unibet.de

.de crawl

First seen 2026-04-18 · Last seen 2026-05-09 · ok HTTP/1.1 200 3425 ms crawled 2026-05-12

MT · 85.184.96.0 · AS47171 Kindred IP Limited

Reputation 100/100

Classifying

HTML metadata

Title
Unibet.de ist geschlossen

Technology

Server
kindred-loadbalancer

Third-party hosts loaded (1)

  • cdnjs.cloudflare.com×1

Registration

Updated
2024-10-22
Name servers
  • dns-ext1.northdev.net.
  • dns-ext2.northdev.net.
  • emea.excedodns.eu.
  • global.excedodns.com.
  • sto.excedodns.se.
  • world.excedodns.org.

DNS records live

NS
  • dns-ext1.northdev.net
  • dns-ext2.northdev.net
  • emea.excedodns.eu
  • global.excedodns.com
  • sto.excedodns.se
  • world.excedodns.org
MX
  • 0 unibet-de.mail.protection.outlook.com
TXT
Show 9 TXT records
  • e8184e5d-26ae-4479-bc3c-9b12d70c7dbc
  • facebook-domain-verification=kho1njq6elon92w5q59uq14q4ryr92
  • IjFt/SepqsHpNHOjRz1XXDWTMaNah+uwpvyY4MvDLpdDwt9TOk76zfxceUtKl2gbnI3f4q3SsZ7JQJ4ost5/Zw==
  • MS=ms78356582
  • 0c9c829f-4582-4734-88c9-adf347c91982
  • 0d1cc225-fdd7-49de-8b9a-fff714f84ffd
  • 75490f4b-224f-42e3-aac2-4a3610676a8a
  • 8d93c81d-6aaf-402e-acfa-4095d04a5ac3
  • d738c231-2e90-4d58-a56f-eda6e327f304

Email authentication strong

SPF
v=spf1 mx include:sp.unibet.com include:spf.protection.outlook.com -all
strict (-all)
DMARC
v=DMARC1;p=reject;aspf=r;adkim=r;rua=mailto:dmarc@unibet.de; fo=1
policy: reject (enforced)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAu62iqpIoEbJRLGN6SnuzYqlzVw7t0w3VHFaCe+fcdWeyQGXCxILlwm+C1dQh+90ffrwD525ALFH2Ja…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtgm6HPTEa3c2L2Vowz+fMmwDezxBztrF182rGOv3QSFNsI6xerlIvl/LH0o64zjYeyyq7atN5N4F24…
selectors probed

Certificate (current)

R13
from 2026-03-24 to 2026-06-22
Expires in 34 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://unibet.de/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • cross-origin-opener-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'unsafe-inline' 'unsafe-eval' http: https: data: wss: blob: jockey: unibetpro: *;
strict-transport-security
max-age=63072000; includeSubDomains; preload
cross-origin-opener-policy
same-origin-allow-popups

Links to (1)

Linked from (1)