refresco.com

.com crawl

First seen 2026-04-13 · Last seen 2026-05-20 · ok HTTP/1.1 200 1527 ms crawled 2026-05-06

US · 108.162.192.221 · AS13335 Cloudflare, Inc.

Reputation 97/100 dmarc monitor-only

Classifying

HTML metadata

Title
The World's Partner in High-Quality Beverage Solutions | Refresco
Description
Looking for a reliable partner for your beverage solutions? Learn more here about our B2B solutions in Europe, North America, and Australia.
Language
x-default
Canonical
https://www.refresco.com/en
Translations
  • en

Open Graph

image:url:0
https://www.refresco.com/data/default/2020-08/homepage-banner1.jpg

Technology

CDN
Cloudflare
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts

Third-party hosts loaded (5)

  • cdn.ravenjs.com×1
  • cookie-cdn.cookiepro.com×1
  • fonts.googleapis.com×1
  • js.hsforms.net×1
  • www.googletagmanager.com×1

Registration

Registrar
Hosting Concepts B.V. d/b/a Registrar.eu
Created
1998-12-10
Expires
2026-12-09 201 days left
Updated
2025-07-01
Name servers
  • ns1.openprovider.nl
  • ns2.openprovider.be
  • ns3.openprovider.eu

DNS records live

NS
  • ns1.openprovider.nl
  • ns2.openprovider.be
  • ns3.openprovider.eu
MX
  • 10 refresco-com.mail.protection.outlook.com
TXT
Show 7 TXT records
  • 0ed1fe018adf93fb5d609f416b9d7807d4a8146b84
  • 993c18ec6982edb028e4b30cda27a12974baf7e80bf9a7b67e
  • krgl/tMObHgF3hBX5kJJ/859ULZPJdeug/ux8C5KBU8=
  • 6c74c1b89e787a7e9841a828598ffe57f3eede9f92b1119c623fcf3fdc8e52f
  • successfactors-site-verification=ZDljNDU0OGRmYWZhOGYyOGYwYTU3ZjJjYzI4M2RjNWZhMjhhNzI4ZTc3YWIxMWQyZWQ5ZDM3YzRlMmM0ZTk4Yw==
  • 6315276e86f350819bbb404e0850cfa70baeda5664835ced0a
  • knowbe4-site-verification=8cd09bd4fcd63f970f16d6db1ccbe31a
Verified for
  • Apple
  • Brevo
  • DocuSign
  • GlobalSign
  • Google
  • Microsoft 365

Email authentication strong

SPF
v=spf1 include:_s00485809.autospf.email include:spf.protection.outlook.com -all
strict (-all)
DMARC
v=DMARC1; p=none; pct=100; rua=mailto:a.5klwwqww@sdmarc.net,mailto:hosting.notifications@refresco.com
policy: none (monitoring only)
DKIM
  • mail: k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxRYleeR3B2fjeUqa5AWOwq/2N0Yjrn58i46DGvcjfJ4xOC7FGTplqxALBgex8kP0BItdNOlBuQ8XhQqJ0G…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQD03SBMDm5k3fUjc+KrhAzHqd/SMGFImiPDkIpMINsQJTWqrXbHdu+DPNb7BGiO7NISx/NElJWsYU72dxtG8UNBOQ…
selectors probed

Certificate (current)

WE1
from 2026-04-14 to 2026-07-13
Expires in 52 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.refresco.com/en/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
same-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
script-src 'self' 'nonce-VDWUIogA/15D0p9laTQQYJnEoVm2WGmPiBJe9PUkaww=' 'strict-dynamic' https: http:; style-src 'self' fonts.googleapis.com 'unsafe-inline'; style-src-attr 'unsafe-inline'; font-src 'self' data: fonts.gstatic.com static2.sharepointonline.com *.cloudfront.net res.cdn.office.net; img-src 'self' data: https://*.paradox.ai www.googletagmanager.com px.ads.linkedin.com cookie-cdn.cookiepro.com *.amazonaws.com img.youtube.com *.google-analytics.com www.facebook.com https://ml-eu.globenewswire.com *.cloudfront.net i.ytimg.com; frame-ancestors 'self' www.googletagmanager.com www.youtube.com refresco.com fizz.refresco.com staffbase.com capacitor://refresco.com capacitor://refresco.com; connect-src 'self' https://*.cloudfront.net *.google-analytics.com region1.google-analytics.com www.googletagmanager.com svrdntfctn.com cdn.ravenjs.com cdn.jsdelivr.net cdn.plyr.io geolocation.onetrust.com cookie-cdn.cookiepro.com https://paradox.ai wss://paradox.ai https://*.paradox.ai wss://*.par
strict-transport-security
max-age=31536000; includeSubDomains

Linked from (3)