thecasuallounge.ch

.ch crawl

First seen 2026-05-28 · Last seen 2026-05-31 · ok HTTP/1.1 200 1126 ms crawled 2026-05-31

US · 104.20.26.84 · AS13335 Cloudflare, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
The Casual Lounge CH: casual dating portal 2026
Description
Sie suchen eine seriöse Casual Dating Seite für diskrete erotische Abenteuer? ⭐️ Dann sind Sie bei richtig ✅ Jetzt gratis anmelden!
Canonical
https://www.thecasuallounge.ch/
Translations
  • de ×3
  • fr ×2
  • it ×2
  • da
  • en
  • no

Technology

CDN
Cloudflare
jQuery
1.8.3 known XSS (<3.5)
Stack
Java
Analytics
  • Google Tag Manager
Third-party hosts loaded (9)
  • www.googletagmanager.com×2
  • cdnjs.cloudflare.com×1
  • desktop.thecasuallounge.at×1
  • desktop.thecasuallounge.com×1
  • desktop.thecasuallounge.de×1
  • desktop.thecasuallounge.fr×1
  • desktop.thecasuallounge.it×1
  • desktop.thecasuallounge.no×1
  • www.thecasuallounge.dk×1

DNS records live

NS
  • aitana.ns.cloudflare.com
  • duke.ns.cloudflare.com
MX
  • 10 mail1.thecasuallounge.com
Verified for
  • Google

Email authentication partial

SPF
v=spf1 mx a ip4:139.144.181.151/32 ip4:135.181.121.68/32 ip4:135.181.121.70/32 ?all
neutral (?all)
DMARC
v=DMARC1; p=none
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

WE1
from 2026-05-01 to 2026-07-30
Expires in 59 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://desktop.thecasuallounge.ch/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
geolocation=*, camera=(), microphone=()
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*; style-src 'self' 'unsafe-inline' https://*; img-src 'self' data: blob: https://*; font-src 'self' https://* data:; connect-src 'self' https://* wss://* blob: data:; frame-src 'self' https://*;
strict-transport-security
max-age=31536000; includeSubDomains; preload

Linked from (3)