Online

SH4Y CyberMail

v2026.4
WebCode Systems UG Speed-Hosting4you
ENGINE CORE
PHP 8.5.9
PERSISTENCE
MySQL PDO ACTIVE
ARCHITECTURE
30+ PLUGINS LOADED
Dashboard
SH4Y CyberMail Quick Reference
// REST API USAGE

Rufe Audit-Ergebnisse direkt als JSON ab:

GET https://dosreisantunes.de/api.php?domain=speed-hosting4you.de
// PLUGIN DEVELOPMENT CONTRACT

Erstelle neue Scans im Ordner /plugins/:

class MyCheckPlugin implements AuditPluginInterface {
  public function getKey(): string { return 'my_check'; }
  public function getTitle(): string { return 'My Custom Audit'; }
  public function getWeight(): int { return 5; }
  public function run(...): array { ... }
}
// MYSQL SCHEMAS

Die Datenbank speichert Audits in zwei Haupttabellen:

  • domains: Speichert eindeutige Ziel-Domains.
  • audits: Speichert historische JSON-Ergebnisse.

_dmarc.google.com. IN TXT "v=DMARC1; p=reject; sp=reject; pct=100; rua=mailto:dmarc@google.com"
google.com. IN TXT "v=spf1 ip4:192.178.183.113 mx -all"
85%
A GRADE
Audit Target

google.com

Sync: 2026-08-24 23:19:31
Score Historie (MySQL DB)
ACTIONABLE ADVICE & OPTIMIZATION ROADMAP
SMTP VRFY/EXPN User Enum
MTA antwortet auf VRFY/EXPN (Enumeration Risiko)
Authentifizierung & Mail-Schutz
SPF Recursive Deep Audit INFO

Softfail (~all) aktiv.

Record: v=spf1 include:_spf.google.com ~all
DMARC Alignment Policy SUCCESS

DMARC Policy: p=reject

v=DMARC1; p=reject; rua=mailto:mailauth-reports@google.com
DKIM Key Strength & Selector INFO

Kein Standard-DKIM unter getesteten Selectors

15 Selectors gescannt
BIMI Logo & VMC Cert SECONDARY

Kein BIMI Record.

Optional
Subdomain SPF Wildcard Protection INFO

Subdomain SPF Absicherung empfohlen

*.google.com TXT
DNS & Krypto-Sicherheit
DNSSEC Validation Status INFO

Keine DNSSEC Signatur

Standard DNS
DANE TLSA Hash Match SECONDARY

Kein TLSA Record hinterlegt (DANE Optional)

Entry: _25._tcp.smtp.google.com
CAA Certificate Auth SUCCESS

CAA Record vorhanden

Tag: issue -> pki.goog
SOA Record Audit SUCCESS

SOA Record valide (Serial: 969321400)

Primary NS: ns1.google.com Admin Email: dns-admin.google.com Serial: 969321400 Refresh: 900s | Retry: 900s
Wildcard DNS Risk Analyzer SUCCESS

Kein Wildcard DNS

No Wildcard A-Record
Global DNS Propagation SUCCESS

Globale Resolver synchronisiert (3/3)

3/3 Resolvers Synced
SMTP, Server & Zertifikate
MX High Availability INFO

1 MX Server aktiv

smtp.google.com
TLS Reporting (TLS-RPT) SUCCESS

TLS Reporting (TLS-RPT) valide

v=TLSRPTv1;rua=mailto:sts-reports@google.com
SSL/TLS Certificate Audit SUCCESS

SSL/TLS Zertifikat verifiziert & aktiv

CN: mx.google.com Port: 25 | Gültig bis: 2026-10-28 (65d)
Mail Ports (25, 465, 587) & Banner SUCCESS

1/3 Ports erreichbar auf smtp.google.com

SMTP (25): OPEN | SMTPS (465): CLOSED | Submission (587): CLOSED
Open Relay Vulnerability SUCCESS

Sicher (Relay Access Denied)

RCPT Response: 550-5.1.1 The email account that you tried to reach does not exist. Please try
SMTP Smuggling Resilience INFO

MTA unterstützt CHUNKING (BDAT Vektor beachten)

CHUNKING Support: YES RCPT Check Response: 250 2.1.5 OK ffacd0b85a97d-482c9b525c3si10861342f8f.19 - gsmtp
Infrastruktur, IP & Routing
Reverse DNS FCrDNS Strict SUCCESS

FCrDNS strikt valide

MX IP: 142.251.127.26 PTR: lcfrai-in-f26.1e100.net
RBL Blacklist Engine SUCCESS

Keine Listung auf bekannten RBLs

IP: 142.251.127.26 Status: Saubere Reputation
MX IP Geolocation & DSGVO INFO

Server außerhalb der EU (United States)

IP: 142.251.127.27 Land: United States [US] Provider: Google LLC ASN: AS15169 Google LLC
Autodiscover Client Config INFO

Autodiscover/SRV optional

Keine Auto-Config Records
Webmail Security Headers SUCCESS

Webmail-Endpunkt ist mit HTTPS & HSTS geschützt (Alle Header optimal)

https://mail.google.com | HSTS: max-age=31536000; includeSubDomains
SMTP Auth Security INFO

Sicher (Reiner MX Port 25)

Kein AUTH auf Port 25
SMTP VRFY/EXPN User Enum WARNING

MTA antwortet auf VRFY/EXPN (Enumeration Risiko)

VRFY root -> 252 2.1.5 Send some mail, I'll try my best a640c23a62f3a-c249674ed73si928172266b.215 - gsmtp EXPN admin -> 502-5.5.1 Unimplemented command. For more information, go to