refresco.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (5)
- cdn.ravenjs.com×1
- cookie-cdn.cookiepro.com×1
- fonts.googleapis.com×1
- js.hsforms.net×1
- www.googletagmanager.com×1
Registration
- Registrar
- Hosting Concepts B.V. d/b/a Registrar.eu
- Created
- 1998-12-10
- Expires
- 2026-12-09 201 days left
- Updated
- 2025-07-01
- Name servers
-
- ns1.openprovider.nl
- ns2.openprovider.be
- ns3.openprovider.eu
DNS records live
- NS
-
- ns1.openprovider.nl
- ns2.openprovider.be
- ns3.openprovider.eu
- MX
-
- 10 refresco-com.mail.protection.outlook.com
- TXT
-
Show 7 TXT records
0ed1fe018adf93fb5d609f416b9d7807d4a8146b84993c18ec6982edb028e4b30cda27a12974baf7e80bf9a7b67ekrgl/tMObHgF3hBX5kJJ/859ULZPJdeug/ux8C5KBU8=6c74c1b89e787a7e9841a828598ffe57f3eede9f92b1119c623fcf3fdc8e52fsuccessfactors-site-verification=ZDljNDU0OGRmYWZhOGYyOGYwYTU3ZjJjYzI4M2RjNWZhMjhhNzI4ZTc3YWIxMWQyZWQ5ZDM3YzRlMmM0ZTk4Yw==6315276e86f350819bbb404e0850cfa70baeda5664835ced0aknowbe4-site-verification=8cd09bd4fcd63f970f16d6db1ccbe31a
- Verified for
-
- Apple
- Brevo
- DocuSign
- GlobalSign
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:_s00485809.autospf.email include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; pct=100; rua=mailto:a.5klwwqww@sdmarc.net,mailto:hosting.notifications@refresco.compolicy: none (monitoring only) - DKIM
-
- mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxRYleeR3B2fjeUqa5AWOwq/2N0Yjrn58i46DGvcjfJ4xOC7FGTplqxALBgex8kP0BItdNOlBuQ8XhQqJ0G… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQD03SBMDm5k3fUjc+KrhAzHqd/SMGFImiPDkIpMINsQJTWqrXbHdu+DPNb7BGiO7NISx/NElJWsYU72dxtG8UNBOQ…
selectors probed - mail:
Certificate (current)
WE1
Expires in 52 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
script-src 'self' 'nonce-VDWUIogA/15D0p9laTQQYJnEoVm2WGmPiBJe9PUkaww=' 'strict-dynamic' https: http:; style-src 'self' fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' data: fonts.gstatic.com static2.sharepointonline.com *.cloudfront.net res.cdn.office.net; img-src 'self' data: https://*.paradox.ai www.googletagmanager.com px.ads.linkedin.com cookie-cdn.cookiepro.com *.amazonaws.com img.youtube.com *.google-analytics.com www.facebook.com https://ml-eu.globenewswire.com *.cloudfront.net i.ytimg.com; frame-ancestors 'self' www.googletagmanager.com www.youtube.com refresco.com fizz.refresco.com staffbase.com capacitor://refresco.com capacitor://refresco.com; connect-src 'self' https://*.cloudfront.net *.google-analytics.com region1.google-analytics.com www.googletagmanager.com svrdntfctn.com cdn.ravenjs.com cdn.jsdelivr.net cdn.plyr.io geolocation.onetrust.com cookie-cdn.cookiepro.com https://paradox.ai wss://paradox.ai https://*.paradox.ai wss://*.par- strict-transport-security
max-age=31536000; includeSubDomains