pileje.ch
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- Apache
- CMS
- Nuxt
- JS framework
- Nuxt, Vue
Third-party hosts loaded (7)
- api.eu.pileje.fr×3
- solutions.pileje.fr×2
- producten.pileje.be×1
- produits.pileje.be×1
- produkte.pileje.de×1
- www.pileje.es×1
- www.pileje.it×1
DNS records live
- NS
-
- ns-1258.awsdns-29.org
- ns-2023.awsdns-60.co.uk
- ns-341.awsdns-42.com
- ns-977.awsdns-58.net
- MX
-
- 10 pileje-ch.mail.protection.outlook.com
- Verified for
-
- Dynamics 365
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:spf.larenasante.com include:spf2.larenasante.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; sp=reject; rua=mailto:hostmaster@pileje.ch; aspf=s; fo=1;policy: reject (enforced) · sp=reject - DKIM
- no key found at common selectors
Certificate (current)
Amazon RSA 2048 M01
Expires in 113 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-embedder-policy
- cross-origin-resource-policy
- findings
-
- CSP uses wildcard sources
- weak frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY; SAMEORIGIN- permissions-policy
accelerometer=(), fullscreen=(), ambient-light-sensor=(), autoplay=(), battery=(), camera=(), display-capture=(self), geolocation=(self)- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; default-src 'self' *.privacy-center.org; script-src 'sha256-s/dRYJFJqji0Ir7j2rUQRODLeHrfES/x9yytfhK2rgY=' 'self' 'self' https://join-demo-pierre-alexandre.my.join-stories.com https://pileje.my.join-stories.com 'sha256-ExeAQ9M+mLyVuIf63P29YZ8mBfGk0VVWfliXaOqL1A4=' 'sha256-gPjlli1HEdLlR0AZTY971/wQVOdSkl9mEinLnxrPpJw=' 'sha256-yopuQktlsHLNR0SVKx1/dXvQtCB5c56iU0ohBdaOsBY=' 'sha256-FDyPg8CqqIpPAfGVKx1YeKduyLs0ghNYWII21wL+7HM=' 'sha256-dPHpsWnsCFc5qM9Ph3zogwNk4v5w/vkv6FkJ82AX93o=' 'sha256-2xSVTTiIeKU2kAFjDtALhMZr+q+U7R1CXXnVTVjPICY=' 'sha256-2xSVTTiIeKU2kAFjDtALhMZr+q+U7R1CXXnVTVjPICY=' 'sha256-rwMOiOeVICH7/Cjy5SkreID3OOi5HTrit357k22hUDQ=' 'nonce-WY2ZG68fg5156h14mc1aGYxgfhFGY' 'nonce-NDVoNWY2ZGdoMWJjZmc1aGYxZzY=' 'nonce-4Vqr9eiCGJweLTpIqDDNqQ==' 'nonce-V1kyWkc2OGZnNTE1NmhmZGZxc2' 'sha256-A5SsKj4MdpjRU3KnDYWkF/h9igEhG6+Ufb6LBQr+0Cc=' https://www.googletagmanager.com *.google-analytics.com https://tagmanager.google.com https://www.google.com/recaptcha/api.js https://www.gstati- strict-transport-security
max-age=31536000; includeSubDomains; preload- cross-origin-opener-policy
unsafe-none; same-origin-allow-popups; same-origin- cross-origin-embedder-policy
unsafe-none; require-corp- cross-origin-resource-policy
same-site; same-origin; cross-origin
Links to (2)
- phytolis.ch×1
- bcorp.com×1
Linked from (3)
- phytolis.ch×1
- pileje.com×1
- pileje.fr×1