cgtetat.fr
HTML metadata
Technology
- Server
- nginx
Social
Contact
- Phone
- Address
- rue de ParisCase 54293
Registration
- Registrar
- OVH
- Created
- 2022-07-13
- Expires
- 2026-07-13 53 days left
- Updated
- 2025-08-31
- Name servers
-
- ns1.octopuce.fr
- ns2.octopuce.net
DNS records live
- NS
-
- ns1.octopuce.fr
- ns2.octopuce.net
- MX
-
- 5 mail.syndifab.fr
Email authentication partial
- SPF
-
v=spf1 include:spf.syndifab.fr a mx ?allneutral (?all) - DMARC
-
v=DMARC1;p=none;pct=100;rua=mailto:rua@syndifab.fr;aspf=r;adkim=rpolicy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
R12
Expires in 73 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=('self'), battery=(), camera=(), display-capture=('self'), execution-while-not-rendered=('self'), execution-while-out-of-viewport=('self'), geolocation=('self'), fullscreen=('self'), gyroscope=(), magnetometer=(), microphone=('self'), midi=(), navigation-override=('self'), oversized-images=('self'), payment=(), picture-in-picture=('self'), speaker-selection=('self'), usb=('self')- x-content-type-options
nosniff- content-security-policy
default-src 'self'; img-src 'self' *.w3.org; script-src 'unsafe-inline' 'unsafe-eval' 'self'; font-src 'self' fonts.gstatic.com; style-src 'unsafe-inline' 'self' fonts.googleapis.com; frame-src *.youtube.com *.calameo.com;- strict-transport-security
max-age=63072000; includeSubDomains, max-age=31536000; includeSubDomains; preload