uriach.com
HTML metadata
Technology
- Server
- nginx
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- storage.googleapis.com×11
- www.googletagmanager.com×1
Social
Contact
Registration
- Registrar
- Nominalia Internet SL
- Created
- 1997-02-20
- Expires
- 2027-02-21 277 days left
- Updated
- 2026-01-13
- Name servers
-
- kipp.ns.cloudflare.com
- violet.ns.cloudflare.com
DNS records live
- NS
-
- kipp.ns.cloudflare.com
- violet.ns.cloudflare.com
- MX
-
- 5 uriach-com.mail.protection.outlook.com
- TXT
-
Show 10 TXT records
202110010515153rkvq0qyak6y85inqj8pq8a5k451fo7g5o1gxvolrhs4a9jzbh2022091701320508zemwltgzgvllohi2cs43mvda9hfzh1ladd0ijwcchbkzwakv202310020858271n7vwnu04bj7s2jqe2e4162mbr81104djs57gbln1hqdou8j4aMS=ms32483387MS=ms57379060SFMC-UK2NU2cV9oRVzziHt7uPaPbK1wT71c4-dW7V5RDdapple-domain-verification=sGMzqG4GwAtgQRcWbPpC2LPESsmiqsXntmes=45d4970953c7c91fa181b4b479e98974vBFUITcirRUi4/TZA/ObHarzEGh4n9fCMXSvLwvuzysEKne1HnmybacKAHOMVQxa6nHjqrCtaSY/8g3gl5awsw==
Email authentication strong
- SPF
-
v=spf1 mx include:spf.protection.outlook.com include:spf.tmes.trendmicro.com include:_spf.salesforce.com include:spf-de.emailsignatures365.com include:_spf.retarus.com include:amazonses.com ip4:78.46.143.38/32 -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; pct=100; rua=mailto:dmarc-security-reports@uriach.compolicy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDFQoNqs9C4p7ukNT0VOErGf7MUIF0HYVo/Tq8H+q2/HeL7PdM9sPx4pgXY3Ev2M8PGNitHdm4RjvRhDfqwR6…
selectors probed - selector1:
Certificate (current)
WR3
Expires in 84 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
same-origin- x-frame-options
DENY- permissions-policy
accelerometer=(), autoplay=(self "https://player.vimeo.com" "https://www.youtube.com"), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), midi=(), payment=(), usb=(), serial=(), hid=(), bluetooth=(), fullscreen=(self), picture-in-picture=(self "https://player.vimeo.com" "https://www.youtube.com"), encrypted-media=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'none'; base-uri 'self'; frame-ancestors 'self'; img-src 'self' https://storage.googleapis.com data: *.b-ite.com; style-src 'self' https://storage.googleapis.com 'unsafe-inline' *.b-ite.com; script-src 'self' 'unsafe-inline' https://www.googletagmanager.com https://storage.googleapis.com *.b-ite.com; script-src-elem 'self' 'unsafe-inline' https://www.googletagmanager.com https://www.google-analytics.com https://storage.googleapis.com *.b-ite.com; connect-src 'self' https://region1.google-analytics.com https://www.google-analytics.com *.b-ite.com; manifest-src https://storage.googleapis.com; frame-src https://www.youtube.com https://player.vimeo.com https://www.googletagmanager.com; object-src 'none'; font-src 'self' https://storage.googleapis.com data: *.b-ite.com; upgrade-insecure-requests;- strict-transport-security
max-age=31536000; includeSubDomains; preload, max-age=31536000; includeSubDomains; preload- cross-origin-opener-policy
same-origin