netatmo.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- CloudFront
- CMS
- Nuxt
Third-party hosts loaded (1)
- nawebstaticprod.azureedge.net×1
Social
Registration
- Registrar
- EuroDNS S.A.
- Created
- 2011-04-28
- Expires
- 2027-04-28 344 days left
- Updated
- 2026-04-22
- Name servers
-
- ns1-09.azure-dns.com
- ns2-09.azure-dns.net
- ns3-09.azure-dns.org
- ns4-09.azure-dns.info
DNS records live
- NS
-
- ns1-09.azure-dns.com
- ns2-09.azure-dns.net
- ns3-09.azure-dns.org
- ns4-09.azure-dns.info
- MX
-
- 10 netatmo-com.mail.protection.outlook.com
- TXT
-
Show 8 TXT records
mongodb-site-verification=ZEHJFjZ2IZOHPOScGMUuL5NpzAob3NrnMS=ms83753940r2spv80a4gn7aa6d760ka3m8shatlassian-domain-verification=hI7wkcNfPjDFn2+Mv6ZS7tShRb0945uiWpyTI15jAFOs79MNm0R0sJOx0ZxXCytQgoogle-site-verification=XJ3em8azN0oNeoZIq05Kr_X66L_XFB9W3puRmCRImYIgoogle-site-verification=MAdAuqilbgkVCEdH1GfjftRT4WoPQRVWk5b_gA_4rrMfacebook-domain-verification=k4hnp44198zms2oz5dqmj07siyu567adobe-sign-verification=41729ee2799ca7dc12e53e20511ad252
Email authentication strong
- SPF
-
v=spf1 include:spf.grpleg.com include:spf.protection.outlook.com include:servers.mcsv.net include:mail.zendesk.com include:spf.mailjet.com include:bnc3.netatmo.com -allstrict (-all) - DMARC
-
v=DMARC1;p=quarantine;adkim=r;aspf=r;rua=mailto:dmarc@netatmo.com;fo=1;rf=afrf;ruf=mailto:dmarc@netatmo.compolicy: quarantine - DKIM
-
- selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCvOckzcX8IoynQDlXSvjIzr78tOgqTYYdV/eBTUpCpxd0xytmEA1FnV+JvGzyrwSCWSlRntH3tFyI54bC3b7… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed - selector2:
Certificate (current)
Amazon RSA 2048 M04
Expires in 73 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-embedder-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
no-referrer- permissions-policy
camera=(), display-capture=(), fullscreen=(), geolocation=(self), microphone=()- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; font-src 'self' https://fonts.gstatic.com https://nawebstaticprod.azureedge.net https://fonts.axept.io; form-action 'self' https://*.facebook.com/tr; frame-ancestors 'self' *.netatmo.com https://pay.google.com; img-src 'self' https://widget.mondialrelay.com https://*.tile.openstreetmap.org data: https://www.mondialrelay.com https://*.googletagmanager.com https://*.googlesyndication.com https://*.bing.com https://*.bing.net https://axeptio.imgix.net https://*.facebook.com https://*.google.com https://*.google.fr https://*.doubleclick.net https://tbs.tradedoubler.com https://cdn.crowdin.com https://production-enterprise-static.cf-downloads.crowdin.com https://fonts.gstatic.com https://*.zendesk.com https://*.axept.io https://*.contentsquare.net https://*.googleadservices.com; object-src 'self' *.netatmo.com; script-src-attr 'unsafe-inline' nonce-jquery nonce-leaflet nonce-mondialrelay; style-src 'self' 'unsafe-inline' https://unpkg.com https://widget.mondialrelay.com htt- strict-transport-security
max-age=15552000; includeSubDomains- cross-origin-opener-policy
same-origin- cross-origin-embedder-policy
unsafe-none- cross-origin-resource-policy
cross-origin