besins-healthcare.com
HTML metadata
Technology
- CMS
- Next.js
- JS framework
- Next.js, React
Third-party hosts loaded (2)
- besins-auaug2cugffkh8b3.z01.azurefd.net×21
- cdnjs.cloudflare.com×1
Social
Registration
- Registrar
- Nameshield SAS
- Created
- 2007-01-18
- Expires
- 2027-01-18 227 days left
- Updated
- 2026-04-15
- Name servers
-
- nsa.perf1.fr
- nsb.perf1.com
- nsc.perf1.com
- nsz.perf1.com
- nsz.perf1.fr
DNS records live
- NS
-
- nsa.perf1.fr
- nsb.perf1.com
- nsc.perf1.com
- nsz.perf1.com
- nsz.perf1.fr
- MX
-
- 10 hermes.besins-healthcare.com
- TXT
-
Foxit-domain-verification=94683f75e1437a7eff24ee6cd0990d84Foxit-domain-verification=a9bb4324be82ab0b0d65a5bab7b24e4c76EC075CB44986B937DD9CD721086189A03E2D1008790B8197344898662B1B2F
- Verified for
-
- Canva
- DocuSign
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 mx ip4:83.142.91.230 include:spf.protection.outlook.com include:spf-westeu.emailsignatures365.com ip4:85.159.115.60 ip4:103.2.142.135 include:spf.esvacloud.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; adkim=r; aspf=r; pct=0;policy: none (monitoring only) · pct=0 - DKIM
-
- k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed - k1:
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 84 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
deny, SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' https://cloud.ccm19.de/widget/details; style-src 'self' 'unsafe-inline'; style-src-elem https://undefined https://undefined https://www.undefined https://cdnjs.cloudflare.com/ajax/libs/animate.css/4.1.1/animate.min.css 'unsafe-inline' https://cloud.ccm19.de/app.css *.azurewebsites.net https://*.besins-healthcare.com https://www.besins-healthcare.com.br/* https://www.besins-healthcare.com.br https://ktomalek.pl/leon-www/resources/styles/kml-widget/v2/widget-mini.css 'self'; script-src-elem 'self' 'unsafe-inline' https://cloud.ccm19.de/app.js https://consentcdn.cookiebot.com/ https://www.googletagmanager.com https://consent.cookiebot.com/ https://mktdplp102cdn.azureedge.net/public/latest/js/form-loader.js https://player.vimeo.com/api/player.js https://cloud.ccm19.de/plugins/Ccm19ScriptPlaceholder/module.js http://code.etracker.com/code/* http://code.etracker.com/code/e.js http://code.etracker.com http://www.etracker.de https://connect.face- strict-transport-security
max-age=31104000; includeSubDomains