idf-thermic.com

.com crawl

First seen 2026-04-11 · Last seen 2026-05-19 · ok HTTP/1.1 200 1342 ms crawled 2026-05-19

NL · 20.71.80.38 · AS8075 Microsoft Corporation

Reputation 100/100

Classifying

HTML metadata

Title
Homepage - IDF Thermic
Language
fr-FR
Canonical
https://www.idf-thermic.com/

Open Graph

url
https://www.idf-thermic.com/
title
Homepage - IDF Thermic
locale
fr_FR
site name
IDF Thermic

Technology

CMS
WordPress

Registration

Registrar
Nameshield SAS
Created
2011-09-21
Expires
2026-09-21 124 days left
Updated
2025-09-19
Name servers
  • ns0.infravesi.com
  • ns1.infravesi.com
  • nsa.perf1.fr
  • nsb.perf1.com
  • nsc.perf1.com

DNS records live

NS
  • ns0.infravesi.com
  • ns1.infravesi.com
  • nsa.perf1.fr
  • nsb.perf1.com
  • nsc.perf1.com
MX
  • 0 idfthermic-com0i.mail.protection.outlook.com
TXT
  • docusign=20fbd1af-2e7d-4146-af0d-9a1a13af4e9b
  • MS=ms17180011
  • l%ZuOIe6hyq9Dj^LdO3jWN5zkNY6W6^IyZ4UW@@R#zwgKEunp2pgC5V7K*YM88h4v7Z^A9oKOAyj^C6i0Tccj6FHaW^9ME!NYau

Email authentication strong

SPF
v=spf1 include:spf.protection.outlook.com include:spf.protection.vinci-energies.com -all
strict (-all)
DMARC
v=DMARC1; p=reject; rua=mailto:dmarc@vinci-energies.com; pct=100; sp=reject
policy: reject (enforced) · sp=reject
DKIM
  • selector2: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPxGoKAnBp8ERd1JA7NmX+wiO0nxWxf/Fm9wkvHRfoV3nFj2YOwqH/ZrSFW4DaHf2040a5HbkN09L2qq9qvr…
selectors probed

Certificate (current)

R12
from 2026-03-26 to 2026-06-24
Expires in 35 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.idf-thermic.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • missing Permissions Policy
Header values
referrer-policy
no-referrer-when-downgrade
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src https:;font-src 'unsafe-inline' https: data:;child-src https: blob:;connect-src https:;script-src 'unsafe-inline' 'unsafe-eval' 'self' https:;object-src 'none';base-uri 'none';style-src 'unsafe-inline' https: data:;img-src https: data:;, default-src https:; font-src 'unsafe-inline' https: data:; child-src https: blob:; connect-src https: blob:; worker-src https: blob:; script-src 'unsafe-eval' 'unsafe-inline' 'self' https:; object-src; base-uri 'none'; style-src 'unsafe-inline' https: data:; img-src https: data:;
strict-transport-security
max-age=15552001; includeSubDomains;

Links to (2)

Linked from (6)