collegien-shop.fr
HTML metadata
Technology
- Server
- dis-waf
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- cdn.brevo.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- GANDI
- Created
- 2009-03-23
- Expires
- 2026-06-30 40 days left
- Updated
- 2025-06-23
- Name servers
-
- ns.dis-hosting.eu
- ns.dis-hosting.fr
- ns.dis-hosting.net
- ns.dis-hosting.org
DNS records live
- NS
-
- ns.dis-hosting.eu
- ns.dis-hosting.fr
- ns.dis-hosting.net
- ns.dis-hosting.org
- MX
-
- 10 mx00.1and1.fr
- 10 mx01.1and1.fr
- Verified for
-
Email authentication weak
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 34 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' api.lyra.com api.payzen.eu ajax.googleapis.com *.colissimo.fr *.mapbox.com www.paypalobjects.com *.google.com *.google.fr *.googleadservices.com googleads.g.doubleclick.net connect.facebook.net sw-assets.ekomiapps.de static.payzen.eu *.paypal.com secure.payzen.eu www.google-analytics.com maps.googleapis.com *.googletagmanager.com www.clarity.ms *.axept.io sibautomation.com s.pinimg.com ct.pinterest.com cdn.brevo.com *.brevo.com;frame-src * 'self';style-src 'self' 'unsafe-inline' api.lyra.com api.payzen.eu *.colissimo.fr *.mapbox.com widgets.ekomi.com sw-assets.ekomiapps.de static.payzen.eu secure.payzen.eu fonts.googleapis.com www.googletagmanager.com fonts.axept.io;img-src 'self' data: api.lyra.com *.front-commerce.com collegien-shop.fr *.colissimo.fr *.mapbox.com *.onyourmap.com stats.g.doubleclick.net *.paypal.com *.instagram.com *.cdninstagram.com *.google.com *.google.fr googleads.g.doubleclick.net www.facebook.com- strict-transport-security
max-age=15552000; includeSubDomains- content-security-policy-report-only
default-src 'self' *;script-src 'self' 'unsafe-inline' 'unsafe-eval' *;frame-src 'self' api.lyra.com ws.colissimo.fr admin.v2019.collegien.dis-hosting.fr www.facebook.com static.payzen.eu *.paypal.com www.paypalobjects.com secure.payzen.eu *.doubleclick.net sibautomation.com www.googletagmanager.com ct.pinterest.com sibautomation.com cdn.brevo.com;style-src 'self' 'unsafe-inline' *;img-src 'self' data: *;font-src 'self' data: *;connect-src 'self' *;base-uri 'self' *;report-uri /csp/report
Links to (3)
Linked from (1)
- ph2m.com×1