carandache.com
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Social widgets
-
- Vimeo Embed
Third-party hosts loaded (4)
- connect.nosto.com×1
- player.vimeo.com×1
- plus.google.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- SafeBrands SAS
- Created
- 1998-10-31
- Expires
- 2026-10-30 163 days left
- Updated
- 2025-11-20
- Name servers
-
- cardassian.deckpoint.ch
- narn.deckpoint.ch
- ns01.vtx.ch
- ns02.vtx.ch
DNS records live
- NS
-
- cardassian.deckpoint.ch
- narn.deckpoint.ch
- ns01.vtx.ch
- ns02.vtx.ch
- MX
-
- 10 mail.carandache.com
- TXT
-
Show 13 TXT records
MS=ms63256499sophos-domain-verification=08421ea37c73c487a7e9f3dee59e0b4a1d51332e62f9ec25044647e85a95b0d3apple-domain-verification=Lcl46uFgTzbT5MVLljp3rc6vn4gqlct8wqvxff59xcw90s19dyhz8qklc9hx37178c5253glcp4qk774google-site-verification=bZmoMZdexYLYX-vXDNRbh-z3S0mdAT4689lwwxg6s64autodesk-domain-verification=V8sx7ZRE6wqrt11rQJLGbrevo-code:f4204db1873ee8ba60cde5fe0bffc092facebook-domain-verification=7pfvl4xcg4e0qgj7g6dwj4i66o9grl4fddfcqdsyp66tvl3zv85vby978c1hwj_vrbmsgwledukcz6gqrnmf5nfeiyane8rxvzlgp2kq1rxmvxkvfrt9rcgrvlcj9ncc9ys3fhtbs1gml1sjj47hr9m1pr8tv8
Email authentication strong
- SPF
-
v=spf1 ip4:194.38.177.254 a:smtp.approche-sur-mesure.fr a:smtp5.silae.fr include:spf.protection.outlook.com include:servers.mcsv.net include:spf.solusquare.com include:_spf.salesforce.com include:spf.brevo.com -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;sp=reject;ruf=mailto:dmarc.report@carandache.com;policy: reject (enforced) · sp=reject - DKIM
-
Show 5 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDL90YHi07ArrExpqcxrD/WlwEvdc6K+tx1eJO8JEOGmu5vHWuhH+HLQIHPOLozCkQgOoUesi0tuOEchkLMd0… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0qBOq1V/00uc2RVIdS31hCvVTTTJpJef2nz2WWiqmR5RyOhiRmDMOZZj3FWWoKCkfl+VfQlqx+U2H8… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - mail:
v=DKIM1; h=sha256; k=rsa;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuo+oxA2wbByk/uYSqIS/euOKUJWGl85+2eI2tB/aK0B5LG5dVav5oeerMlcK/KDnKzMvt…
selectors probed - selector1:
Certificate (current)
ZeroSSL RSA Domain Secure Site CA
Expires in 39 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- content-security-policy
default-src * data: blob: filesystem: about: ws: wss: 'unsafe-inline' 'unsafe-eval'; script-src * data: blob: 'unsafe-inline' 'unsafe-eval';frame-src * data: blob: ; style-src * data: blob: 'unsafe-inline'; connect-src * data: blob: 'unsafe-inline';- strict-transport-security
max-age=31536000