sienna-im.com
HTML metadata
Technology
- CMS
- WordPress
- jQuery
- 3.7.1
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (5)
- gmpg.org×1
- policy.app.cookieinformation.com×1
- use.typekit.net×1
- www.google.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
- Address
- 21 boulevard Haussmann, 75009, Paris, France
Registration
- Registrar
- Combell NV
- Created
- 2021-09-15
- Expires
- 2026-09-15 104 days left
- Updated
- 2025-11-22
- Name servers
-
- ns3.combell.net
- ns4.combell.net
DNS records live
- NS
-
- ns1.combell.eu
- ns3.combell.net
- ns4.combell.net
- MX
-
- 10 eu-smtp-inbound-1.mimecast.com
- 10 eu-smtp-inbound-2.mimecast.com
- TXT
-
riot-domain-verification=c6a91a63afff2e31df25d14c5aaf1fb59b9603bc0891350066d7a5f3db5espycloud-domain-verification=bb306f88-6842-4365-93bf-5be22461b2d6mandrill_verify.5h4zXrd1xCmbna7gD1B8jQ
- Verified for
-
- Apple
- Atlassian
- DocuSign
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 ip4:152.228.180.71/26 include:eu._netblocks.mimecast.com include:spf.mandrillapp.com include:mailgun.org include:asp-spf1.yardi.com include:asp-spf2.yardi.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc_agg@vali.email;policy: none (monitoring only) - DKIM
-
- k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4Y7woa6TjH2ReMPfMQFi7RzK6+v0cpU9yUOUM9AujtUDwC86pikj5Y4i4/s0YlO5xHagSFrjjSoj+WnPAi… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAw3+/8GEZAtpjqMONtatLXytxM36cPOhLU3y5EEj0jgZtoh5xH7WLySEEVHVGWXObsUzmTh8cu+PIy2o4op…
selectors probed - k2:
Certificate (current)
GandiCert
Expires in 140 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' https: ws: wss: data: blob: 'unsafe-inline'; script-src blob: 'self' 'unsafe-inline' 'unsafe-eval' https://*.smartrecruiters.com https://google.com https://*.matomo.cloud https://*.cookielaw.org https://*.facebook.com https://*.hotjar.com https://*.licdn.com https://reservations.tablebooker.com https://*.doubleclick.net https://www.googleadservices.com https://static.addtoany.com https://*.tiktok.com https://embed.typeform.com https://cdn.syndication.twimg.com https://*.twitter.com https://*.getclicky.com https://chat.sendinblue.com https://sibautomation.com https://code.createjs.com https://use.typekit.net https://vjs.zencdn.net https://*.cookiebot.com https://cdn.jsdelivr.net https://s7.addthis.com https://*.googleapis.com https://*.list-manage.com https://unpkg.com https://code.jquery.com https://js.stripe.com https://ws.sharethis.com https://cdnjs.cloudflare.com https://connect.facebook.net https://*.google-analytics.com https://cdn.ckeditor.com https://policy.ap- strict-transport-security
max-age=31536000; includeSubDomains