gfiainsurance.org

.org crawl

First seen 2026-04-12 · Last seen 2026-05-19 · ok HTTP/1.1 200 678 ms crawled 2026-05-06

DE · 172.104.228.195 · AS63949 Akamai Connected Cloud

Reputation 100/100

Classifying

HTML metadata

Title
GFIA - Global Federation of Insurance Associations
Description
Global Federation of Insurance Associations
Language
en

Technology

Server
Apache
Analytics
  • Google Tag Manager

Third-party hosts loaded (3)

  • cdnjs.cloudflare.com×2
  • code.jquery.com×1
  • www.googletagmanager.com×1

Social

Registration

Registrar
OVH sas
Created
2012-09-12
Expires
2028-09-12 845 days left
Updated
2025-09-06
Name servers
  • dns102.ovh.net
  • ns102.ovh.net

DNS records live

NS
  • dns102.ovh.net
  • ns102.ovh.net
MX
  • 0 gfiainsurance-org.mail.protection.outlook.com
Verified for
  • Microsoft 365

Email authentication strong

SPF
v=spf1 mx a:mail.gfiainsurance.org ip4:212.35.106.132 ip4:212.35.106.138 ip4:212.35.106.134 ip4:91.121.19.63 ip4:159.65.205.55 include:spf.emailsignatures365.com include:spf.protection.outlook.com include:amazonses.com ~all
softfail (~all)
DMARC
v=DMARC1; p=quarantine; rua=mailto:dmarc@insuranceeurope.eu; ruf=mailto:dmarc@insuranceeurope.eu; fo=1;
policy: quarantine
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAr0nz36l054AhT+Es3CE8Zy0zoVt6c2FoR+HiYsf8j/Gc37nMYcoZTN+sVKiuqLmGvV/1xLBhv/ss2W…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApd77VrELLyrHrAMnP3swSfAX2k0ZBwZ4M1KZ8smXN1dNCXl0ZDWK6x1iAo7LgUSE9Xp5Hweet9r6ji…
selectors probed

Certificate (current)

Sectigo Public Server Authentication CA DV R36
from 2026-01-15 to 2027-01-16
Expires in 240 days

HTTP security headers

Header hygiene 75/100 Checked live page: https://gfiainsurance.org/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • weak frame protection
  • weak content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN, SAMEORIGIN
x-content-type-options
nosniff, nosniff
content-security-policy
default-src 'self'; connect-src 'self' https://region1.google-analytics.com https://www.google-analytics.com www.google.com region1.google-analytics.com https://www.google.com https://www.gstatic.com https://www.recaptcha.net; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.youtube.com https://www.gstatic.com https://player.vimeo.com https://vjs.zencdn.net https://use.fontawesome.com https://cdnjs.cloudflare.com https://code.jquery.com https://www.googletagmanager.com https://www.google.com https://www.recaptcha.net; style-src 'self' 'unsafe-inline' https://www.youtube.com https://player.vimeo.com https://fonts.googleapis.com https://vjs.zencdn.net https://use.fontawesome.com https://cdnjs.cloudflare.com; img-src 'self' data: https://www.gstatic.com https://www.google.com; frame-src https://www.google.com https://recaptcha.google.com https://www.recaptcha.net https://www.youtube.com https://youtu.be https://player.vimeo.com; font-src 'self' https://fonts.gstatic.com data: h
strict-transport-security
max-age=63072000; includeSubDomains; preload, max-age=63072000; includeSubDomains; preload

Links to (3)

Linked from (2)