avaloq.com
HTML metadata
Technology
- Server
- nginx
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
Third-party hosts loaded (2)
- cdn.cookielaw.org×3
- www.googletagmanager.com×1
Social
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 2000-09-07
- Expires
- 2026-09-07 109 days left
- Updated
- 2025-09-03
- Name servers
-
- ns1.avaloq.com
- ns2.avaloq.com
- ns3.avaloq.com
- ns4.avaloq.com
DNS records live
- NS
-
- ns1.avaloq.com
- ns2.avaloq.com
- ns3.avaloq.com
- ns4.avaloq.com
- MX
-
- 10 avaloq-com.mail.protection.outlook.com
- TXT
-
Show 18 TXT records
_g2d9ttic26ua1s45g8y8bfib772hm7uhTeyuncWXGH640T8rLIcDaUjnju315ZLclmNOGCyhh6Mza+HDYEvdiLYxpItUeL/rVlAzYGWzg0TK9/0Ak1ezw==paloaltonetworks-site-verification=dbeb60b83134adb95c5972b00fa5f834684a574b6ac0b4ba4f62d3d29b933ce5atlassian-sending-domain-verification=d4f0c5f4-3e2a-4cd6-952b-c1365edcc9f89ulckqd55ujo7u07o6ldemmnfp_gitlab-pages-verification-code.avaloq.com TXT gitlab-pages-verification-code=98d438cf0fae0287477937f9e0a962c0successfactors-site-verification=YTJjNjBjODNjOThkN2RkNzViMmNkOTgyM2Q0MjEzZGRiMzViMDkzMGM3ZDEzOTM4ZDc4Y2E4OGUyYjY5Y2U5Zg==_bic7kteqrenq06ca3q7tnd3x17yi6hzjamf-site-verification=TW-hzaK2KSpC2Oe8bE1TbAhpe-greenlake-domain-verification=445259417154483365734341566556795066754941526847626e724337676738successfactors-site-verification=NTY5YjdiMzNmODA3Zjk2ZWYwMDNkNWI3Y2Y3NTVlNTlhYTIzMmJjODQ3MjVlNTBiMDI0M2U2YzUxODQ0YmM4ZQ==_csr7d7ihcfpu39vrfqhecguee4mvbd1men4HFVFUjqQgReW3zNOrsvovANwJVgs0ykHjX/M2DGhRyhYhsJZ5jTdnNyDdzaGebkpASaBGNz8BfYomHx9Ug==docker-verification=26863cb9-cbdc-4bcf-8ecf-3aeaefc1c5a5ml3ps4ncnq1cgfa0ck89briv25workbrew-domain-verification-77tfww=pxRQc242TGyKgipyJp7npkttcf890jsp3abebf9msgi2lvr3kr3r2dkrf3qrqdhhmn8m8f7d3lbwbxfs53d
- Verified for
-
- Apple
- Atlassian
- Cisco
- DocuSign
- Figma
- Meta
- Microsoft 365
- Miro
- TeamViewer
- Twilio
- Zoom
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:hubspotemail.net include:cloudmail2.metacompliance.com include:_spf-dc74.sapsf.eu include:eu.rp.oracleemaildelivery.com include:_spf.cmail.ondemand.com include:amazonses.com include:rp.email.oci.oraclecloud24.com ip4:62.12.155.192/26 ip4:168.245.49.92 ip4:212.25.11.24 ip4:212.25.2.59 ip4:83.150.1.32/27 ip4:149.72.212.100 ip4:167.89.3.126 ip4:159.183.225.3 ip4:62.2.177.133 ip4:20.113.108.146 -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:88f8fa8902de458cb2f96cd68669e9db@dmarc-reports.cloudflare.netpolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6VwEzJSLtqdqXrzNJxgs5i3++02Z2AHbaEqyfA216Dfd5lI9EXJKKPtqxsWoSuB2R7DkKeph1sfbZv… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq0sJVmn8HT5ryJtjwiGiiipFP1XP7T0K1qE38EBuQI+CyNJozMCqoLfHM2YvlSOtFO3mvTBkmSll4g…
selectors probed - selector1:
Certificate (current)
R13
Expires in 22 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'none';connect-src 'self' https://*.cookielaw.org/ https://*.hsforms.com/ https://*.hubspot.com/ https://*.google.com/ https://www.google.de/ https://*.google-analytics.com/ https://*.linkedin.com/ https://*.doubleclick.net/ https://*.clarity.ms/ https://*.hscollectedforms.net/ https://unpkg.com/@lottiefiles/ https://cdn.jsdelivr.net/npm/@lottiefiles/ https://*.liadm.com/ https://www.googleadservices.com/ https://google.com/ https://*.googlesyndication.com/ccm/collect/ https://pagead2.googlesyndication.com/ https://www.google.com/pagead/ https://www.google.co.uk/ https://*.googletagmanager.com/ https://hubspot-forms-static-embed-eu1.s3.amazonaws.com/ https://api.company-target.com/ https://static.hsappstatic.net/ https://tag.demandbase.com/ https://privacyportal-eu.onetrust.com/ https://*.cookielaw.org/ https://*.cookiepro.com/ https://*.onetrust.com/ https://geolocation.onetrust.com/ https://*.hubapi.com/ https://*.company-target.com/ https://*.arbigo.com/;frame-src 'self'- strict-transport-security
max-age=31536000