thea.com
HTML metadata
Technology
- Server
- Apache
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
- Fonts
-
- Google Fonts
Third-party hosts loaded (5)
- fonts.googleapis.com×2
- cdn.cookielaw.org×1
- fonts.gstatic.com×1
- www.google.com×1
- www.googletagmanager.com×1
Social
Contact
- Address
- Clermont-Ferrand, France
Registration
- Registrar
- IP Twins SAS
- Created
- 1997-08-04
- Expires
- 2027-08-03 440 days left
- Updated
- 2022-12-20
- Name servers
-
- ns1.iptwins.net
- ns2.iptwins.net
- ns3.iptwins.com
- ns4.iptwins.com
DNS records live
- NS
-
- ns1.iptwins.net
- ns2.iptwins.net
- ns3.iptwins.com
- ns4.iptwins.com
- MX
-
- 0 thea-com.mail.protection.outlook.com
- TXT
-
Show 5 TXT records
brevo-code:7d0ac5cd09409f1539130123358dec5e_2o9lnfcodzqismyh2ce8lwyt46ksdon_qhmtzrc20yeru28uglpb2e5mziymznbgoogle-site-verification=1hL-XOXM1QEUlyuRqX2wD2hmt_NQcP4doIWdVro_SDc4d2h6x09sh4sxzs9rs63j0x4jfcgzqj2
Email authentication partial
- SPF
-
v=spf1 include:spf.brevo.com include:spf.mailjet.com include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:rua@dmarc.brevo.compolicy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
RapidSSL TLS ECC CA G1
Expires in 121 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- weak frame protection
- weak content type protection
Header values
- referrer-policy
no-referrer, strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN, SAMEORIGIN- permissions-policy
accelerometer=(), geolocation=(), midi=(), sync-xhr=(), fullscreen=(), magnetometer=(), ambient-light-sensor=(), autoplay=(), gyroscope=(), battery=(), camera=(), display-capture=(), payment=()- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self' fonts.googleapis.com fonts.gstatic.com data:; block-all-mixed-content; connect-src 'self' https://region1.google-analytics.com/g/collect https://geolocation.onetrust.com/cookieconsentpub/ https://cdn.cookielaw.org/consent/ https://cdn.cookielaw.org/scripttemplates/ https://cdn.cookielaw.org/logos/ https://www.google.com/recaptcha/api2/; frame-src 'self' https://www.youtube.com www.gstatic.com www.google.com; img-src 'self' data: https:; script-src 'self' https://unpkg.com/@lottiefiles/lottie-player@latest/dist/lottie-player.js https://unpkg.com https://www.googletagmanager.com/gtag/js https://region1.google-analytics.com/g/collect https://cdn.cookielaw.org/ 'unsafe-inline' 'nonce-GYB3byb1shXaW9+D2o62GQ=='; style-src 'unsafe-inline' 'self' fonts.googleapis.com fonts.gstatic.com; report-uri /nelmio/csp/report- strict-transport-security
max-age=16000000; includeSubDomains;, max-age=16000000; includeSubDomains;- content-security-policy-report-only
script-src 'self' https://unpkg.com/@lottiefiles/lottie-player@latest/dist/lottie-player.js https://www.googletagmanager.com/gtag/js https://region1.google-analytics.com/g/collect https://cdn.cookielaw.org/scripttemplates/ 'unsafe-inline' 'nonce-GYB3byb1shXaW9+D2o62GQ=='; report-uri /nelmio/csp/report