-eval' https: nonce-hgd7rt; script-src 'self' 'unsafe-inline' 'unsafe-eval' https: blob: data:; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://use.fontawesome.com/ https://cdn.jsdelivr.net https://cdn.poellmann-contrabass.de; frame-src 'self' https: blob:; worker-src blob:; frame-ancestors 'self'
strict-transport-security
max-age=0; preload, 'max-age=31536000; includeSubDomains; preload';

Linked from (1)