wats.com
HTML metadata
Technology
- CDN
- Vercel
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
- Plausible
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (6)
- cdn.sanity.io×42
- web.cmp.usercentrics.eu×2
- challenges.cloudflare.com×1
- js-eu1.hs-scripts.com×1
- plausible.io×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- Key-Systems GmbH
- Created
- 2004-03-28
- Expires
- 2027-03-28 298 days left
- Updated
- 2026-03-29
- Name servers
-
- ns1-04.azure-dns.com
- ns2-04.azure-dns.net
- ns3-04.azure-dns.org
- ns4-04.azure-dns.info
DNS records live
- NS
-
- ns1-04.azure-dns.com
- ns2-04.azure-dns.net
- ns3-04.azure-dns.org
- ns4-04.azure-dns.info
- MX
-
- 0 wats-com.mail.protection.outlook.com
- TXT
-
bw=e67tE1CaUBjEJnRvXsNuym5r2SJl2DOJO4zWoWfhfPdfwats-com.azurewebsites.net98uf7meipk6ve3j170qabh7j6
- Verified for
-
- Anthropic
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:em44.wats.com ip4:149.72.56.6 include:mail.zendesk.com include:spf.mailjet.com include:_spf.activedemand.com include:spf.protection.outlook.com include:email.chargebee.com include:145627465.spf01.hubspotemail.net exists:%{ir}._spf.msdp1.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarcreports@wats.com; ruf=mailto:dmarcreports@wats.compolicy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCW1l6fZ+72s0DWA55qgd8PPfHF1Ig6ie19Xix5CrHUtoeLBFBboyYnuRsfTpB5minCY1qg8xSLlJThR12DHS… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC8aJ1+f2DS7qLldBpEO/7IqkE3iM9/MQ/P6M9MI4ACNj0QNb6CMLf2/5hO0yt/uMPUoLM27aOKBMg5wxnU+W… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2CAVtGevwMAMWeejEW2bRHZ9SSvPhrzCYtvTL/TdfVFbecVjzuIvpJK5IQP/xd1ab7cL4R4HJLu+o/4wm9… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC9sznx3PW3KV3pRtLDoErq2kdXSxKO7EivOWcwnI74H86GqX5J5o66IkF6v+HZVe01eSnku5bgFWHRrsGfmuySPB…
selectors probed - selector1:
Certificate (current)
R12
Expires in 58 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- permissions-policy
camera=(), microphone=(), geolocation=(), payment=(), usb=(), magnetometer=(), gyroscope=(), accelerometer=(), interest-cohort=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://web.cmp.usercentrics.eu https://*.usercentrics.eu https://*.googletagmanager.com https://*.google-analytics.com https://*.analytics.google.com https://*.gstatic.com https://*.g.doubleclick.net https://*.googlesyndication.com https://*.googleadservices.com https://www.google.com https://plausible.io https://*.hs-scripts.com https://*.hs-analytics.net https://*.hs-banner.com https://*.hsforms.net https://*.hsforms.com https://*.hscollectedforms.net https://*.hubspot.com https://js.hsforms.net https://js.hs-scripts.com https://js.hs-analytics.net https://js.hsadspixel.net https://js.hs-banner.com https://stream.mux.com https://inferred.litix.io https://snap.licdn.com https://*.licdn.com https://analytics.ahrefs.com https://bat.bing.com https://*.clarity.ms https://siteimproveanalytics.com https://*.siteimproveanalytics.com https://*.inzynk.io https://core.sanity-cdn.com https://challenges.cloudflare.com; style-src- strict-transport-security
max-age=63072000; includeSubDomains- cross-origin-opener-policy
same-origin-allow-popups