espaskincare.com

.com crawl

First seen 2026-05-30 · Last seen 2026-05-31 · ok HTTP/1.1 200 445 ms crawled 2026-05-31

NL · 151.101.37.91 · AS54113 Fastly, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
ESPA | Luxury Spa Products & Natural Wellness Skincare
Description
Discover ESPA products crafted with natural ingredients and pure essential oils. Explore luxury spa products, skincare, bodycare and home fragrance designed to restore balance and wellbeing.
Language
en
Generator
Astro v5.15.8
Canonical
https://www.espaskincare.com/
Translations
  • en ×2

Open Graph

url
https://www.espaskincare.com/
title
ESPA | Luxury Spa Products & Natural Wellness Skincare
site name
ESPA

Technology

CDN
Cloudflare
Analytics
  • Google Tag Manager
Cookie consent
  • OneTrust
Fonts
  • Google Fonts

Third-party hosts loaded (3)

  • cdn.cookielaw.org×2
  • www.googletagmanager.com×2
  • fonts.googleapis.com×1

Social

Registration

Registrar
Key-Systems GmbH
Created
2013-01-31
Expires
2027-01-31 244 days left
Updated
2025-12-31
Name servers
  • dns1.p05.nsone.net
  • dns2.p05.nsone.net
  • dns3.p05.nsone.net
  • dns4.p05.nsone.net
  • ns01.thg-ns.net
  • ns02.thg-ns.net
  • ns03.thg-ns.net
  • ns04.thg-ns.net

DNS records live

NS
  • dns1.p05.nsone.net
  • dns2.p05.nsone.net
  • dns3.p05.nsone.net
  • dns4.p05.nsone.net
  • ns01.thg-ns.net
  • ns02.thg-ns.net
  • ns03.thg-ns.net
  • ns04.thg-ns.net
MX
  • 10 mx0.123-reg.co.uk
  • 20 mx1.123-reg.co.uk
TXT
  • dqltmxlsj9vdnmt4msz4xwksf6hqgky9
  • h1ytfd6mhhhdwrtjc0mvvs0pt9j65wwh
  • fastly-domain-delegation-764852-2024514
Verified for
  • Google

Email authentication strong

SPF
v=spf1 -all
strict (-all)
DMARC
v=DMARC1; p=reject; rua=mailto:aggregate@dmarc.thg.com; ruf=mailto:forensic@dmarc.thg.com; fo=1;
policy: reject (enforced)
DKIM
no key found at common selectors

Certificate (current)

R12
from 2026-04-22 to 2026-07-21
Expires in 50 days

HTTP security headers

Header hygiene 65/100 Checked live page: https://www.espaskincare.com/

present
  • strict-transport-security
  • content-security-policy
findings
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
child-src 'self' https://*.js.stripe.com https://js.stripe.com https://hooks.stripe.com https://app-dev.pogodonate.com https://app.pogodonate.com https://*.ringcentral.com https://apps.rokt.com https://sgtm.espaskincare.com https://www.googletagmanager.com https://*.liveperson.net https://cdn.appdynamics.com https://*.lpsnmedia.net https://www.facebook.com https://connect.facebook.net https://*.google.com https://widget.trustpilot.com https://*.doubleclick.net https://*.akamaihd.net https://*.translate.naver.net https://www.recaptcha.net https://www.google.com https://www.zenaps.com https://tr.snapchat.com https://www.youtube.com https://ln-rules.rewardstyle.com blob: https://ams.creativecdn.com https://*.ringcentral.com https://tags.creativecdn.com/ https://s1.thcdn.com https://www.awin1.com https://d2d7do8qaecbru.cloudfront.net https://smct.co https://*.smct.co https://smct.io https://*.smct.io https://www.pinterest.com https://www.pinterest.co.uk https://ct.pinterest.com https://*.b
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (6)

Linked from (1)