yves-rocher.bg
Total score
0.33
/ 1.00
Web hosting
0.0Non-EU-controlled provider (US, CLOUDFLARENET)
- Hostname
- yves-rocher.bg
- IP address
- 104.26.2.140
- Country
- United States
- ASN
- CLOUDFLARENET
- Server software
- cloudflare (CDN: Cloudflare)
Show raw HTTP headers ↓
Date: Thu, 04 Jun 2026 16:56:10 GMT
Content-Type: text/html; charset=UTF-8
Connection: keep-alive
Server: cloudflare
Vary: Accept-Encoding
Set-Cookie: PHPSESSID=vrtjsi6qdntpso886jkg4e6ivk; expires=Thu, 11-Jun-2026 16:56:10 GMT; Max-Age=604800; path=/; domain=yves-rocher.bg; secure; HttpOnly; SameSite=Lax
Pragma: no-cache
Cache-Control: max-age=0, must-revalidate, no-cache, no-store
Expires: Wed, 04 Jun 2025 16:09:13 GMT
Content-Security-Policy: font-src *.gstatic.com *.icons8.com 'self' data: *.onesignal.com fonts.googleapis.com fonts.gstatic.com *.fontawesome.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.google.com *.facebook.com https://www.facebook.com/ ping.contactpigeon.com www.contactpigeon.com *.contactpigeon.com *.onesignal.com secure.kbcbank.bg 'self' www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com *.cardinalcommerce.com *.paypal.com 3ds-secure.cardcomplete.com www.clicksafe.lloydstsb.com pay.activa-card.com *.wirecard.com acs.sia.eu *.touchtechpayments.com www.securesuite.co.uk rsa3dsauth.com *.monzo.com *.arcot.com *.wlp-acs.com * 'self' 'unsafe-inline'; frame-ancestors *.google.com *.facebook.com https://www.facebook.com/ ping.contactpigeon.com www.contactpigeon.com *.contactpigeon.com *.onesignal.com *.doubleclick.net *.meetanshi.com 'self'; frame-src fast.amc.demdex.net *.adobe.com bid.g.doubleclick.net geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.youtube.com *.youtube-nocookie.com www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com player.vimeo.com https://www.google.com/recaptcha/ *.google.com *.facebook.com *.facebook.net https://static.addtoany.com/ ping.contactpigeon.com www.contactpigeon.com *.contactpigeon.com *.onesignal.com *.doubleclick.net https://www.googletagmanager.com/ *.addthis.com *.twitter.com *.meetanshi.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com www.commercepartnerhub.com c.paypal.com checkout.paypal.com assets.braintreegateway.com pay.google.com *.cardinalcommerce.com *.paypal.com * *.wesupply.xyz https://wesupplylabs.com *.weltpixel.com www.xtento.com 'self' 'unsafe-inline'; img-src assets.adobedtm.com amcglobal.sc.omtrdc.net dpm.demdex.net cm.everesttech.net *.adobe.com widgets.magentocommerce.com data: www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net analytics.google.com www.googletagmanager.com *.ftcdn.net *.behance.net t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com i.ytimg.com *.youtube.com validator.swagger.io 'self' data: *.google.com *.google.nl *.google.bg *.g.doubleclick.net *.facebook.com ping.contactpigeon.com www.contactpigeon.com *.contactpigeon.com *.onesignal.com *.cdninstagram.com *.hotjar.com *.googleapis.com *.gstatic.com services.speedy.bg ebizmarts-website.s3.amazonaws.com downloads.mailchimp.com gallery.mailchimp.com form-assets.mailchimp.com http://www.googleadservices.com/ http://www.google-analytics.com/ https://www.googleadservices.com/ https://www.google-analytics.com/ https://www.google.com/ https://www.facebook.com/ magefan.com cm.magefan.com *.disqus.com *.addthisedge.com *.twitter.com *.meetanshi.com https://meetanshi.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com www.sandbox.paypal.com b.stats.paypal.com dub.stats.paypal.com assets.braintreegateway.com c.paypal.com checkout.paypal.com *.paypal.com maps.gstatic.com www.xtento.com cdn.xtento.com data: 'self' 'unsafe-inline'; script-src assets.adobedtm.com *.adobe.com www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net analytics.google.com www.googletagmanager.com geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com *.newrelic.com *.nr-data.net www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com s.ytimg.com www.googleapis.com vimeo.com www.vimeo.com *.vimeocdn.com *.youtube.