waa-ultra.com
HTML metadata
Technology
- Server
- LiteSpeed
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- chimpstatic.com×1
- www.facebook.com×1
- www.googletagmanager.com×1
Social
Contact
- Address
- 75000, Paris, Paris, France
Registration
- Registrar
- Gandi SAS
- Created
- 2013-09-10
- Expires
- 2026-09-10 113 days left
- Updated
- 2026-02-02
- Name servers
-
- ns-0-b.gandi.net
- ns-20-c.gandi.net
- ns-201-a.gandi.net
- paloma.ns.cloudflare.com
- steven.ns.cloudflare.com
DNS records live
- NS
-
- ns-0-b.gandi.net
- ns-20-c.gandi.net
- ns-201-a.gandi.net
- MX
-
- 10 mx-01-eu-central-1.prod.hydra.sophos.com
- 100 waaultra-com0i.mail.protection.outlook.com
- 20 mx-02-eu-central-1.prod.hydra.sophos.com
- TXT
-
Show 7 TXT records
sophos-domain-verification=ce54ab77144ab45c93e4704699b3e910eb81ec4ev=spf2 a mx ptr include:_spf.prod.hydra.sophos.com include:spf.protection.outlook.com include:servers.mcsv.net include:mail.zendesk.com include:smartp.com -allxeTVI0p95sRpyUD/NwrqUy3cX5m6f1S60CiKK1q78b5SLoQqGfaQD0RnBfCEivDw3s/mnldlgIeKkwSv4Hop+A==MS=ms66235144google-site-verification=LEGsRydoBsXZgjNzsXkkt0Gmg2CNPGAhOF-91slGuvEgoogle-site-verification=mrPJXIo1kmTcI1sXy923fXpRR0Ym6eDfCI4QJPo0yKkopenai-domain-verification=dv-dLUJ46v6MtoF1hORza5PVN1T
Email authentication partial
- SPF
-
v=spf1 a mx ptr include:_spf.prod.hydra.sophos.com include:spf.protection.outlook.com include:servers.mcsv.net ip4:185.12.80.0/22 ip4:185.12.84.0/22 ip4:185.12.88.0/22 ip4:185.12.92.0/23 ip4:188.172.128.0/17 ip4:192.161.144.0/20 ip4:208.64.240.0/21 ip4:146.88.28.0/24 ip4:103.237.104.0/22 -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:postmaster@waa-ultra.compolicy: none (monitoring only) - DKIM
-
- k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed - k1:
Certificate (current)
GandiCert
Expires in 273 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
font-src *.fontawesome.com fonts.gstatic.com *.yotpo.com *.googleapis.com *.gstatic.com 'self' 'unsafe-inline'; form-action secure.authorize.net test.authorize.net geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.amazon.com *.amazon.co.uk *.amazon.co.jp *.amazon.jp *.amazon.it *.amazon.fr *.amazon.es *.amazon.de *.google.com *.facebook.com *.groupecdn.fr *.societegenerale.eu *.yotpo.com *.zendesk.com *.zdassets.com *.zopim.com 'self' 'unsafe-inline'; frame-ancestors 'self' *.googletagmanager.com *.criteo.com 'self' 'unsafe-inline'; frame-src fast.amc.demdex.net secure.authorize.net test.authorize.net geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com www.paypal.com www.sandbox.paypal.com *.amazon.com *.amazon.co.uk *.amazon.co.j- strict-transport-security
max-age=16006000; includeSubDomains; preload