apiterra.fr
HTML metadata
Technology
- CMS
- WordPress
- Fonts
-
- Google Fonts
Third-party hosts loaded (3)
- fonts.googleapis.com×5
- fonts.gstatic.com×3
- challenges.cloudflare.com×2
Contact
- Phone
- Address
- Rue Saint Just93100
Registration
- Registrar
- Infomaniak Network SA
- Created
- 2009-07-22
- Expires
- 2027-07-12 419 days left
- Updated
- 2025-06-22
- Name servers
-
- ns41.infomaniak.com
- ns42.infomaniak.com
DNS records live
- NS
-
- ns41.infomaniak.com
- ns42.infomaniak.com
- MX
-
- 0 apiterra-fr.mail.protection.outlook.com
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:spf.mailjet.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; sp=quarantine; pct=100; adkim=r; aspf=r;policy: quarantine · sp=quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxcq5tQ7vlC2+c94HDWFOSESV0okZErL0/NDMVph6V3nS4XdqBl8EgSQBWczNeSsT6wIoEdMOwYro+m… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt/h7lurHYx+wYL3Z/dnMfDC1zVqX6nVfBbOX5CK6EqAEJDDS91pn8ZojWWBbhdmnK1AlTPssxQ7iCh…
selectors probed - selector1:
Certificate (current)
R13
Expires in 66 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
autoplay=(self "https://youtube.com" "https://www.facebook.com" "https://www.dailymotion.com" "https://www.vimeo.com"),fullscreen=(self "https://www.youtube.com" "https://www.facebook.com" "https://www.dailymotion.com" "https://www.vimeo.com"),geolocation=(self),accelerometer=(),ambient-light-sensor=(),battery=(),camera=(),display-capture=(),document-domain=(),encrypted-media=(),execution-while-not-rendered=(),execution-while-out-of-viewport=(),gamedpad=(),gyroscope=(),hid=(),identity-credentials-get=(),idle-detection=(),local-fonts=(),magnetometer=(),microphone=(),midi=(),payment=(),picture-in-picture=(),publickey-credentials-create=(),publickey-credentials-get=(),screen-wake-lock=(),serial=(),speaker-selection=(),storage-access=(),usb=(),xr-spatial-tracking=()- x-content-type-options
nosniff- content-security-policy
default-src * 'unsafe-inline' 'unsafe-eval' data: blob:;- strict-transport-security
max-age=31536000; includeSubDomains; preload- cross-origin-resource-policy
same-site