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ *.google.com *.gstatic.com ping.contactpigeon.com www.contactpigeon.com *.contactpigeon.com *.facebook.com *.doubleclick.net *.facebook.net *.paypal.com https://jobboxpro.com/ https://static.addtoany.com/ *.onesignal.com https://onesignal.com *.hotjar.com cdn.jsdelivr.net www.facebook.com chimpstatic.com downloads.mailchimp.com *.list-manage.com form-assets.mailchimp.com http://www.googletagmanager.com/ https://www.googletagmanager.com/ *.disqus.com *.addthis.com *.moatads.com *.addthisedge.com *.twitter.com *.avada.io *.meetanshi.com *.googletagmanager.com https://www.googletagmanager.com tagmanager.google.com connect.facebook.net graph.facebook.com business.facebook.com js.braintreegateway.com assets.braintreegateway.com c.paypal.com pay.google.com api.braintreegateway.com api.sandbox.braintreegateway.com client-analytics.braintreegateway.com client-analytics.sandbox.braintreegateway.com songbirdstag.cardinalcommerce.com maps.googleapis.com *.cloudflare.com www.xtento.com cdn.xtento.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com *.googleapis.com *.icons8.com ping.contactpigeon.com www.contactpigeon.com *.contactpigeon.com *.onesignal.com https://onesignal.com cdn.jsdelivr.net fonts.googleapis.com downloads.mailchimp.com *.fontawesome.com unsafe-inline assets.braintreegateway.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src *.adobe.com http://www.googleadservices.com/ http://www.google-analytics.com/ https://www.googleadservices.com/ https://www.google-analytics.com/ 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net www.google-analytics.com www.googleadservices.com analytics.google.com www.googletagmanager.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.google-analytics.com *.doubleclick.net *.google.com *.facebook.com ping.contactpigeon.com www.contactpigeon.com *.contactpigeon.com *.onesignal.com *.hotjar.com *.hotjar.io ws.hotjar.com wss://ws.hotjar.com/api/v2/client/ws *.googleapis.com form-assets.mailchimp.com *.intuit.com *.amazonaws.com http://stats.g.doubleclick.net/ https://stats.g.doubleclick.net/ http://www.google-analytics.com/ https://www.google-analytics.com/ https://get.geojs.io *.avada.io *.meetanshi.com https://www.google-analytics.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com api.braintreegateway.com api.sandbox.braintreegateway.com client-analytics.braintreegateway.com client-analytics.sandbox.braintreegateway.com *.braintree-api.com *.paypal.com *.cardinalcommerce.com google.com 'self' 'unsafe-inline'; child-src assets.braintreegateway.com c.paypal.com *.paypal.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
cf-cache-status: DYNAMIC
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=dnZ1aQTVwyxlryl7padN3PAB6ZmUPETJdbqXJZYmfxgj9laH0qeELC5QopdWSFLkoFhcprcx9oD9IFi7tb%2BjOGbPt40AtCR%2F2kDFQPslPRlo5dmQxkjs2AY%2FkUd5iU0j%2BooW7c51sW8h81iU"}]}
Content-Encoding: br
CF-RAY: a06878282897353c-FRA
Verify independently
- Look up this IP on bgp.he.net (104.26.2.140) ↗
- Search this ASN on bgp.he.net ↗
- Run a DNS lookup on this host (yves-rocher.bg) ↗
Last scanned:
Mail hosting
1.0Hosted in the EU by an EU provider (Global One Ltd.)
- MX hostname
- mail.yves-rocher.bg
- IP address
- 193.8.4.133
- Country
- Bulgaria
- ASN
- Global One Ltd.
Verify independently
- Look up this IP on bgp.he.net (193.8.4.133) ↗
- Search this ASN on bgp.he.net ↗
- Run a DNS lookup on this host (mail.yves-rocher.bg) ↗
Last scanned:
DNS
0.0DNS is managed by a non-EU provider: Cloudflare
- Primary nameserver
- pat.ns.cloudflare.com
- Country
- US
- ASN
- CLOUDFLARENET
Verify independently
- Search this ASN on bgp.he.net ↗
- Run a DNS lookup on this host (pat.ns.cloudflare.com) ↗
- To verify yourself, run: dig +short pat.ns.cloudflare.com, then look up the IP on bgp.he.net.
Last scanned:
Score values: 1.0 = sovereign (EU-hosted, EU provider). 0.0 = non-sovereign (outside the EU, or on a non-EU-controlled provider — US, UK, etc. — regardless of where the datacenter sits). N/A = the sub-score couldn't be measured (no MX record, unresolvable host, etc.) and is excluded from the total.