theultimatesink.de

.de crawl

First seen 2026-04-25 · Last seen 2026-05-18 · ok HTTP/1.1 200 1824 ms crawled 2026-05-18

DE · 62.113.231.33 · AS47447 23M GmbH

Reputation 100/100

Classifying

HTML metadata

Title
SCHOCK Spülen aus echtem Carbon bieten Luxus für Ihre Küche
Description
Einzigartig überzeugen die SCHOCK Carbon-Spülen neben der Verwendung von echtem Carbon mit ihrem Premium Anspruch an Design und Qualität.
Language
de
Canonical
https://www.theultimatesink.de/deu_de
Translations
  • de

Open Graph

url
https://www.theultimatesink.de/deu_de
title
SCHOCK Spülen aus echtem Carbon bieten Luxus für Ihre Küche
locale
de
site name
SCHOCK Spülen aus echtem Carbon bieten Luxus für Ihre Küche
description
Einzigartig überzeugen die SCHOCK Carbon-Spülen neben der Verwendung von echtem Carbon mit ihrem Premium Anspruch an Design und Qualität.

Technology

Server
Apache
CMS
Gatsby
Analytics
  • Google Tag Manager
Cookie consent
  • OneTrust

Third-party hosts loaded (3)

  • cdn.cookielaw.org×2
  • unpkg.com×2
  • www.googletagmanager.com×1

Social

Contact

Email
Phone
Address
Hofbauerstraße 1, 94209, Regen, BY, DE

Registration

Updated
2024-05-17
Name servers
  • a.ns14.net.
  • b.ns14.net.
  • c.ns14.net.
  • d.ns14.net.

DNS records live

NS
  • a.ns14.net
  • b.ns14.net
  • c.ns14.net
  • d.ns14.net
MX
  • 10 mx01.hornetsecurity.com
  • 20 mx02.hornetsecurity.com
  • 30 mx03.hornetsecurity.com
  • 40 mx04.hornetsecurity.com
Verified for
  • Meta
  • Microsoft 365

Email authentication strong

SPF
v=spf1 a mx include:mail-de.maxcluster.net include:spf.hornetsecurity.com include:spf.protection.outlook.com ~all
softfail (~all)
DMARC
v=DMARC1;p=quarantine;pct=100;rua=mailto:it@schock.de;ruf=mailto:it@schock.de
policy: quarantine
DKIM
no key found at common selectors

Certificate (current)

E8
from 2026-04-09 to 2026-07-08
Expires in 48 days

HTTP security headers

Header hygiene 75/100 Checked live page: https://www.theultimatesink.de/deu_de

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • weak frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN, SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
frame-ancestors 'self' https://*.facebook.com/; frame-src 'self' carbon.theultimatesink.de www.google.com www.youtube-nocookie.com player.vimeo.com snapwidget.com calendly.com connect.guidecom.de jobs.guidecom.de jobs.schock.de td.doubleclick.net www.googletagmanager.com ct.pinterest.com; default-src 'self' *.doofinder.com carbon.theultimatesink.de data: 'unsafe-inline' 'unsafe-eval' blob: *.schock.de cart.theultimatesink.de *.googleapis.com *.gstatic.com www.googletagmanager.com *.google-analytics.com *.analytics.google.com stats.g.doubleclick.net www.google.com connect.facebook.net www.facebook.com www.google.de www.googleadservices.com googleads.g.doubleclick.net i.vimeocdn.com img.youtube.com i.ytimg.com www.youtube.com www.gstatic.com cx.atdmt.com www.google.ie cdn.cookielaw.org s.ytimg.com www.youtube-nocookie.com noembed.com cdn.plyr.io vimeo.com code.jquery.com cdnjs.cloudflare.com snapwidget.com privacyportal-eu.onetrust.com assets.calendly.com unpkg.com https://api.friendlyca
strict-transport-security
max-age=31536000; includeSubDomains

Links to (4)

Linked from (1)