{
    "schema": "https://saferpage.de/schemas/technology-detection.v1",
    "generated_at": "2026-06-08T19:00:34+00:00",
    "domain": "kidd.bund.de",
    "available": true,
    "scan": {
        "id": "2cb281fe-7a47-4b72-a66a-45f3a20c52e0",
        "checked_at": "2026-06-08 13:16:54.143114+02"
    },
    "summary": "kidd.bund.de: 3 sichtbare Technik-/Anbietersignale, 1 mit hoher Datenschutzrelevanz, 0 CMS-/Shop-Hinweis(e).",
    "metrics": {
        "technology_count": 3,
        "high_privacy_relevance_count": 1,
        "cms_or_shop_count": 0,
        "external_script_count": 0,
        "request_count": 35,
        "third_party_domain_count": 0,
        "infrastructure_finding_count": 1
    },
    "signals": {
        "server_header": "Varnish",
        "generator": "",
        "x_powered_by": "",
        "asset_hosts": [],
        "external_scripts": [],
        "tls_version": "TLSv1.3",
        "certificate_issuer": "Telekom Security ServerID OV Class 2 CA",
        "renderer": "playwright-chromium"
    },
    "category_counts": {
        "Analytics/Werbung": 1,
        "Server": 2
    },
    "technologies": [
        {
            "id": "matomo",
            "name": "Matomo",
            "category": "analytics",
            "category_label": "Analytics/Werbung",
            "confidence": "high",
            "risk_score": 80,
            "privacy_relevance": "hoch",
            "evidence": [
                "Signal: matomo.js",
                "Script-Domain: matomo"
            ],
            "source": "technology_analysis"
        },
        {
            "id": "varnish",
            "name": "Varnish",
            "category": "server",
            "category_label": "Server",
            "confidence": "medium",
            "risk_score": 42,
            "privacy_relevance": "niedrig",
            "evidence": [
                "Server-Header: Varnish"
            ],
            "source": "technology_analysis"
        },
        {
            "id": "server_header",
            "name": "Varnish",
            "category": "server",
            "category_label": "Server",
            "confidence": "medium",
            "risk_score": 42,
            "privacy_relevance": "niedrig",
            "evidence": [
                "Server-Header: Varnish"
            ],
            "source": "technology_signals"
        }
    ],
    "operator_actions": [
        {
            "id": "action_matomo",
            "technology": "Matomo",
            "priority": "hoch",
            "owner": "Marketing/IT/Datenschutz",
            "action": "Tracking-, Werbe- und Tag-Manager-Dienste bis zur aktiven Einwilligung blockieren und in Consent, Datenschutzhinweis und Anbieterregister erklären.",
            "guide_url": "https://saferpage.de/consent/kidd.bund.de"
        },
        {
            "id": "action_varnish",
            "technology": "Varnish",
            "priority": "mittel",
            "owner": "IT/Security/Vendor Owner",
            "action": "Hosting/CDN, TLS, E-Mail-Schutz, Security-Header, CAA/DMARC und Anbieterrolle mit AVV/DPA/TOM-Nachweis prüfen.",
            "guide_url": "https://saferpage.de/anbieter/kidd.bund.de"
        },
        {
            "id": "action_server_header",
            "technology": "Varnish",
            "priority": "mittel",
            "owner": "IT/Security/Vendor Owner",
            "action": "Hosting/CDN, TLS, E-Mail-Schutz, Security-Header, CAA/DMARC und Anbieterrolle mit AVV/DPA/TOM-Nachweis prüfen.",
            "guide_url": "https://saferpage.de/anbieter/kidd.bund.de"
        }
    ],
    "infrastructure": {
        "risk_level": "low",
        "positive_signals": [
            "Moderne TLS-Version aktiv: TLSv1.3.",
            "HSTS ist aktiv.",
            "DMARC ist für die Domain vorhanden."
        ],
        "findings": [
            {
                "id": "caa_missing",
                "title": "CAA-Record fehlt",
                "public": true,
                "category": "dns",
                "severity": "info",
                "recommendation": "Optional CAA setzen, um erlaubte Zertifikatsaussteller festzulegen."
            }
        ]
    },
    "links": {
        "technology_center": "https://saferpage.de/technik/kidd.bund.de",
        "json": "https://saferpage.de/technik/kidd.bund.de/export",
        "csv": "https://saferpage.de/technik/kidd.bund.de/export-csv",
        "markdown": "https://saferpage.de/technik/kidd.bund.de/stack-md",
        "report": "https://saferpage.de/kidd.bund.de",
        "vendors": "https://saferpage.de/anbieter/kidd.bund.de",
        "consent": "https://saferpage.de/consent/kidd.bund.de",
        "findings": "https://saferpage.de/befunde/kidd.bund.de",
        "evidence": "https://saferpage.de/nachweise/kidd.bund.de"
    },
    "disclaimer": "Technik-Erkennung ist passiv: SaferPage wertet sichtbare Header, HTML-, Script-, Asset- und Browserkontakte aus. Nicht sichtbare Servertechnik, interne Plugins und Logins werden nicht behauptet."
}
