statkraft.de

.de crawl

First seen 2026-04-11 · Last seen 2026-05-19 · ok HTTP/1.1 200 1019 ms crawled 2026-05-18

SE · 217.114.94.2 · AS30811 Optimizely AB

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
Statkraft in Deutschland
Description
•Grünstrom •Projektentwicklung •PPAs •Direktvermarktung: Statkraft ist Europas größter Erzeuger erneuerbarer Energie.
Language
de
Canonical
https://www.statkraft.de/
Translations
  • de

Open Graph

url
https://www.statkraft.de/
title
Statkraft in Deutschland
description
•Grünstrom •Projektentwicklung •PPAs •Direktvermarktung: Statkraft ist Europas größter Erzeuger erneuerbarer Energie.

Technology

CDN
Cloudflare
Analytics
  • Google Tag Manager

Third-party hosts loaded (3)

  • siteimproveanalytics.com×1
  • static.addtoany.com×1
  • www.googletagmanager.com×1

Social

Contact

Email
Phone

Registration

Updated
2015-11-16
Name servers
  • dns1.statkraft.de.
  • dns2.statkraft.de.
  • ns1.de.colt.net.
  • ns8.colt.net.

DNS records live

NS
  • dns1.statkraft.de
  • dns2.statkraft.de
  • ns1.de.colt.net
  • ns8.colt.net
MX
  • 3 statkraft-de.mail.protection.outlook.com
TXT
Show 11 TXT records
  • kl/OgcF/hz23FSik3B0NbfqW/aL0fx8Gol/capk2268=
  • workplace-domain-verification=356fc2a6-a573-448e-8725-9ad5748d38dd
  • Tb4CujsXMT8XU3pb3e3T1z2lehtsitRkwj5pmtSfh8fDvTzo+fB/GIOuoS867z/+eM8g0y9f6hEBq6gbUkvl2w==
  • MS=ms52594028
  • atlassian-domain-verification=7+YZDfpfPFZy8wC6J5TU4i+GoNzxGVRp68yk25+TR3NkG7BTloJPqVbJ7ivGdZno
  • figma-domain-verification=7568037c39ab9df9a84cc6c964b687ae129b7c4d007cf0fdbad11034729b055c-1765366571
  • onetrust-domain-verification=f21d6282385942e5ade891716b03f2cf
  • Vis2H6wTg0ckyczbMDnF8NGS8NDFTc2o3atmOzH9TY0Et/DcqkzedDWvFm7C9DdQAStpJc3kXEmT5U93KBz9yA==
  • pardot1072352=43a9102a979fd99a33ac7d8d338b075ba4df098cee1658471e1fb73fa587288c
  • 361973567-50140843
  • _globalsign-domain-verification=PCEEzAQXalxkzZfzBBvJkG3ZfQj0gOVWWGZkbm4zXO

Email authentication weak

SPF
v=spf1 mx include:_spf-a.statkraft.com include:_spf-b.statkraft.com include:_spf-c.statkraft.com include:spf.protection.outlook.com ip4:193.212.95.47/32 ip4:193.212.95.46/32 ip4:91.213.22.73/32 ip4:91.213.22.74/32 ip4:193.212.95.25/32 ip4:193.212.95.26/32 ip4:81.191.33.231/32 ip4:193.212.95.103/32 ip4:193.212.95.101/32 -all
strict (-all)
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

WE1
from 2026-04-14 to 2026-07-13
Expires in 55 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.statkraft.de/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • cross-origin-opener-policy
  • cross-origin-embedder-policy
  • cross-origin-resource-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
sameorigin
x-content-type-options
nosniff
content-security-policy
default-src 'self' ; script-src 'self' 'unsafe-eval' 'wasm-unsafe-eval' 'unsafe-inline' 'strict-dynamic' 'nonce-f19dcddd-2176-4c2f-825c-ad58abfbe1ce' https://siteimproveanalytics.com https://*.siteimproveanalytics.io https://siteimproveanalytics.com/js/siteanalyze_6035611.js https://static.smartrecruiters.com/job-widget/1.6.2/script/smart_widget.js https://static.smartrecruiters.com/job-widget/1.6.2/script/jquery.min.js https://www.smartrecruiters.com/job-api/ https://js.monitor.azure.com https://cdn.jsdelivr.net dl.episerver.net https://code.jquery.com/jquery-3.3.1.min.js https://survey.skyra.no/skyra-survey.js https://policy.app.cookieinformation.com/uc.js https://policy.app.cookieinformation.com/ https://www.google.com/recaptcha/api.js https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://www.google-analytics.com https://fonts.googleapis.com/* https://www.googletagmanager.com/gtm.js https://maps.googleapis.com/maps/ https://maps.googleapis.com/maps-api-v3/
strict-transport-security
max-age=31536000; includeSubDomains
cross-origin-opener-policy
same-origin
cross-origin-embedder-policy
unsafe-none
cross-origin-resource-policy
same-site

Links to (19)

Linked from (5)