upfit.io

.io crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 1539 ms crawled 2026-05-19

US · 162.159.140.98 · AS13335 Cloudflare, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Anmelden | Upfit
Description
Bei Upfit anmelden – KI-gestützte Ernährungsplanung, Rezepte und Einkaufslisten.
Language
de
Canonical
https://upfit.io/de/login
Translations
  • de
  • en
  • es
  • fr
  • it
  • pl
  • ru

Open Graph

url
https://upfit.io/de/login
title
Anmelden | Upfit
locale
de_DE
site name
Upfit.io
description
Bei Upfit anmelden – KI-gestützte Ernährungsplanung, Rezepte und Einkaufslisten.

Technology

CDN
Cloudflare
CMS
Next.js

DNS records live

NS
  • ns-1253.awsdns-28.org
  • ns-1769.awsdns-29.co.uk
  • ns-46.awsdns-05.com
  • ns-517.awsdns-00.net
MX
  • 1 aspmx.l.google.com
  • 10 alt3.aspmx.l.google.com
  • 10 alt4.aspmx.l.google.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
Verified for
  • Brevo
  • Google

Email authentication strong

SPF
v=spf1 redirect=upfit.de
no all qualifier
DMARC
v=DMARC1; p=quarantine; rua=mailto:rua@dmarc.brevo.com,mailto:spam@upfit.de; pct=100; adkim=r; aspf=r
policy: quarantine
DKIM
  • google: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCRPUIxhX+4v8GnHZpNzK1JkFeMo9mXypjBc9V1c/z+Lbrmr4V5r7JGLJity0HvQp6eiglQKIWX1TvH2RFYWf…
  • mail: k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed

Certificate (current)

WE1
from 2026-04-22 to 2026-07-22
Expires in 62 days

HTTP security headers

Header hygiene 75/100 Checked live page: https://upfit.io/de/login

present
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
DENY
permissions-policy
camera=(), geolocation=()
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://cdn.jsdelivr.net; worker-src 'self' blob: https://cdn.jsdelivr.net; style-src 'self' 'unsafe-inline'; img-src 'self' data: blob: https:; font-src 'self' data:; connect-src 'self' https: wss:; frame-src 'self' https:; media-src 'self' https: blob:

Links to (7)

Linked from (1)