schokoladenmuseum.de
HTML metadata
Technology
Third-party hosts loaded (2)
- cloud.ccm19.de×1
- www.chatbase.co×1
Social
Contact
Registration
- Updated
- 2026-02-21
- Name servers
-
- ns1.first-ns.de.
- robotns2.second-ns.de.
- robotns3.second-ns.com.
- service.rinet.de.
DNS records live
- NS
-
- ns1.first-ns.de
- robotns2.second-ns.de
- robotns3.second-ns.com
- service.rinet.de
- MX
-
- 0 schokoladenmuseum-de.mail.protection.outlook.com
- TXT
-
Show 4 TXT records
domainVerification=d2a953a5-ee60-42ea-be39-84e81aaa2ca3v=spf1 a mx a:mailer.visitate.net ip4:81.173.113.150 ip4:93.159.250.158 include:newsmailservice.de include:agenturserver.de include:spf.protection.outlook.com -allqg67s8l3cu9c5m2e8qj9cagsvim2m1b4k0pdvyxjg0gb1nstv3sw4c8vkf
- Verified for
-
- Microsoft
- Microsoft 365
Certificate (current)
R13
Expires in 70 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'strict-dynamic' 'unsafe-inline' https: 'report-sample' 'nonce-CuCbA7NTm6cAu-A_tJOaDffOvhBJKBURplAcuDX5d8mmFAQ39DCAiA'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: *.ytimg.com *.vimeocdn.com services.gastronovi.com static.conword.io smk.visitate.net cloud.ccm19.de www.googletagmanager.com fonts.gstatic.com www.youtube.com www.facebook.com; base-uri 'none'; frame-src 'self' *.youtube-nocookie.com *.youtube.com *.vimeo.com services.gastronovi.com www.chatbase.co cloud.ccm19.de ct.pinterest.com; upgrade-insecure-requests; frame-ancestors 'self'; form-action 'self'; style-src 'self' 'nonce-CuCbA7NTm6cAu-A_tJOaDffOvhBJKBURplAcuDX5d8mmFAQ39DCAiA' cloud.ccm19.de 'report-sample'; style-src-elem 'self' 'nonce-CuCbA7NTm6cAu-A_tJOaDffOvhBJKBURplAcuDX5d8mmFAQ39DCAiA' cloud.ccm19.de fonts.googleapis.com 'sha256-l7EFBFp1cHbdTvqZji99fbAXEkcfulx3CG97imStYYY=' 'sha256-5Q3FgwBjm4LkRay25yhEwrXrd9Po4U4YmCh5XH3hCZs=' 'sha256-iJmjninMSEjBU7i5dBSuKIa4kM- strict-transport-security
max-age=31536000; includeSubDomains