celonis.com
DEnterprise AI powered by Celonis
The Celonis Platform gives Enterprise AI the operational context it needs to succeed, so you can transform your operations and drive value.
Built with
No platform, CMS or framework detected. Detection is passive: it only sees what a site exposes in its HTML, headers and cookies, so custom or well-hidden stacks show up as nothing rather than as a guess.
Overview
- Status
- alive
- Registered
- 2011-04-13 (15 years ago)
- First seen here
- 2026-09-22
- Security grade
- D (65/100, from headers & TLS)
- Privacy score
- 100/100 (0 third-party script hosts, 0 tracking/marketing services)
- Hosting
- Fastly, Inc. · AS54113 · Germany
- Response time
- 16 ms to first byte, measured from our crawler
- TLS certificate
- Let's Encrypt · TLSv1.3 · expires 2026-12-15
- Mobile-ready
- yes (viewport meta tag)
- Structured data
- Organization
- Linked to from
- 2 other sites seen so far
What to fix
- Add a Content-Security-Policy
Limits which scripts can run, and is the main defense against XSS. Start with Content-Security-Policy-Report-Only to test. - Prevent clickjacking
Header: X-Frame-Options: DENY (or a CSP frame-ancestors directive). - Add a Referrer-Policy
Header: Referrer-Policy: strict-origin-when-cross-origin
Security & email signals
- ✓ HTTPS
- ✓ HSTS
- ✗ Content-Security-Policy
- ✓ X-Content-Type-Options
- ✗ X-Frame-Options
- ✗ Referrer-Policy
- ✗ Permissions-Policy
- ✓ SPF record
- ✓ DMARC record
- ✗ DKIM record
- ✓ Cookies set securely
- ✓ Has real content (not an empty shell)
- ✓ Valid TLS certificate
Badge
Show this site's security grade in a README or footer:

<a href="https://webtelemetry.dev/site/celonis.com"><img src="https://webtelemetry.dev/badge/celonis.com.svg" alt="Security grade"></a>
Generated automatically from passive, publicly observable data. Think something here is wrong or want this profile removed? See /bot. Machine-readable: JSON.