boisson.co
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Shopify
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (19)
- cdn.shopify.com×8
- cdn-static.okendo.io×2
- monorail-edge.shopifysvc.com×2
- shop.app×2
- api.config-security.com×1
- apigoswirl.com×1
- cdn-widgetsrepository.yotpo.com×1
- cdn.506.io×1
- conf.config-security.com×1
- fonts.shopify.com×1
- fonts.shopifycdn.com×1
- js.hs-scripts.com×1
- limits.minmaxify.com×1
- play.gotolstoy.com×1
- static.klaviyo.com×1
- static.shopmy.us×1
- tools.luckyorange.com×1
- widget.gotolstoy.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- leah.ns.cloudflare.com
- otto.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 5 TXT records
shopify-verification-code=daw2FFLAhgnD8m5Xue44MGBCTYYq8kfacebook-domain-verification=t7y72ek7u1ujfrg270t56fwnrn4a9ugoogle-site-verification=B2PzNHmWv4CV1IyC3RyKrZUs4Qj7LNXPAX77FsPVUvwgoogle-site-verification=v7jHpusf8JfSSniGIYKoOwo5NziyAAMp67uFsvDJjR8klaviyo-site-verification=Stwk7W
Email authentication strong
- SPF
-
v=spf1 mx ip4:156.70.63.178/32 ip4:156.70.63.169/32 include:_spf.google.com include:mailgun.org ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc@boisson.nyc; adkim=r; aspf=r;policy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAo2j1/nsKRRSNVKW965ZG0xWphe9lYwl24LKgUUgRcZiYugagySE1NzD1A+3ycldwBkJS6HvUq9vjrS… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA7fMLLNlvR2h7ZOEIMAm4/dJTZ9ZLu2ajeaHPC+s5HeL/onAv+XMn+Pcz9zSxZP43rFlzTyuMiGwDfgaJUL… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoBXzxKgrmIu6RcJOuerPChw7mth0DOsGUXzg6/3uHmvFDis/Zxo9lFWz1Erkj4+JhSl1AEbnCE4tANOqyQ…
selectors probed - google:
Certificate (current)
E8
Expires in 48 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- short HSTS max-age
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
block-all-mixed-content; frame-ancestors 'none'; upgrade-insecure-requests;- strict-transport-security
max-age=7889238