globalia.com

.com crawl

First seen 2026-05-10 · Last seen 2026-05-10 · ok HTTP/1.1 200 1334 ms crawled 2026-05-16

US · 216.150.1.1 · AS16509 Amazon.com, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Globalia — Grupo Turístico Líder en Aviación, Hoteles y Servicios Aeroportuarios
Description
Globalia Corporación Empresarial: grupo turístico español líder en aviación (Air Europa), handling aeroportuario (Groundforce), hoteles y servicios. Presencia en más de 30 países.
Language
es
Canonical
https://www.globalia.com/

Open Graph

url
https://www.globalia.com/
title
Globalia — Grupo Turístico Líder en Aviación, Hoteles y Servicios Aeroportuarios
locale
es_ES
site name
Globalia Corporación Empresarial
description
Grupo turístico español líder en aviación, handling aeroportuario, hoteles y servicios. Presencia en más de 30 países.

Technology

CDN
Vercel

Third-party hosts loaded (1)

  • bxwkkkupzggeqiamggzj.supabase.co×2

Contact

Address
C/ Músico Isaac Albéniz, 2, 07600, Llucmajor, Islas Baleares, ES

Registration

Registrar
Interdominios, Inc.
Created
1997-11-18
Expires
2026-11-17 180 days left
Updated
2025-11-03
Name servers
  • ns-102.awsdns-12.com
  • ns-1056.awsdns-04.org
  • ns-1676.awsdns-17.co.uk
  • ns-565.awsdns-06.net

DNS records live

NS
  • ns-102.awsdns-12.com
  • ns-1056.awsdns-04.org
  • ns-1676.awsdns-17.co.uk
  • ns-565.awsdns-06.net
MX
  • 10 mxa-004e6601.gslb.pphosted.com
  • 10 mxb-004e6601.gslb.pphosted.com
TXT
Show 6 TXT records
  • zone-ownership-verification-58cb5d39575d89d9fad11ec11e9d2b077a92a8fba1c25d6a6203465fd06ad06b
  • DirectFedAuthUrl=https://iam.skyteam.com/app/skyteamiam_entraidtest_1/exk8xe3lgjjqM6UY50x7/sso/saml
  • DirectFedAuthUrl=https://sso.skyteam.com/app/lams_entraidauthentication_1/exki1nw5b7Ankn4wZ417/sso/saml
  • Foxit-domain-verification=527b28e53050ba25b10f9d0789bf74c8
  • amazonses:STgAzRcv4ShUMA+Hj5HAkVrzdWh/h6ef6hRCS8DkHcY=
  • es4ERBuaoHu2G5CsmN/5xr6XeZgb2f80wt0d8myJ0XJR1aykOPqdDxXaqXxNXNtuJz0i0tJdxdD8kVyrsWbCtg==
Verified for
  • Apple
  • Atlassian
  • Dynatrace
  • Figma
  • Google
  • Microsoft 365

Email authentication strong

SPF
v=spf1 mx a ip4:91.240.56.0/22 ip4:82.150.225.79/32 ip4:142.0.186.233/32 ip4:149.72.193.246 include:amazonses.com include:spf.protection.outlook.com include:spf-004e6601.pphosted.com -all
strict (-all)
DMARC
v=DMARC1; p=reject; sp=reject; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.com
policy: reject (enforced) · sp=reject
DKIM
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArNyCeyvgvvM9QzTevbIy9ha71n/dDWAMtVpzuZWhyIZk/vfwZnQenGEf5x92TKEPChL8/9l9BMz4oadxhE…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCcYb/1WqD+89i+FhQYkrFmKOMJZVv7vci8J3ZMQp8NByETtlx1gCcv6piOxIPsAVUI8oegdIYFW2xlu2z7bB73KN…
selectors probed

Certificate (current)

R13
from 2026-04-01 to 2026-06-30
Expires in 40 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.globalia.com/

present
  • strict-transport-security
  • content-security-policy
  • content-security-policy-report-only
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-opener-policy
  • cross-origin-resource-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
DENY
permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=(self), battery=(), camera=(), display-capture=(), document-domain=(), encrypted-media=(), execution-while-not-rendered=(), execution-while-out-of-viewport=(), fullscreen=(self), geolocation=(), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), navigation-override=(), payment=(), picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(self), usb=(), web-share=(self), xr-spatial-tracking=(), interest-cohort=(), browsing-topics=()
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' https://www.googletagmanager.com https://va.vercel-scripts.com https://*.vercel-insights.com; style-src 'self' 'unsafe-inline'; style-src-elem 'self' 'unsafe-inline'; img-src 'self' data: blob: https:; font-src 'self' data:; connect-src 'self' https://*.supabase.co wss://*.supabase.co https://*.google-analytics.com https://*.analytics.google.com https://stats.g.doubleclick.net https://*.vercel-insights.com https://vitals.vercel-insights.com; media-src 'self' blob:; worker-src 'self' blob:; manifest-src 'self'; frame-src 'none'; frame-ancestors 'none'; base-uri 'self'; form-action 'self'; object-src 'none'; upgrade-insecure-requests
strict-transport-security
max-age=63072000; includeSubDomains; preload
cross-origin-opener-policy
same-origin
cross-origin-resource-policy
same-site
content-security-policy-report-only
default-src 'self'; script-src 'self' https://www.googletagmanager.com https://va.vercel-scripts.com https://*.vercel-insights.com; style-src 'self'; img-src 'self' data: blob: https:; font-src 'self' data:; connect-src 'self' https://*.supabase.co wss://*.supabase.co https://*.google-analytics.com https://*.analytics.google.com https://stats.g.doubleclick.net https://*.vercel-insights.com; media-src 'self' blob:; worker-src 'self' blob:; manifest-src 'self'; frame-src 'none'; frame-ancestors 'none'; base-uri 'self'; form-action 'self'; object-src 'none'; report-uri https://bxwkkkupzggeqiamggzj.supabase.co/functions/v1/csp-report; report-to csp-endpoint

Linked from (1)