brittany-ferries.fr
HTML metadata
Technology
- CDN
- Cloudflare
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- storage.googleapis.com×10
- images.ctfassets.net×2
- fonts.gstatic.com×1
- widget.trustpilot.com×1
Registration
- Registrar
- GANDI
- Created
- 1996-08-07
- Expires
- 2026-10-30 162 days left
- Updated
- 2025-10-04
- Name servers
-
- chuck.ns.cloudflare.com
- ivy.ns.cloudflare.com
DNS records live
- NS
-
- chuck.ns.cloudflare.com
- ivy.ns.cloudflare.com
- MX
-
- 10 mail.brittany-ferries.fr
- 20 mail2.brittany-ferries.fr
- TXT
-
Show 7 TXT records
_y0e1gelb2e3juaif4xz7gdaxhh2lt0ahave-i-been-pwned-verification=b2214291fe6676d44ed1475f56e9c493k1vjc555dpy805cgmswt9742ntf3vfcqtmes=9191ba4a2b042b879f1550110b4e052747zvvj05lzb6gz20vkdt08bpnwhfd574DxeRKOxtnYG2/Bjt2Csx6VHoNOzYBdyR+HTi+tvzqaSQwrXItf0KNaRfLbIr2sDG0/GbfEWvrpQT9ujILtb3rQ==_az9wuiao5zda5jp5aziu7dfw47xgu2o
- Verified for
-
- Anthropic
- Atlassian
- Microsoft 365
- OpenAI
Email authentication partial
- SPF
-
v=spf1 include:azimailing.net include:spf.protection.outlook.com ip4:109.176.139.75 ip4:109.176.139.76 ip4:109.176.139.70 ip4:194.250.110.168 ip4:83.206.26.123 ip4:83.206.26.125 -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarcagg@brittanyferries.com; ruf=mailto:dmarcforensic@brittanyferries.com; sp=none; fo=1; adkim=r; aspf=rpolicy: none (monitoring only) · sp=none - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsjtKcbFcYx9dOuFRl18rqR613lAWWyCqY3bKmI9FrSlyMm4PXLD05rXzvaIpPj2BENEtcuqWcjQu6G… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwIVm5HxUbEB4y23Un25gag4FuqTEqK+PicPJ2q5mg3Y9QQoWTTX4TeqJPxPdZ81vfLv0qE0qm+Ee9fV3Lu… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC85R5vPRt7aStyiP6hLVKzvnPtxUwrq/2jlXiEzkiWiPQxQc1u6MbdaA/wWDE3XXqtX/vu0j7DpxBJFHc2bFJws8…
selectors probed - selector1:
Certificate (current)
R12
Expires in 15 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
script-src 'unsafe-eval' 'strict-dynamic' 'nonce-12c8a748c1f31b157d3e76d5c208e505' 'sha256-lP+eze/AK/U+wcFpKIsxa7UjndDoxGJzdu44XOkoqRo=' 'sha256-nzv8I5Mf0AZBUKeL70LtQfYBjK/DghfP72B8j+UI49I=' 'sha256-XUn0u9o0PrOqkPRlvSKJduPghRMELoQAwAZCSE3sASs=' 'sha256-oBDCmbdwlYyR8ewwQdEO9ynbtTtruNSsPCCjG3ZvYNg=' 'sha256-0zZPgsifJ8h8aM+gmSxkrfNtAGUZb7ItVug6/j1UR5g=' 'sha256-MhtPZXr7+LpJUY5qtMutB+qWfQtMaPccfe7QXtCcEYc=' 'sha256-kLOQNAVOaBgADiUv3KS/St2g6k1exicli/nlGA4Ku2Y=';default-src 'self' ws: wss: *.googletagmanager.com *.cloud-iam.com *.brittanyferries.io *.google.com *.google.fr *.google.co.uk *.google.es *.contentful.com *.quantummetric.com *.googleadservices.com *.bing.com *.infinity-tracking.net *.infinity-tracking.com *.googleapis.com *.googlesyndication.com *.matomo.cloud *.onetrust.com *.onetrust.io *.sentry.io *.facebook.net *.facebook.com *.sncf-connect.com *.piwik.pro *.mypurecloud.de *.doubleclick.net *.wepowerconnections.com *.sciencebehindecommerce.com *.adsrvr.org *.smartsurvey.co.uk- strict-transport-security
max-age=31536000; includeSubDomains