dedietrich-thermique.fr
HTML metadata
Technology
- CDN
- Vercel
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
Third-party hosts loaded (4)
- edge.sitecorecloud.io×10
- cdn.cookielaw.org×1
- edge-platform.sitecorecloud.io×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- SAFENAMES LTD
- Created
- 2006-09-28
- Expires
- 2026-09-28 129 days left
- Updated
- 2025-01-15
- Name servers
-
- dns1.safenames.com
- dns2.safenames.net
- dns3.safenames.org
DNS records live
- NS
-
- dns1.safenames.com
- dns2.safenames.net
- dns3.safenames.org
- MX
-
Show 7 MX records
- 10 aspmx.l.google.com
- 20 alt1.aspmx.l.google.com
- 20 alt2.aspmx.l.google.com
- 40 aspmx2.googlemail.com
- 40 aspmx3.googlemail.com
- 40 aspmx4.googlemail.com
- 40 aspmx5.googlemail.com
- TXT
-
Show 5 TXT records
rovag_verification_token=AA196AB952E742B79C25CB67980246F8_6sbmoira9v2h9hsh5mgmeposc33edev3vgr8nnss1l4f3wfnnj7jd7ncr0dswlkv=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com ip4:212.95.71.137 ~all_hs7sveugis3oh2kmde9lgjycwwo4v3y
- Verified for
-
- Dynamics 365
Certificate (current)
R13
Expires in 33 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
unsafe-url- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://cdn.cookielaw.org https://privacyportalde-cdn.onetrust.com https://*.youtube.com https://api-engage-eu.sitecorecloud.io https://edge.sitecorecloud.io https://ka-p.fontawesome.com https://kit.fontawesome.com https://xmc-bdrthermea1-platform-production.sitecorecloud.io/ https://*.googletagmanager.com https://*.google-analytics.com https://*.analytics.google.com https://*.g.doubleclick.net https://*.google.com https://snap.licdn.com/li.lms-analytics/insight.min.js https://static-ssl.responsetap.com/static/scripts/rTapTrack.min.js bdr-prd-platform-dedietrichfr-78dun1z95-bdr-thermea-group.vercel.app; script-src 'self' 'unsafe-inline' 'unsafe-eval' bdr-prd-platform-dedietrichfr-78dun1z95-bdr-thermea-group.vercel.app https://cdn.cookielaw.org https://privacyportalde-cdn.onetrust.com https://api-engage-eu.sitecorecloud.io https://*.googletagmanager.com https://*.google-analytics.com https://kit.fontawesome.com https://*.youtube.com https://vitals.vercel-insights.com- strict-transport-security
max-age=63072000; includeSubDomains; preload;