vb-rb.de

.de crawl

First seen 2026-04-14 · Last seen 2026-05-17 · ok HTTP/1.1 200 1893 ms crawled 2026-05-08

DE · 195.200.53.229 · AS15590 Atruvia AG

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
#desismeiBank - meine Volksbank Raiffeisenbank
Description
Die meine Volksbank Raiffeisenbank eG ist ab sofort die offizielle Hausbank des FC Bayern München - zwei starke Partner mit Herz für Bayern
Language
de-DE
Canonical
https://www.vb-rb.de/startseite.html

Open Graph

url
https://www.vb-rb.de/startseite.html
title
Füreinander da sein
language
de
description
Für uns heißt da sein, füreinander da zu sein – das geht am besten vor Ort.

Technology

Third-party hosts loaded (2)

  • atruvia.scene7.com×15
  • contentmanager.incognito.ms×2

Social

Registration

Updated
2026-04-29
Name servers
  • nsh1.atruvia.de.
  • nsh2.atruvia.com.
  • nsh3.atruvia.de.
  • nsh4.atruvia.com.

DNS records live

NS
  • nsh1.atruvia.de
  • nsh2.atruvia.com
  • nsh3.atruvia.de
  • nsh4.atruvia.com
MX
Show 8 MX records
  • 20 omail22.gadmail.de
  • 20 omail23.gadmail.de
  • 20 rmail22.gadmail.de
  • 20 rmail23.gadmail.de
  • 30 gmail22.gadmail.de
  • 30 gmail23.gadmail.de
  • 30 wmail22.gadmail.de
  • 30 wmail23.gadmail.de
TXT
Show 6 TXT records
  • facebook-domain-verification=s666awnu7whcqw9naerc404nitdne9
  • google-site-verification=8Ibwhs-3lIHY00H4QY3qGBNnFVAab1rNy-4yzkZ_dDU
  • apple-domain-verification=EGAv5Zj5fSbiViVA
  • D-TRUST=MOAOBK4KEHY8C8UQX6GFHDF
  • QuoVadis=b2be79ae-29c1-4c85-b8a2-8864d561e0cd
  • MS=ms17788599

Email authentication partial

SPF
v=spf1 include:spf.fiduciagad.de include:emnicon.fiduciagad.de include:spf.mailjet.com include:geno-live.com include:nl-sent.de -all
strict (-all)
DMARC
v=DMARC1; p=none; adkim=r; aspf=r
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

D-TRUST SSL Class 3 CA 1 EV 2009
from 2026-04-05 to 2026-10-20
Expires in 154 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.vb-rb.de/startseite.html

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
no-referrer
x-frame-options
DENY
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' https://maps.googleapis.com 'sha256-aSqN2R3jDvHFUL3vVOUtG6OJr1IF+Y31IPMdo0dLU6U=' 'nonce-bdfb8a9c1ed0e2da48268b8df8f5326e' https://cdn.cookielaw.org https://assets.adobedtm.com https://connect.facebook.net https://www.googleadservices.com https://www.google.com https://www.googletagmanager.com https://googleads.g.doubleclick.net https://analytics.tiktok.com https://snap.licdn.com https://s.pinimg.com https://*.googletagmanager.com https://pagead2.googlesyndication.com https://www.etracker.de https://code.etracker.com https://ad13.adfarm1.adition.com https://www.google-analytics.com https://www.googleadservices.com/pagead/conversion_async.js https://www.googleadservices.com/pagead/conversion.js https://pagead2.googlesyndication.com/ https://tpc.googlesyndication.com/ https://adservice.google.com/ https://adservice.google.de/ https://www.google.com/pagead/ https://www.google.com/ads/ https://www.google.com/ads/ga-audiences https://connect.facebook.ne
strict-transport-security
max-age=31536000

Links to (9)

Linked from (13)