upsapharma.com

.com crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 2425 ms crawled 2026-05-18

FR · 178.33.73.151 · AS16276 OVH SAS

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Upsapharma.com | Votre passion, notre mission
Description
Upsapharma.com | Votre passion, notre mission

Technology

Analytics
  • Google Tag Manager
Fonts
  • Google Fonts

Third-party hosts loaded (2)

  • fonts.googleapis.com×1
  • www.googletagmanager.com×1

Registration

Registrar
CSC Corporate Domains, Inc.
Created
2002-02-25
Expires
2027-02-25 282 days left
Updated
2026-02-21
Name servers
  • dns1.cscdns.net
  • dns2.cscdns.net

DNS records live

NS
  • dns1.cscdns.net
  • dns2.cscdns.net
MX
  • 10 mx.upsapharma.com.cust.b.hostedemail.com
TXT
Show 4 TXT records
  • brevo-code:2604c084332cc6ad2d48a6d5f5931d59
  • google-site-verification=rqZ9ZAOjE5-d9TIY7HTTvDuD1jPnlU331fwrQ8Ilqco
  • MS=ms91579093
  • _axb0gfoi1xrlwiu6u2w74yh0fmuh6nq

Email authentication partial

SPF
v=spf1 ip4:176.157.194.100 include:spf.protection.outlook.com -all
strict (-all)
DMARC
v=DMARC1;p=none;rua=mailto:rua@dmarc.brevo.com
policy: none (monitoring only)
DKIM
  • mail: k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed

Certificate (current)

DigiCert Global G2 TLS RSA SHA256 2020 CA1
from 2025-10-28 to 2026-11-06
Expires in 171 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://upsapharma.com/upsa/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
accelerometer=(), geolocation=('self'), fullscreen=(), ambient-light-sensor=(), autoplay=(), battery=(), camera=(), display-capture=('self')
x-content-type-options
nosniff
content-security-policy
default-src * data: blob: filesystem: about: ws: wss: 'unsafe-inline' 'unsafe-eval' 'unsafe-dynamic'; script-src * 'unsafe-inline' 'unsafe-eval'; connect-src * 'unsafe-inline'; img-src * data: blob: 'unsafe-inline'; frame-src *; style-src * data: blob: 'unsafe-inline'; font-src * data: blob: 'unsafe-inline';
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (1)

Linked from (1)