soprema.at
HTML metadata
Technology
- CMS
- Gatsby
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (19)
- my.assets-library.com×20
- www.soprema.ch×3
- use.typekit.net×2
- www.soprema.be×2
- www.soprema.hu×2
- mcprod-eu.soprema.es×1
- mcprod-eu.soprema.pt×1
- my.soprema.de×1
- rum.hlx.page×1
- www.fiveisolanti.it×1
- www.soprema.ca×1
- www.soprema.co.uk×1
- www.soprema.dk×1
- www.soprema.fr×1
- www.soprema.ie×1
- www.soprema.in×1
- www.soprema.nl×1
- www.soprema.no×1
- www.soprema.se×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns-114-b.gandi.net
- ns-116-a.gandi.net
- ns-86-c.gandi.net
- MX
-
- 0 soprema-at.mail.protection.outlook.com
- Verified for
-
Email authentication partial
- SPF
-
v=spf1 ip4:91.223.5.244 ip4:91.223.5.245 ip4:91.223.5.246 include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1;p=none;pct=100;rua=mailto:100457dc49@rua.easydmarc.eu;ruf=mailto:100457dc49@ruf.easydmarc.eu;ri=86400;fo=1;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAr1pxRldNtSAx1NBI1DFr/jr41Ueb/Z/P7cT7xpMPDBZGhAGWvORzv0gWPKPeENwYM4Vo5xyAbnwIHY… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAmaEEELRrFZaRJRg1tUs/FFud2888PJh2DPXGfYX65FKyOVTQ48x8b6t5MAX6cRFEwXYivQ9dwJQZ9L… - dkim:
v=DKIM1; t=y; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArfDyTA91Uo0Re4ZQaDqXQzXg/cpYlL9RnOFa12fZpMfon7kQdBxMJ+/+bRGEpIw0dyn1WnkNLncqAkNr…
selectors probed - selector1:
Certificate (current)
R12
Expires in 35 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
font-src www.paypalobjects.com fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com *.googleapis.com data: https://static.lyra.com/static/ *.fontawesome.com 'self' data: *.cloudfront.net *.wistia.com *.hotjar.com *.hotjar.io *.join.com snippet.maze.co data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com https://secure.lyra.com/vads-payment/ https://api.lyra.com/api-payment/ https://static.lyra.com/static/ http://info.soprema.fr info.soprema.fr *.soprema.fr *.soprema.nl *.soprema.com *.soprema.be *.soprema.ch *.soprema.co.uk *.soprema.de *.soprema.at *.soprema.se *.soprema.dk *.soprema.no *.soprema.ie *.soprema.es *.georgboerner.de *.soprasolar.com *.nesta.fr *.soprema.ca *.soprema.ae *.soprema.com.mx *.soprema.us *.convoy-supply.com- strict-transport-security
max-age=31557600