winterbacher-bank.de

.de crawl

First seen 2026-06-01 · Last seen 2026-06-02 · ok HTTP/1.1 200 772 ms crawled 2026-06-02

DE · 195.200.52.98 · AS15590 Atruvia AG

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Startseite Winterbacher Bank eG
Language
de-DE
Canonical
https://www.winterbacher-bank.de/startseite.html

Open Graph

url
https://www.winterbacher-bank.de/startseite.html
title
Wir sind da, wo Sie sind
language
de
description
Für uns heißt da sein, füreinander da zu sein – das geht am besten vor Ort.

Technology

Third-party hosts loaded (1)

  • atruvia.scene7.com×24

Social

Registration

Updated
2025-06-24
Name servers
  • nsh1.atruvia.de.
  • nsh2.atruvia.com.
  • nsh3.atruvia.de.
  • nsh4.atruvia.com.

DNS records live

NS
  • nsh1.atruvia.de
  • nsh2.atruvia.com
  • nsh3.atruvia.de
  • nsh4.atruvia.com
MX
Show 8 MX records
  • 20 omail22.gadmail.de
  • 20 omail23.gadmail.de
  • 20 rmail22.gadmail.de
  • 20 rmail23.gadmail.de
  • 30 gmail22.gadmail.de
  • 30 gmail23.gadmail.de
  • 30 wmail22.gadmail.de
  • 30 wmail23.gadmail.de
TXT
  • QuoVadis=8315e77e-c508-4b5f-b75d-d1aa8fc6ca25
  • D-TRUST=3DW6HT3X9PY8BCJEQFG6FGA
Verified for
  • Microsoft 365

Email authentication partial

SPF
v=spf1 include:net1.spf.fiduciagad.de include:net2.spf.fiduciagad.de -all
strict (-all)
DMARC
v=DMARC1; p=none; adkim=r; aspf=r
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

D-TRUST SSL Class 3 CA 1 EV 2009
from 2026-04-05 to 2026-10-20
Expires in 140 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.winterbacher-bank.de/startseite.html

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
no-referrer
x-frame-options
DENY
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' https://maps.googleapis.com 'sha256-aSqN2R3jDvHFUL3vVOUtG6OJr1IF+Y31IPMdo0dLU6U=' 'nonce-1a05f48889283404fb37ad61d5b004a3'; base-uri 'self'; font-src 'self' https: data:; form-action 'self'; frame-src 'self' https://www.youtube-nocookie.com https://60069462.vr-kontowechselservice.de https://www.ruv.de https://www.easycredit.de https://gsv.module.vr-networld.de https://reisebank.de https://cs.immopool.de https://foerdermittelfinder.vr-bankenportal.de https://hwvsm.module.vr-networld.de https://fincalc-services-vrnw.de https://angebot.easycredit.de https://12345678.hwgep.module.vr-networld.de https://cloud.ruv.de https://12345678.flowfact-webparts.net https://go.idnow.de https://hwmmu.module.vr-networld.de https://www.vr.de https://was.module.vr-networld.de; frame-ancestors 'none'; object-src 'self'; style-src 'self' 'unsafe-inline' https:; img-src https: data:; connect-src 'self' data: https://maps.googleapis.com wss://*.mypurecloud.de https://atruv
strict-transport-security
max-age=31536000

Links to (3)

Linked from (1)