teva.com
HTML metadata
Technology
- CDN
- Vercel
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Osano
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (9)
- cdn.builder.io×55
- dms.deckers.com×4
- cdn.dynamicyield.com×3
- cmp.osano.com×2
- use.typekit.net×2
- js.datadome.co×1
- rcom.dynamicyield.com×1
- st.dynamicyield.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- MarkMonitor Inc.
- Created
- 1999-01-29
- Expires
- 2027-01-29 254 days left
- Updated
- 2025-12-28
- Name servers
-
- edns3.ultradns.biz
- edns3.ultradns.com
- edns3.ultradns.net
- edns3.ultradns.org
- ns10.ultradns2.com
- ns10.ultradns2.org
DNS records live
- NS
-
- edns3.ultradns.biz
- edns3.ultradns.com
- edns3.ultradns.net
- edns3.ultradns.org
- ns10.ultradns2.com
- ns10.ultradns2.org
- MX
-
- 10 mxa-00352c01.gslb.pphosted.com
- 10 mxb-00352c01.gslb.pphosted.com
- TXT
-
Show 10 TXT records
_j0xzt5pfyn1g1sqslfcppfo1369sweyklaviyo-site-verification=RUaGfcklaviyo-site-verification=Ssa4Rdklaviyo-site-verification=UjfCmpklaviyo-site-verification=Vy4MRClucid-verification=<fmt9gwezymu1a08s33ju>rovag_verification_token=53570EF78AFB4E8FB44914EA22C3BD91google-site-verification=jlyT0COZmXlnBCu-ewwWgJTR3yIb34Yn6FqdciqxTeIgoogle-site-verification=vS0HZ1rUmvj7psdaAoGfT6Pkb1ZH6wegkC9jlyDuEYA_czp9j7k1abxrb2wktr3jhq9yi3gakex
Email authentication strong
- SPF
-
v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.compolicy: reject (enforced) - DKIM
-
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzvGFzNdsQngfRoOC0/94wZklOnxy0RVTiQS4NlehMHgeAK5TfIWzQuwoHOaCNJV0AAvVmFPTn8QGg9…
selectors probed - default:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 21 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- content-security-policy
default-src *.vercel.app *.vercel.live vercel.live https://vercel.com *.ahnu.co *.ahnu.com *.teva.com *.hoka.com *.ugg.com *.koolaburra.com *.deckers.com data: blob: ws: 'unsafe-eval' 'unsafe-inline' dms.deckers.com *.dynamicyield.com deckers.us-east4.talon.one www.googletagmanager.com browser-intake-datadoghq.com *.browser-intake-datadoghq.com stats.g.doubleclick.net resources.digital-cloud.medallia.eu d3lqotgbn3npr.cloudfront.net df45ay5pw60dy.cloudfront.net d2o5idwacg3gyw.cloudfront.net d6rak4b14t5gp.cloudfront.net d3nocrch4qti4v.cloudfront.net duuytoqss3gu4.cloudfront.net caas.production.deckers.coremedia.cloud ad.doubleclick.net www.google.com.br udc-neb.kampyle.com res.cloudinary.com cdnjs.cloudflare.com safetechpageencryptionvar.chasepaymentech.com safetechpageencryption.chasepaymentech.com www.lightboxcdn.com api.lightboxcdn.com *.lightboxcdn.com cognito-idp.us-west-2.amazonaws.com *.cartfulsolutions.com facebook.com *.facebook.com *.facebook.net cdn.gladly.com deckers.gladly.c- strict-transport-security
max-age=63072000; includeSubDomains; preload