groupevulcain.fr
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Ads
-
- Meta Pixel
- Cookie consent
-
- Iubenda
- Fonts
-
- Google Fonts
Third-party hosts loaded (14)
- cdnwp.dealerk.com×63
- webspark-assets.dealerk.com×30
- cdn.iubenda.com×4
- cdn.dealerk.fr×3
- fonts.googleapis.com×3
- bam.nr-data.net×2
- cdn.dealerk.it×2
- connect.facebook.net×2
- fonts.gstatic.com×2
- js-agent.newrelic.com×2
- maps.googleapis.com×2
- www.facebook.com×2
- gmpg.org×1
- livechat.ekonsilio.io×1
Contact
- Phone
- Address
- Lyon, Saint-Etienne, Annecy, Grenoble, Roanne, FR
Registration
- Registrar
- OVH
- Created
- 2011-12-20
- Expires
- 2026-12-20 213 days left
- Updated
- 2026-01-31
- Name servers
-
- dns20.ovh.net
- ns20.ovh.net
DNS records live
- NS
-
- dns20.ovh.net
- ns20.ovh.net
- MX
-
- 10 vade-mx-fr01.hornetsecurity.com
- 10 vade-mx-fr02.hornetsecurity.com
- 20 vade-mx-eu-fallback01.hornetsecurity.com
- 20 vade-mx-eu-fallback02.hornetsecurity.com
- TXT
-
1|www.groupevulcain.fr
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 mx include:spf.protection.outlook.com include:spf.hostedexchange2010.fr include:spf.mailjet.com include:eskerondemand.com include:_spf.smtp.mailtrap.live ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@smtp.mailtrap.live; ruf=mailto:dmarc@smtp.mailtrap.live; rf=afrf; pct=100policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvK7q9hJHnkfRrJwr7Y8gJpE+98zhxBXBSxvRAtwzZGI21yMxPbhK2Q2wrlL7uM8+05EkyiHCqFiAKg…
selectors probed - selector1:
Certificate (current)
R12
Expires in 60 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- permissions-policy
magnetometer=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' *.dealerk.com *.motork.io *.drivek.com *.drivek.fr *.drivek.de *.drivek.it *.drivek.es *.drivek.co.uk *.dealerk.fr *.dealerk.de *.dealerk.it *.dealerk.es *.dealerk.co.uk *.jsdelivr.net *.vimeo.com data: blob: *.googletagmanager.com *.iubenda.com *.facebook.net *.facebook.com *.doubleclick.net *.google-analytics.com *.google.com *.googleadservices.com *.googleoptimize.com *.googlesyndication.com *.googleapis.com *.gstatic.com *.google.it *.google.es *.google.be *.google.fr *.google.nl *.google.de *.google.pt *.google.co.ma *.google.co.uk *.google.cat *.nr-data.net *.unpkg.com *.newrelic.com *.youtube.com *.emlsend.com *.acumbamail.com *.linkedin.com *.oribi.io *.snapchat.com *.tapad.com *.sc-static.net *.tiktok.com *.twitter.com *.privacy-center.org *.matomo.cloud *.ekonsilio.io *.ekonsilio.com wss://livechat.ws.ekonsilio.io *.wisepops.net *.wisepops.com *.hotjar.com *.teads.tv *.greenbureau.com *.vivavi.fr *.bdk-bank.io *.bnpparibas-pf.c- strict-transport-security
max-age=31536000; includeSubdomains;