marc-o-polo.com

.com crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 869 ms crawled 2026-05-18

AU · 103.107.226.226 · AS136133 SQUIXA PTY LIMITED

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Marc O'Polo Online Shop - Latest Fashion & Accessoires | MARC O’POLO
Description
Latest fashion, shoes & accessories for women, men & children in our Marc O'Polo online shop. » Large selection » Secure payment » Quick delivery
Language
en

Technology

CDN
Amazon CloudFront
Server
CloudFront

Third-party hosts loaded (3)

  • b2c-shop-production-dngdd3ead7b5f3an.z01.azurefd.net×17
  • a.storyblok.com×3
  • api.europe-west1.gcp.commercetools.com×1

Registration

Registrar
Key-Systems GmbH
Created
1999-05-11
Expires
2028-05-11 721 days left
Updated
2026-05-13
Name servers
  • ns1.netnames.net
  • ns2.netnames.net
  • ns5.netnames.net
  • ns6.netnames.net

DNS records live

NS
  • ns1.netnames.net
  • ns2.netnames.net
  • ns5.netnames.net
  • ns6.netnames.net
MX
  • 10 marcopolo-com01f.mail.protection.outlook.com
TXT
Show 4 TXT records
  • 00ljewzEe5I0Iu5duw/VChe6ATb9TdiOcbUfsbfWpqyN0YkJSMMb1zvremHkE7hFvKgJg1XL8IQ4Szzr7RWDTg==
  • L6BnIZ4CZ0ZPiOyKpk9iwvQAPulf7n90qtGmYBurVg8dKObQRVsRsksNaAEEnlPKVNkmdSW42PslKij3XMlTxQ==
  • jamf-site-verification=TpMK0rPxaV5EB7MHv6Nl8Q
  • amazonses:gsrJSXEcYxdiODshUJd9l0c6A4FV6MHV60ijFNZaDac=
Verified for
  • Adobe
  • Apple
  • Atlassian
  • Cisco
  • Google
  • Meta
  • Microsoft 365
  • Miro

Email authentication partial

SPF
v=spf1 a:shops.wiethe.com a:smtp.servicemail24.de ip4:92.51.0.0/16 ip4:84.17.190.192/26 ip4:62.154.241.10/32 ip4:37.156.87.51/32 ip4:54.240.55.0/24 include:spf.protection.outlook.com include:_spf.profils.org -all
strict (-all)
DMARC
v=DMARC1; p=none;
policy: none (monitoring only)
DKIM
Show 4 DKIM selectors
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCPMtHJ4MJeI9Kdznr3XB7+FYmWW166H00rqHOXUvoVPV9OG5g3F0gI/pGIv7SWawojlQXttPxiaU/VDbMvBt…
  • selector2: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC3+V8VuYkHZTk80RUuTviPk9RN/BdsMFJoFrJD5IfyC7BpAIlx3DZK3HUB+028Uefws3eaCh0Gl7jRAB022e…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuVSQY+wFcguc0jGRNxMIDvr9tWpeyGuG87msfsDv1SJ2vfbi1AHBh8bAO51fkGHSjBftWjelzGxyQ9BOLw…
  • s2: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA8dZ94PtVuqiNPo6Yynp34mk0dpSb36KR3FUY4LJUewO8P2SGPSouvn0DI8/thtg7lYHc7s/TirOkYfRofR…
selectors probed

Certificate (current)

R13
from 2026-04-25 to 2026-07-24
Expires in 65 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.marc-o-polo.com/en-fi

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin
x-frame-options
SAMEORIGIN
permissions-policy
geolocation=(self), microphone=(), camera=(self "https://vto-advanced.fittingbox.com"), payment=*, usb=(), magnetometer=(), gyroscope=(), accelerometer=(), ambient-light-sensor=(), autoplay=(self), encrypted-media=(self), fullscreen=(self), picture-in-picture=(self)
x-content-type-options
nosniff
content-security-policy
default-src 'self' https://*.marc-o-polo.com https://*.z01.azurefd.net; style-src 'self' 'unsafe-inline' https://*.sevensenders.com https://*.googleapis.com https://*.googletagmanager.com https://*.vimeo.com https://*.azureedge.net https://*.z01.azurefd.net https://*.abtasty.com https://*.bglobale.com https://*.global-e.com https://*.oppwa.com https://oppwa.com https://*.adyen.com https://*.marc-o-polo.com https://*.sevensenders.com https://*.storyblok.com https://*.parcellab.com https://saiz-recommender-staging.com https://saiz-recommender.com https://cdn.saiz-recommender-staging.com https://cdn.saiz-recommender.com https://saiz-extension.netlify.app https://saiz-extensions.com https://*.saiz-extensions.com https://staging-saiz-extensions.com https://*.staging-saiz-extensions.com https://transfer-saizone-ui-stage.s3.eu-central-1.amazonaws.com https://*.arvato-scs.digital https://*.taboola.com https://*.usercentrics.eu https://*.realperson.cloud https://*.bloomreach.com https://*.mouse
strict-transport-security
max-age=63072000; includeSubdomains; preload

Linked from (5)