handybag.fr
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- s7g10.scene7.com×5
- www.googletagmanager.com×1
Social
Registration
- Registrar
- KEY-SYSTEMS GmbH
- Created
- 2007-11-07
- Expires
- 2026-09-30 133 days left
- Updated
- 2025-11-23
- Name servers
-
- anna.ns.cloudflare.com
- elmo.ns.cloudflare.com
DNS records live
- NS
-
- anna.ns.cloudflare.com
- elmo.ns.cloudflare.com
- MX
-
- 10 mx14a.antispameurope.com
- 20 mx14b.antispameurope.com
- 30 mx14c.antispameurope.com
- 40 mx14d.antispameurope.com
- TXT
-
google-site-verification=3d0ECXbSoxIfr-UHlM5Mh1Ycain-3OMlmWkz7O9GOYE
Email authentication strong
- SPF
-
v=spf1 include:spf.hornetsecurity.com include:mx.ovh.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; pct=100; rua=mailto:dmarc-reports@melitta-group.com; ruf=mailto:dmarc-reports@melitta-group.com; fo=0policy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
WE1
Expires in 53 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; style-src 'self' 'unsafe-inline' fonts.googleapis.com *.onetrust.com *.melitta-globe.web.app *.recruitee.com *.adobedtm.com *.scene7.com *.googletagmanager.com *.consentmanager.net cdn.consentmanager.net *.melitta.de; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.google-analytics.com *.googletagmanager.com consent.cookiebot.com *.googleapis.com code.jquery.com maxcdn.bootstrapcdn.com *.cookielaw.org *.melitta-globe.web.app *.recruitee.com *.adobedtm.com *.onetrust.com challenges.cloudflare.com *.delivery.consentmanager.net *.consentmanager.net cdn.consentmanager.net *.redditstatic.com redditstatic.com str.melitta-group.com *.scene7.com *.melitta.de *.mikmak.ai *.swaven.com https://dev.visualwebsiteoptimizer.com https://*.vwo.com; img-src 'self' *.google-analytics.com *.cookielaw.org *.delivery.consentmanager.net cdn.consentmanager.net redditstatic.com data: maps.gstatic.com *.googleapis.com *.ggpht.com *.scene7.com *.googletagmanager.com *.youtube.com *.melitta.- strict-transport-security
max-age=31557600