belletire.com

.com crawl

First seen 2026-04-22 · Last seen 2026-05-16 · ok HTTP/1.1 200 7354 ms crawled 2026-05-16

US · 18.225.118.254 · AS16509 Amazon.com, Inc.

Reputation 89/100 weak security headers dmarc monitor-only

sector automotive type homepage

HTML metadata

Title
Belle Tire | Tires, Wheels & Auto Service
Description
Shop tires, wheels & auto service at Belle Tire. Serving MI, OH, IN & IL since 1922. We'll beat any price, plus free lifetime tire maintenance.
Language
en
Canonical
https://www.belletire.com

Open Graph

url
https://www.belletire.com
title
Belle Tire | Tires, Wheels & Auto Service
locale
en_US
site name
Belle Tire
description
Shop tires, wheels & auto service at Belle Tire. Serving MI, OH, IN & IL since 1922. We'll beat any price, plus free lifetime tire maintenance.

Technology

CDN
Cloudflare
CMS
Next.js
Analytics
  • Cloudflare Insights
  • Google Tag Manager

Third-party hosts loaded (5)

  • images.ctfassets.net×52
  • belletire.mpeasylink.com×1
  • static.cloudflareinsights.com×1
  • try.abtasty.com×1
  • www.googletagmanager.com×1

Social

Contact

Phone
Address
25800 Northwestern Highway Floor 10, 48075, Southfield, MI, US

Registration

Registrar
Amazon Registrar, Inc.
Created
1996-08-01
Expires
2031-07-31 1898 days left
Updated
2026-02-19
Name servers
  • ns-1455.awsdns-53.org
  • ns-1604.awsdns-08.co.uk
  • ns-254.awsdns-31.com
  • ns-958.awsdns-55.net

DNS records live

NS
  • ns-1455.awsdns-53.org
  • ns-1604.awsdns-08.co.uk
  • ns-254.awsdns-31.com
  • ns-958.awsdns-55.net
MX
  • 0 belletire-com.mail.protection.outlook.com
TXT
Show 6 TXT records
  • atlassian-domain-verification=jpthlraVfADTUScQ76gmakRWLMigReekFCxFw4xPh6asspA2hMcGUdmcaAa6ZmaX
  • cursor-domain-verification-smz704=RqNW2JiybHvi1WYWggJXmG7j2
  • duo_sso_verification=FWQ6f38RksOQnueyLIMGkefZQO94EsEHCiJOEbEzCuFsTDpc9qdgRy3dF62bqyjT
  • facebook-domain-verification=yjjnxl99xshjtkljg8echx7gbm48v6
  • MS=E58B0C86974613BA19CEDFE6F3151ABCFB4F866E
  • anthropic-domain-verification-2c8ybk=dlc6TFoLVV0WQSIHDx4UuaGBT

Email authentication partial

SPF
v=spf1 ip4:50.173.129.42 include:spf.protection.outlook.com include:amazonses.com include:_spf01.mykronos.com include:_spf.psm.knowbe4.com include:mailgun.org ip4:216.46.93.237 ip4:216.46.96.238 ip4:216.46.96.239 ip4:12.104.201.5 -all
strict (-all)
DMARC
v=DMARC1; p=none; rua=mailto:dmarc_agg@vali.email
policy: none (monitoring only)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDV+zF4j+yL/VuhX0p6xtXZWujJix8QNbrNIEgpvM6MIt3IHXoZGi29yB0Lx4mpv7T3WBuZQitw9JEsFRf9C+…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxQVRAseg4LNoyvb7Gh6LEvBUNda48KTIWxajUOwNz9wLoAgjuAZRj5vdUIEdW0jWz/12qlhHIw43tm…
selectors probed

Certificate (current)

Amazon RSA 2048 M01
from 2026-03-04 to 2026-09-18
Expires in 121 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://www.belletire.com/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
base-uri 'self'; default-src 'self' *.contentsquare.net *.ctfassets.net *.belletire.com *.mpeasylink.com *.mpeasy.com *.contentsquare.net *.userway.org pixel.ad *.pixel.ad *.reddit.com *.redditstatic.com *.googletagmanager.com; connect-src 'self' *.ctfassets.net *.contentful.com *.belletire.com *.mpeasylink.com *.mpeasy.com *.google.com *.google-analytics.com *.googletagmanager.com *.googleapis.com *.cookielaw.org *.onetrust.com *.googleadservices.com *.doubleclick.net *.paa-reporting-advertising.amazon *.amazon-adsystem.com *.loopme.com *.shop.pe *.ringcentral.com *.adroll.com *.contentsquare.net *.userway.org *.abtasty.com pixel.ad *.pixel.ad *.reddit.com *.redditstatic.com; script-src 'nonce-NDdlNjZlODQ3NTliNGUxNDkwZjE2ZjQyNmVjODI2ZTk=' 'strict-dynamic' 'self' 'self' 'unsafe-eval' 'unsafe-inline' *.affirm.com *.belletire.com *.merchantpartners.com *.github.io *.google.com *.googleapis.com *.googletagmanager.com *.merchantpartners.com geoip-js.com unsafe-inline blob: https://*.amazon

Links to (4)

Linked from (2)