bureauveritas.ch
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- nginx
- CMS
- Drupal
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- pdns1.cscdns.net
- pdns2.cscdns.net
- TXT
-
pardot591681=1875694c9e26a650c471e17c9d9e7b4b7369283a69e46adf34474082290eac45pardot591681=2f444241e5d97301fac2445a452554c1337297562db755037f6aad449b0affe4
Email authentication no MX
- SPF
-
v=spf1 -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; fo=1; adkim=s; aspf=s; rua=mailto:dmarc_rua@emaildefense.proofpoint.com,mailto:dmarc-reports@bureauveritas.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.com,mailto:dmarc-reports@bureauveritas.compolicy: reject (enforced) - DKIM
-
Show 12 DKIM selectors
- default:
v=DKIM1; p= - google:
v=DKIM1; p= - selector1:
v=DKIM1; p= - selector2:
v=DKIM1; p= - k1:
v=DKIM1; p= - k2:
v=DKIM1; p= - mail:
v=DKIM1; p= - dkim:
v=DKIM1; p= - s1:
v=DKIM1; p= - s2:
v=DKIM1; p= - mxvault:
v=DKIM1; p= - smtpapi:
v=DKIM1; p=
selectors probed - default:
Certificate (current)
Amazon RSA 2048 M01
Expires in 223 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://*.bureauveritas.ch; script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: *.google-analytics.com *.googletagmanager.com https://cdnjs.cloudflare.com/ajax/libs/codemirror/ https://cdnjs.cloudflare.com/ajax/libs/select2/ https://cdn.rawgit.com/ckeditor/ckeditor-dev/ https://cdn.rawgit.com/w8tcha/CKEditor-CodeMirror-Plugin/ *.twitter.com *.twitter.co *.twimg.com https://cdn.rawgit.com/ractoon/jQuery-Text-Counter/ https://js-agent.newrelic.com/ https://bam.nr-data.net/ tagmanager.google.com https://cdn.jsdelivr.net/gh/w8tcha/ https://cdn.jsdelivr.net/gh/cferdinandi/tabby@12.0.3/ https://unpkg.com/tippy.js@6.2.6/ https://cdn.jsdelivr.net/gh/jackocnr/ https://unpkg.com/@popperjs/ https://js-agent.newrelic.com https://www.recaptcha.net/recaptcha/api.js www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/api.js https://*.privacy-center.org/ https://www.youtube.com/ https://*.matomo.cloud https://*.bureauveritas.ch; object-src 'self'; style-src 'self' 'unsafe-- strict-transport-security
max-age=31536000; includeSubDomains