agriculture-dromoise.fr
HTML metadata
Technology
- CDN
- Cloudflare
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (3)
- youtube.com×7
- www.youtube.com×3
- tarteaucitron.io×1
Social
Registration
- Registrar
- GANDI
- Created
- 2000-07-04
- Expires
- 2026-07-04 44 days left
- Updated
- 2025-06-21
- Name servers
-
- jocelyn.ns.cloudflare.com
- sid.ns.cloudflare.com
DNS records live
- NS
-
- jocelyn.ns.cloudflare.com
- sid.ns.cloudflare.com
- MX
-
- 10 mx-01-eu-central-1.prod.hydra.sophos.com
- 50 mx-02-eu-central-1.prod.hydra.sophos.com
- TXT
-
sophos-domain-verification=b9b8b6dec9468e180c50c59ed5963e7f18602d06
- Verified for
-
- Brevo
Email authentication partial
- SPF
-
v=spf1 include:_mailcust.gandi.net include:spf.mailjet.com ?allneutral (?all) - DMARC
-
V=DMARC1; p=none; rua=mailto: rua@dmarc.brevo.compolicy: none (monitoring only) - DKIM
-
- mail:
k=rsa;p=MIGfMA0GCSqGS[b3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JSNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5eyOnRBH0ZVxp+1smTxid2Y2z…
selectors probed - mail:
Certificate (current)
WE1
Expires in 45 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src * 'self' 'unsafe-inline' 'unsafe-eval'; style-src 'self' 'unsafe-inline' fonts.googleapis.com cdn.tarteaucitron.io cdn.jsdelivr.net plugin-numericdiffusion.legalplus.fr; img-src * 'self' data:; font-src 'self' data: fonts.gstatic.com; connect-src * 'self'; object-src 'none'; frame-src * 'self'; upgrade-insecure-requests- strict-transport-security
max-age=31536000