octaveoctave.com
HTML metadata
Technology
- Server
- Apache
- CMS
- WordPress
- Analytics
-
- Google Analytics
- Social widgets
-
- Vimeo Embed
Third-party hosts loaded (2)
- player.vimeo.com×2
- www.google-analytics.com×1
Social
Contact
- Phone
- Address
- rue Poissonnière, 75002
Registration
- Registrar
- Gandi SAS
- Created
- 2008-06-06
- Expires
- 2026-06-06 16 days left
- Updated
- 2025-05-20
- Name servers
-
- ns-169-c.gandi.net
- ns-178-b.gandi.net
- ns-90-a.gandi.net
DNS records live
- NS
-
- ns-169-c.gandi.net
- ns-178-b.gandi.net
- ns-90-a.gandi.net
- MX
-
Show 8 MX records
- 0 aspmx.l.google.com
- 1 alt1.aspmx.l.google.com
- 10 smtp.google.com
- 2 alt2.aspmx.l.google.com
- 3 aspmx2.googlemail.com
- 4 aspmx3.googlemail.com
- 5 aspmx4.googlemail.com
- 6 aspmx5.googlemail.com
- Verified for
-
- Workplace
Email authentication weak
- SPF
- not published
- DMARC
-
v=DMARC1;p=none;pct=100;rua=mailto:abuse@octaveoctave.compolicy: none (monitoring only) - DKIM
-
- smtpapi:
k=rsa;t=s;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76yo…
selectors probed - smtpapi:
Certificate (current)
R13
Expires in 29 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(self), fullscreen=(self), camera=(), microphone=(), payment=(), sync-xhr=(self)- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; form-action 'self'; child-src blob:; connect-src 'self' https://*.google.com https://www.gstatic.com https://*.google-analytics.com https://*.analytics.google.com https://*.googletagmanager.com https://*.hubspot.com https://*.hs-analytics.net https://*.hs-banner.com https://*.hsforms.com https://*.hscollectedforms.net https://*.hubapi.com https://*.usemessages.com https://*.hsappstatic.net https://px.ads.linkedin.com; default-src 'self'; font-src 'self' https://fonts.googleapis.com https://fonts.gstatic.com; frame-src 'self' https://*.google.com https://www.youtube.com https://player.vimeo.com https://*.hubspot.com https://*.usemessages.com https://www.linkedin.com; img-src 'self' data: https://*.ads.linkedin.com https://secure.gravatar.com https://cdn-cookieyes.com https://*.google-analytics.com https://*.googletagmanager.com https://*.hubspot.com https://*.hs-analytics.net https://*.hsforms.com https://track.hubspot.com https://px.ads- strict-transport-security
max-age=31536000; includeSubDomains