cosucra.com

.com crawl

First seen 2026-04-21 · Last seen 2026-05-15 · ok HTTP/1.1 200 3586 ms crawled 2026-05-15

US · 162.159.134.42 · AS13335 Cloudflare, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Cosucra
Language
en-GB
Canonical
https://www.cosucra.com/

Open Graph

url
https://www.cosucra.com/
title
Cosucra
locale
en_GB
site name
Cosucra

Technology

CDN
Cloudflare
CMS
WordPress
Analytics
  • Google Tag Manager

Third-party hosts loaded (1)

  • www.googletagmanager.com×1

Social

Registration

Registrar
Gandi SAS
Created
1997-06-23
Expires
2026-06-22 34 days left
Updated
2025-06-02
Name servers
  • ns-124-c.gandi.net
  • ns-156-b.gandi.net
  • ns-192-a.gandi.net

DNS records live

NS
  • ns-124-c.gandi.net
  • ns-156-b.gandi.net
  • ns-192-a.gandi.net
MX
  • 10 cosucra-com-1.fortimailcloud.com
  • 20 cosucra-com-2.fortimailcloud.com
TXT
Show 9 TXT records
  • bb1q1v7aeetsgn3m0c5sjf2mbe
  • MS=ms45253702
  • Kq27zM7PoC4pPNnno6K25H2N8Azs6zsMkTIy/a4abXzpJC0YFKYxhi7fa2HoD4woVetpjpRhdoG2sMPC3zzSzA==
  • d365mktkey=tGawH0GfjH9eirgtf6Y15BOaaYjkaF7rU7JPXFkfOQcx
  • 1h64lflmsrdg4k4bf5926mudgf
  • ca3-7506b1c26d70443994d310d6c73abf69
  • msfpkey=2z7ra08cpt9ox2i9uvq7oa6xx
  • b5f1m30b9o01j3rg2vs38p69me
  • hnnnl51io8vi2buhvj1h19j45u

Email authentication strong

SPF
v=spf1 a:smtp.cosucra.com include:spf.protection.outlook.com include:spf.mandrillapp.com include:_spf.fortimailcloud.com -all
strict (-all)
DMARC
v=DMARC1; p=reject; rua=mailto:dmarc@cosucra.com; ruf=mailto:dmarcruf@cosucra.com;
policy: reject (enforced)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDntB0uENO6KJ554/emgV+CV5KPk2rqGaIN91y1t59mJ2gPrkrqRy3Cv6SHojp/O7SoF9msC3u1F8wKrMGG+B…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApcDv/OA3B4wYN2y04QI/7VDttM+5XSnfqZkRuC+U2AAzWICOrrRKpFnT9oUlPptkCzxAA3fDyGnJWq…
selectors probed

Certificate (current)

WE1
from 2026-05-05 to 2026-08-03
Expires in 76 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.cosucra.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.google.com https://translate.google.com https://www.gstatic.com *.googletagmanager.com *.gravatar.com unpkg.com google.com *.gtranslate.net *.axept.io *.cloudflare.com; style-src 'self' 'unsafe-inline' 'unsafe-eval' *.googleapis.com unpkg.com; img-src 'self' *.gtranslate.net *.openstreetmap.org https://axeptio.imgix.net https://secure.gravatar.com https://www.googletagmanager.com data:; font-src 'self' *.googleapis.com *.gstatic.com data:; connect-src 'self' https://client.axept.io https://api.axept.io https://*.google-analytics.com; frame-src 'self' *.youtube.com *.vimeo.com *.spotify.com *.dailymotion.com *.snipcart.com https://www.google.com/ *.cloudflare.com;
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (5)

Linked from (1)