anah.gouv.fr
HTML metadata
Technology
- Server
- Apache
- CMS
- Drupal
Third-party hosts loaded (1)
- cdn.jsdelivr.net×1
Social
Registration
- Registrar
- NAMESHIELD
- Created
- 2002-05-12
- Expires
- 2026-08-19 90 days left
- Updated
- 2025-08-22
- Name servers
-
- a.ns.developpement-durable.gouv.fr
- b.ns.developpement-durable.gouv.fr
- nsa.perf1.fr
- nsb.perf1.com
- nsc.perf1.com
DNS records live
- NS
-
- a.ns.developpement-durable.gouv.fr
- b.ns.developpement-durable.gouv.fr
- nsa.perf1.fr
- nsb.perf1.com
- nsc.perf1.com
- MX
-
Show 6 MX records
- 10 ca.relternet-01.developpement-durable.gouv.fr
- 10 ca.relternet-02.developpement-durable.gouv.fr
- 10 cs.relternet-01.developpement-durable.gouv.fr
- 10 cs.relternet-02.developpement-durable.gouv.fr
- 5 relternet-01.developpement-durable.gouv.fr
- 5 relternet-02.developpement-durable.gouv.fr
- TXT
-
Show 5 TXT records
_vzxkt9c56ljimsz9lqmhm2ydjhmbwsw_ik5t7o4znd1d4kiyceihzrzzj99zrqv_jbqxek77e7ddofvke9vvsz07t7sclkn_65m74tyd35zhujn1b3f46rn34zvpqxc_zyvpue7ywhuecdup3wn7ujqyqcu6tzw
- Verified for
-
- Atlassian
Email authentication partial
- SPF
-
v=spf1 mx include:spf.mailjet.com include:_spf.developpement-durable.gouv.fr include:_spf-paas.eolas-services.com include:_spf.questback.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; fo=1; rua=mailto:dmarc-rua@developpement-durable.gouv.fr,mailto:ivd04g8f@ag.eu.dmarcadvisor.com; ruf=mailto:dmarc-ruf@developpement-durable.gouv.frpolicy: none (monitoring only) - DKIM
-
- mail:
v=DKIM1; k=rsa; s=email; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nR… - dkim:
v=DKIM1; k=rsa; s=email; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQD37Nim2Y6RVPNNSMxBPWeLbZiYiFOZlYz6Ct7kl9ec+ud7ytfj4SxfHxf8sxmrhLNxqq/VE6aNG…
selectors probed - mail:
Certificate (current)
Certigna Services CA
Expires in 61 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
font-src 'self' themes.googleusercontent.com data:; frame-src 'self' https://player.vimeo.com/ https://www.dailymotion.com/ https://youtu.be/ https://www.youtube.com/ https://simulaides.ademe.fr/ https://bo-ris.ademe.fr/ https://preprod-simulaidesv2.ademe-dri.fr/ http://preprod-ris.ademe.fr/ https://prod-ris.ademe-dri.fr/ https://www3.ademe.fr/ https://experience.arcgis.com/ https://geo.dailymotion.com/ https://*.arcgis.com https://cartanah.anah.gouv.fr/ ; img-src 'self' data: https://logs1412.xiti.com https://vocalcom01.teleperformance.fr http://gva.et-gv.fr http://muth.anah.fr ; manifest-src 'self'; object-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://player.vimeo.com/api/ wss://widget-mediator.zopim.com https://static.zdassets.com https://cdn.jsdelivr.net; script-src-attr 'self' 'unsafe-inline'; script-src-elem 'self' 'unsafe-inline' https://static.zdassets.com http://gva.et-gv.fr http://muth.anah.fr https://cdn.jsdelivr.net; style-src 'self' 'unsafe-inline' h- strict-transport-security
max-age=16000000;includeSubDomains;