constructys.fr
HTML metadata
Technology
- Server
- Apache
- CMS
- WordPress
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- ajax.googleapis.com×1
- fonts.googleapis.com×1
- fonts.gstatic.com×1
- gmpg.org×1
Social
Registration
- Registrar
- GANDI
- Created
- 2011-11-25
- Expires
- 2028-12-20 945 days left
- Updated
- 2025-12-07
- Name servers
-
- ns-110-a.gandi.net
- ns-137-c.gandi.net
- ns-26-b.gandi.net
DNS records live
- NS
-
- ns-110-a.gandi.net
- ns-137-c.gandi.net
- ns-26-b.gandi.net
- MX
-
- 10 constructys-fr.mail.protection.outlook.com
- TXT
-
Show 9 TXT records
pardot898521=c97d052027b17b7df15da93589e38d5dd371189ed28bc2f2dacb7f349a32ed7emsrd4QKfQ6az7QK8/SLZglxSV/POrdCfCxg2rb0qimAa+NdRyz0cjylsE8pD2ZU2be2fpQoh/GYtqtAnJIpG+g==48c7nug.creator.cs.zohohost.euteamviewer-sso-verification=1c35ef9931a94ac09e2c09e9289843f9Sendinblue-code:acdd45d11354740b8d791572921c5790google-site-verification=1NAx4CIKjEUw4TiLeG956kTpD34JOD6b-Eo6Ajz2mvcgoogle-site-verification=uB8bbHMOrqMjYlO6duXMTJiE3kMHMELSZUFXHdvZyS4JgTWs3ig3ksZgy8C8jG2fi949U0och8i3ybg2ws22xntjhrf0fqw2n424h2mtp52
Email authentication strong
- SPF
-
v=spf1 include:spf1.constructys.fr include:spf.sendinblue.com include:usermail.zohocreator.eu include:_spf.salesforce.com include:spf.mailjet.com include:spf.protection.outlook.com a ip4:176.161.219.0/26 ip4:176.97.207.192/26 ip4:176.31.40.234 include:aspmx.pardot.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:gregori.panfiloff@constructys.fr; ruf=mailto:gregori.panfiloff@constructys.frpolicy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDVVDhJg/pBM3Oka1RjHuEYxhsUh3qaeZLrq9WgwIPpS8ItXeos33NqLN1wfuizhSBSL0D5l7p924JtpBFi3q… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed - selector1:
Certificate (current)
GandiCert
Expires in 164 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- weak frame protection
- weak content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN, DENY- x-content-type-options
nosniff- content-security-policy
default-src 'self' ; form-action 'self'; base-uri 'self'; block-all-mixed-content; frame-ancestors 'self'; frame-src www.marches-publics.info www.youtube.com umap.openstreetmap.fr www.elegantthemes.com 'self' ; connect-src 'self' maps.googleapis.com matomo.constructys.fr ai.elegantthemes.com ; object-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' ajax.googleapis.com maps.googleapis.com www.google-analytics.com matomo.constructys.fr blob: ; img-src 'self' secure.gravatar.com s.w.org ps.w.org www.elegantthemes.com data: ; style-src 'self' 'unsafe-inline' fonts.googleapis.com ; font-src 'self' fonts.gstatic.com data: ;- strict-transport-security
max-age=16070400; includeSubDomains