renault.at
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- nginx
- Analytics
-
- Google Analytics
- Google Tag Manager
Third-party hosts loaded (4)
- cdn.group.renault.com×93
- www.google-analytics.com×1
- www.googletagmanager.com×1
- www.renault.de×1
Social
DNS records live
- NS
-
- anna.renault.fr
- xenia.renault.fr
- MX
-
- 10 mx1.hc1506-8.eu.iphmx.com
- 10 mx2.hc1506-8.eu.iphmx.com
- 20 smtp.renault.fr
- 30 smtp2.renault.fr
- TXT
-
Show 5 TXT records
tmes=7b012f9cb5e8ad3102c5d6e64941e979R2DcxH9pUHFs5oYTJ1pNpVOmJUZyBRFc38hjPNPb+TFe3Yl3OIp5L7MZevxn28rFRJAqQYxTw61sPMJmMYH9uw==_429hmb87m1ak31xdzc0j6o3xk3uew23qls+EBp9LXl/rFDvZnM7TUlscPW7aSBddP9XZ35TAGsE80lB6sILAlkHY44mkZ67tbGhAkWU0PIWgY4guBvw/w==Renault Ostereich
- Verified for
-
- Atlassian
- Cisco
- Meta
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 a ip4:95.168.205.240 ip4:95.168.205.241 ip4:195.190.140.34 ip4:195.190.140.35 ip4:195.190.140.73 ip4:195.190.140.72 ip4:193.194.133.13 ip4:193.194.133.49 ip4:193.194.133.50 include:smtp.renault.com include:_spf.salesforce.com include:_spf4.xcampaign.ch include:_spf6.xcampaign.ch ip4:83.164.153.100 ip4:143.55.239.67 ip4:143.55.239.249 exists:%{i}.spf.hc1506-8.eu.iphmx.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; pct=100; sp=reject; rua=mailto:8861c14b@inbox.eu.redsift.cloud,mailto:mb2glhd4@ag.dmarcian.eu; ruf=mailto:8861c14b@inbox.eu.redsift.cloud; adkim=r; aspf=r; fo=1; rf=afrf; ri=3600policy: reject (enforced) · sp=reject - DKIM
-
- k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed - k1:
Certificate (current)
Amazon RSA 2048 M01
Expires in 276 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src data: 'unsafe-inline' 'unsafe-eval' https:;base-uri 'self';frame-ancestors 'self' ;img-src data: https: blob:;font-src data: https:;media-src https: blob:;connect-src https: wss: http:;script-src data: 'unsafe-inline' 'unsafe-eval' https: blob:;style-src data: 'unsafe-inline' https:;child-src https: data: blob:;form-action https:;object-src 'none';- strict-transport-security
max-age=2592000