cristalhygiene.com

.com user

First seen 2026-05-20 · Last seen 2026-05-20 · ok HTTP/1.1 200 4050 ms crawled 2026-05-20

US · 80.93.202.254 · AS209242 Cloudflare London, LLC

Reputation 100/100

sector other type parked

Technology

CDN
Cloudflare

Registration

Registrar
OVH sas
Created
2020-10-02
Expires
2026-10-02 134 days left
Updated
2025-10-03
Name servers
  • dns112.ovh.net
  • ns112.ovh.net

DNS records live

NS
  • dns112.ovh.net
  • ns112.ovh.net
MX
  • 1 antispam.tini.digital
  • 5 antispam.tini.digital
TXT
  • 1|www.cristalhygiene.com
  • tex9TPnxb+5Sp6T0W1l447PcLHU=
Verified for
  • Brevo
  • Google
  • Microsoft 365

Email authentication strong

SPF
v=spf1 a:antispam.tini.digital ip4:178.33.250.56 ip4:46.105.60.232 ip4:83.206.243.25 include:spf.mailjet.com include:spf.sendinblue.com ~all
softfail (~all)
DMARC
v=DMARC1; p=quarantine; rua=mailto:postmaster@cristalhygiene.com; ruf=mailto:postmaster@cristalhygiene.com
policy: quarantine
DKIM
  • mail: k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtDLgEncx/ZVCo4RUqo0MrdH+U+hGC4c63M8epk29NOV4wc5qOtDd2dFpSw/m6sJqL2TjTtmayQGOohre/P…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDI0hPgGMNgsNZ8bC47Gzxx2MBDsN0mmzO4UIBvmf3ZNR0O8hEiEH4ZmpUIDOuyfYD3xA/79xgYTqNbSCm1/VVsZA…
selectors probed

Certificate (current)

Cloudflare TLS Issuing ECC CA 1
from 2026-04-02 to 2026-10-18
Expires in 151 days

HTTP security headers

Header hygiene 75/100 Checked live page: https://www.cristalhygiene.com/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-content-type-options
nosniff
content-security-policy
connect-src https: 'self'; img-src 'self' data: https://*; default-src blob: https: 'unsafe-inline' 'unsafe-eval'
strict-transport-security
max-age=15552000; includeSubDomains; preload