dolibarr.org

.org crawl

First seen 2026-04-14 · Last seen 2026-05-18 · ok HTTP/1.1 200 819 ms crawled 2026-05-08

US · 172.67.199.88 · AS13335 Cloudflare, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Dolibarr Open Source ERP and CRM - Web suite for business
Description
Web based ERP and CRM Open Source software to manage a professional or foundation activity (sme, freelancers or large companies): quotation or commercial proposals, invoices, products, contacts, agenda, orders, purchases, stocks, emailings, CMS, POS
Language
en
Generator
Dolibarr 23.0.2 (https://www.dolibarr.org)
Canonical
https://www.dolibarr.org/
Feeds

Technology

CDN
Cloudflare
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts

Third-party hosts loaded (6)

  • cdnjs.cloudflare.com×3
  • cdn.transifex.com×2
  • fonts.googleapis.com×2
  • pouet.chapril.org×1
  • schema.org×1
  • www.googletagmanager.com×1

Social

Registration

Registrar
OVH sas
Created
2006-04-01
Expires
2031-04-01 1777 days left
Updated
2026-04-06
Name servers
  • alexis.ns.cloudflare.com
  • lara.ns.cloudflare.com

DNS records live

NS
  • alexis.ns.cloudflare.com
  • lara.ns.cloudflare.com
MX
  • 1 aspmx.l.google.com
  • 10 alt3.aspmx.l.google.com
  • 10 alt4.aspmx.l.google.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
TXT
Show 4 TXT records
  • facebook-domain-verification=x8g03sqj6n9zpykza4uvz4brpwr94d
  • lxPyRL_oe3TOsNB9b-hID5pFSiwc8OI
  • 1|www.dolibarr.org
  • Sendinblue-code:fc6e67038a0180e0b542aecd35378162

Email authentication strong

SPF
v=spf1 a mx ip4:213.32.74.252 ip4:149.202.186.28 ip4:137.74.26.187 ip4:149.202.175.202 ip4:213.32.74.155 ip4:217.182.141.237 include:spf.sendinblue.com include:_spf.google.com include:mx.ovh.com -all
strict (-all)
DMARC
v=DMARC1; p=quarantine; pct=100; rua=mailto:supervision@dolibarr.org!1m; ruf=mailto:supervision@dolibarr.org!1m;
policy: quarantine
DKIM
  • google: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAgMIYrwwz24bRh8UQfpIF0wqWOp8X5iPWz2ijB0SW3dy9QuVqbDKTqNjkLiPjdVm1wsKLD+C18GDeCA…
  • mail: k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2…
selectors probed

Certificate (current)

WE1
from 2026-03-10 to 2026-06-08
Expires in 19 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.dolibarr.org/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
camera=(), microphone=(), geolocation=()
x-content-type-options
nosniff
content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' data: *.dolibarr.org matomo.dolibarr.org *.sf-syn.com *.transifex.net *.transifex.com *.cloudflare.com *.google-analytics.com *.googletagmanager.com *.google.com *.gstatic.com *.googleapis.com *.googleadservices.com *.ads-twitter.com *.twitter.com *.facebook.net *.cloudflareinsights.com *.jquery.com *.dolistore.com *.doubleclick.net *.spreadshirt.net *.myspreadshop.net *.onetrust.com *.ckeditor.com; frame-ancestors 'self'; object-src https://youtube.com; frame-src 'self' *.google.com *.paypal.com *.googletagmanager.com *.twitter.com *.facebook.com *.producthunt.com *.dolibarr.org *.dolistore.com *.youtube.com *.spreadshirt.net *.myspreadshop.net inlitube.fr; img-src * data: ; style-src-elem 'self' 'unsafe-inline' https://admin.dolibarr.org/includes/ckeditor/ *.ckeditor.com *.myspreadshop.net https://fonts.googleapis.com https://cdnjs.cloudflare.com https://code.jquery.com cdn.transifex.com;
strict-transport-security
max-age=31536000; includeSubDomains

Links to (13)

Linked from (12)