wst-whistleblowing.de

.de crawl

First seen 2026-05-27 · Last seen 2026-06-03 · ok HTTP/1.1 200 1273 ms crawled 2026-05-30

DE · 46.182.150.12 · AS15451 DATEV eG

Reputation 100/100

Classifying

HTML metadata

Title
W+ST Data Security GmbH
Description
Whistleblowing Software for W+ST Data Security GmbH, Hinweisgebersystem von W+ST Data Security GmbH – provided by Vispato.com
Language
en
Translations
  • de
  • en

Technology

Server
nginx

Registration

Updated
2021-11-09
Name servers
  • ns-1122.awsdns-12.org.
  • ns-1789.awsdns-31.co.uk.
  • ns-424.awsdns-53.com.
  • ns-798.awsdns-35.net.

DNS records live

NS
  • ns-1122.awsdns-12.org
  • ns-1789.awsdns-31.co.uk
  • ns-424.awsdns-53.com
  • ns-798.awsdns-35.net

Email authentication no MX

SPF
v=spf1 include:spf.mailjet.com -all
strict (-all)
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

R12
from 2026-04-23 to 2026-07-22
Expires in 46 days

HTTP security headers

Header hygiene 95/100 Checked live page: https://www.wst-whistleblowing.de

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
geolocation=(),midi=(),sync-xhr=(self),microphone=(self),camera=(),magnetometer=(),gyroscope=(),fullscreen=(self),payment=(),usb=()
x-content-type-options
nosniff
content-security-policy
default-src 'self'; style-src 'self' 'unsafe-inline' 'nonce-cb2894a68d587d1094400d796facbdb2'; connect-src 'self' data:; img-src 'self' data: blob:; script-src 'self' 'unsafe-eval' 'nonce-cb2894a68d587d1094400d796facbdb2'; object-src 'none'; base-uri 'self'; font-src 'self'; frame-src 'self'; manifest-src 'self'; media-src 'self' data: blob:; worker-src 'none'
strict-transport-security
max-age=63072000; includeSubDomains, max-age=31536000; includeSubDomains

Linked from (2)