pyres.com
HTML metadata
Technology
- Server
- pyrescom
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- fonts.googleapis.com×4
- fonts.gstatic.com×1
- js-eu1.hs-scripts.com×1
- www.googletagmanager.com×1
Social
Contact
- Address
- st certifié ISO 9001
Registration
- Registrar
- Gandi SAS
- Created
- 1997-12-05
- Expires
- 2027-12-04 562 days left
- Updated
- 2025-11-03
- Name servers
-
- ns-134-c.gandi.net
- ns-154-a.gandi.net
- ns-45-b.gandi.net
DNS records live
- NS
-
- ns-134-c.gandi.net
- ns-154-a.gandi.net
- ns-45-b.gandi.net
- MX
-
- 1 smailer.pyres.com
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 mx ip4:46.255.179.124 ip4:212.7.211.195 include:spamid.one-id.fr include:mail.pyres.com include:_spf.google.com -allstrict (-all) - DMARC
-
v=DMARC1;p=quarantine;sp=none;adkim=r;aspf=r;fo=1;rf=afrf;rua=mailto:postmaster@pyres.compolicy: quarantine · sp=none - DKIM
-
- default:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDqzfy/BRir3OUj3pB/RQ+zKX6Yq8iC2e+cZ8+Wu91+Z7MQPViu1ifXj0Qxd6JJEIp4ifp1PL/8k/xIcMcPyn…
selectors probed - default:
Certificate (current)
R12
Expires in 86 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
fullscreen=(self "https://www.youtube.com"), picture-in-picture=(self "https://www.youtube.com")- x-content-type-options
nosniff- content-security-policy
default-src 'self'; media-src 'self' data: blob: https:; worker-src 'self' blob:; child-src 'self' blob:; img-src 'self' data: blob: https: https://s.w.org https://secure.gravatar.com https://*.gravatar.com; font-src 'self' data: https://fonts.gstatic.com https://*.brevo.com; style-src 'self' 'unsafe-inline' https://*.wpml.org https://*.brevo.com https://fonts.googleapis.com; script-src-elem 'self' 'unsafe-inline' 'unsafe-eval' https: https://*.hubspot.com https://googleads.g.doubleclick.net https://js-eu1.hs-scripts.com/ https://js-eu1.hs-banner.com https://js-eu1.hs-analytics.net https://js-eu1.hscollectedforms.net https://cdn-cookieyes.com https://*.cookieyes.com https://*.googleapis.com https://*.gstatic.com https://*.google-analytics.com https://www.googletagmanager.com data:; script-src 'self' 'unsafe-inline' 'unsafe-eval'; connect-src 'self' https: wss: https://*.google.com https://forms-eu1.hscollectedforms.net https://log.cookieyes.com https://*.googlesyndication.com https://c- strict-transport-security
max-age=63072000; includeSubDomains; preload