tomotcha.com

.com crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 622 ms crawled 2026-05-18

FR · 163.172.178.131 · AS12876 Scaleway SAS

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
Tomotcha | The Japanese tea subscription service
Description
Japanese Tea in your mailbox every month. Free shipping all around the world.
Language
en
Translations
  • fr

Technology

Server
nginx
CMS
WordPress
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts

Third-party hosts loaded (4)

  • code.jquery.com×1
  • fonts.googleapis.com×1
  • www.googleoptimize.com×1
  • www.googletagmanager.com×1

Social

Contact

Email

Registration

Registrar
NameCheap, Inc.
Created
2014-12-07
Expires
2026-12-07 200 days left
Updated
2025-11-26
Name servers
  • dns1.registrar-servers.com
  • dns2.registrar-servers.com

DNS records live

NS
  • dns1.registrar-servers.com
  • dns2.registrar-servers.com
MX
  • 1 aspmx.l.google.com
  • 10 aspmx2.googlemail.com
  • 10 aspmx3.googlemail.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
Verified for
  • Google

Email authentication weak

SPF
v=spf1 include:_spf.google.com ~all
softfail (~all)
DMARC
not published
DKIM
  • google: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsgx2mtOItBE5qzsGjQ98kRh/MMNEtXNSEBgukyTS99gG5UZuYdjHhR0ffNfG5CYCbUVFR4TTgg/tm+…
selectors probed

Certificate (current)

Sectigo Public Server Authentication CA DV R36
from 2026-01-11 to 2027-02-12
Expires in 267 days

HTTP security headers

Header hygiene 50/100 Checked live page: https://tomotcha.com/en/

present
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-opener-policy
findings
  • missing HSTS
  • missing Content Security Policy
  • weak frame protection
  • weak content type protection
Header values
referrer-policy
same-origin, strict-origin-when-cross-origin
x-frame-options
DENY, SAMEORIGIN
permissions-policy
accelerometer=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()
x-content-type-options
nosniff, nosniff
cross-origin-opener-policy
same-origin-allow-popups

Links to (9)

Linked from (1)