duravit.es
HTML metadata
Technology
- CDN
- Akamai
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (25)
- wgassets.duravit.cloud×22
- la.duravit.com×11
- www.duravit.com×6
- www.duravit.ch×3
- www.duravit.be×2
- app.usercentrics.eu×1
- privacy-proxy.usercentrics.eu×1
- tn.duravit.com×1
- www.duravit.cn×1
- www.duravit.co.il×1
- www.duravit.co.jp×1
- www.duravit.com.eg×1
- www.duravit.com.tr×1
- www.duravit.cz×1
- www.duravit.dk×1
- www.duravit.fr×1
- www.duravit.hu×1
- www.duravit.in×1
- www.duravit.it×1
- www.duravit.nl×1
- www.duravit.no×1
- www.duravit.pl×1
- www.duravit.se×1
- www.duravit.vn×1
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- a1-36.akam.net
- a13-66.akam.net
- a14-64.akam.net
- a26-67.akam.net
- a3-67.akam.net
- a4-67.akam.net
- MX
-
- 10 mail1.duravit.de
- 20 mail2.duravit.de
- TXT
-
Show 6 TXT records
_tyypcj54cko50dffww3n2f14pnyab7nbwnv342h7yvxqc18s3wvdjd2nhflzm7sfacebook-domain-verification=8dmrezegmx4qvi89zns3n2w829nao5_a6y6dybni2u19tlw5dbwkxkkh176z97MS=ms35798158_telesec-domain-validation=354178_2025-10-20_2WCS3xHdjtbwKb5mc2JDlOW3utPxUal3IjiD4cdAnkLXlCRPqT
Email authentication strong
- SPF
-
v=spf1 -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:5yconsqp@ag.eu.dmarcadvisor.compolicy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
DigiCert Global G3 TLS ECC SHA384 2020 CA1
Expires in 137 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self' https://duravit.e-spirit.hosting https://www.duravit.com https://duravit.com https://dna.duravit.com https://staffbase.com capacitor://duravit.com capacitor://staffbase.com localhost:*; block-all-mixed-content; script-src 'self' 'report-sample' 'unsafe-inline' 'unsafe-eval' https://wgassets.duravit.com https://duravit.e-spirit.hosting https://*.clic2buy.com https://*.ugc.bazaarvoice.com https://*.googletagservices.com https://*.googletagmanager.com https://*.googlesyndication.com https://*.googleadservices.com https://*.google-analytics.com https://*.googleapis.com https://*.doubleclick.net https://*.google.com https://*.iesnare.com https://www.gstatic.com https://*.bazaarvoice.com https://*.usercentrics.eu https://*.facebook.net https://*.facebook.com https://*.linkedin.com https://*.akamaihd.net https://*.twitter.com https://*.mailerlite.com https://f.vimeocdn.com https://bs.serving-sys.com https://googleads.g.doubleclick.net http- strict-transport-security
max-age=31536000