teva.de
HTML metadata
Technology
- Server
- Apache
- CMS
- Joomla
- Cookie consent
-
- Usercentrics
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (5)
- app.usercentrics.eu×3
- privacy-proxy.usercentrics.eu×3
- api.usercentrics.eu×1
- www.googleoptimize.com×1
- www.youtube.com×1
Social
Registration
- Updated
- 2011-03-09
- Name servers
-
- ns3.tevapharm.com.
- ns4.tevapharm.com.
- ns5.tevapharm.com.
DNS records live
- NS
-
- ns3.tevapharm.com
- ns4.tevapharm.com
- ns5.tevapharm.com
- MX
-
- 10 mx01.tevapharm.com
- 10 mx02.tevapharm.com
- TXT
-
Show 13 TXT records
nitro-verification-code=NjkwNDUxNzIxNjY4MjE3NjQxOA==globalsign-domain-verification=271a47ec8ece134538ac710919267ef5globalsign-domain-verification=b9f0a7264c07cf08bf81300ee79b7bf4globalsign-domain-verification=c6cb9ab8322f31dea3e15858410f06cf_globalsign-domain-verification=-mrCDIV71wAl5ZEI_KNjAQkTP909CIi-uVPaygQrSE_globalsign-domain-verification=66ekzJeN9tFUQpGO7uyyoHHrdizHIYLS2HohhvJOl2_globalsign-domain-verification=nER0h9TIQk0x1x4UXfiN1MaxCaeSCBftXePSGjO_Y9_globalsign-domain-verification=66ekzJeN9tFUQpGO7uyyoHHrdizHIYLS2HohhvJOl2pardot272712=1578f373b9e27986252f8d8a454e3b833b8da5f554c8cfaec4501129afb5b4cdadobe-idp-site-verification=06dfcb3c425dc2a7f5b8ce618740a3ea4f81b96c76437bf0fe33d8001c21a783MS=ms99597569docusign=1e3b8c35-3a91-4a6d-9494-932809c45d04docusign=b58ca45a-7144-4b1b-b892-7d859316f7f2
Email authentication strong
- SPF
-
v=spf1 include:_spf.mail.teva ip4:195.50.154.10 ip4:195.50.154.59 include:spf.protection.outlook.com include:spf.postal.sig-noc.net exists:%{i}.spf.hc1147-86.eu.iphmx.com -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;fo=1;sp=reject;adkim=r;aspf=r;ri=3600;rua=mailto:dmarc.RUA@teva.de;ruf=mailto:dmarc.RUF@teva.de;policy: reject (enforced) · sp=reject - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyXKb+mNe7PoXcksqMwSmvZy5pJTB6EzU5UdCLtptD9gmYLAgHB3Ky1F1ajOuO89LLDz8kWtW8rBl3R…
selectors probed - selector1:
Certificate (current)
GlobalSign Atlas R3 DV TLS CA 2026 Q1
Expires in 50 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' data: https:; script-src 'self' 'unsafe-eval' 'unsafe-inline' https: *.google-analytics.com *.analytics.google.com; style-src 'self' 'unsafe-inline' https:; media-src https://*.3qsdn.com blob: 'self'; worker-src blob:- strict-transport-security
max-age=63072000