werthers-original.nl

.nl crawl

First seen 2026-05-26 · Last seen 2026-05-30 · ok HTTP/1.1 200 596 ms crawled 2026-05-30

DE · 46.167.166.0 · AS42442 Adacor Hosting GmbH

Reputation 100/100

Classifying

HTML metadata

Title
Werther's Original – heerlijk caramel genot
Description
Welkom bij Werther's Original! Van romige caramelsnoepjes tot zachte toffees: ontdek nu de caramel-verscheidenheid. Naar de website
Language
nl-NL
Generator
TYPO3 CMS
Canonical
https://www.werthers-original.nl/nl/home
Translations
  • en ×3
  • fr ×2
  • de
  • es
  • pl

Open Graph

url
https://www.werthers-original.nl/nl/home

Technology

Third-party hosts loaded (10)
  • static.storck.com×7
  • www.werthers-original.ca×2
  • logfiles.storck.com×1
  • www.werthers-original.co.uk×1
  • www.werthers-original.com.live.sto.adacor.net×1
  • www.werthers-original.de×1
  • www.werthers-original.es×1
  • www.werthers-original.fr×1
  • www.werthers-original.pl×1
  • www.werthers-original.us×1

Registration

Registrar
Domain Robot
Created
2001-12-21
Updated
2026-03-04
Name servers
  • ns5.adacor.net
  • ns.europe.adacor.net

DNS records live

NS
  • ns.europe.adacor.net
  • ns5.adacor.net
Verified for
  • Google

Email authentication no MX

SPF
not published
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

R13
from 2026-05-03 to 2026-08-01
Expires in 61 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.werthers-original.nl/nl/home

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
sameorigin
x-content-type-options
nosniff
content-security-policy
base-uri 'self'; default-src 'self' data: *.storck.com storck.piwik.pro *.amazonaws.com; script-src 'self' 'nonce-j2r2XPY9zXhV927b9hiSdGDMZKhJNre_AEFAYgTjZMzrOB1KscQtQw' blob: data: *.storck.com storck.piwik.pro *.mikmak.tv *.mapbox.com tags.srv.stackadapt.com s3.us-west-2.amazonaws.com click2cart.com *.click2cart.com maps.googleapis.com; img-src 'self' blob: data: *.storck.com storck.piwik.pro *.mikmak.tv ad.doubleclick.net adservice.google.com adservice.google.de cdn.filestackcontent.com *.amazonaws.com *.albertsons-media.com adservice.google.us assets.mikmak.workers.dev click2cart.com *.click2cart.com maps.gstatic.com maps.googleapis.com; style-src 'self' 'unsafe-inline' 'unsafe-eval' data: *.storck.com *.mikmak.tv tags.srv.stackadapt.com *.mapbox.com click2cart.com *.click2cart.com maxcdn.bootstrapcdn.com s3.us-west-2.amazonaws.com fonts.googleapis.com; connect-src 'self' data: *.storck.com storck.piwik.pro *.mikmak.tv *.mapbox.com tags.srv.stackadapt.com click2cart.com *.click2car
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (4)

Linked from (4)