echangeonsnoslogements74.fr

.fr crawl

First seen 2026-05-04 · Last seen 2026-05-10 · ok HTTP/1.1 200 399 ms crawled 2026-05-10

FR · 46.255.163.43 · AS34177 Celeste SAS

Reputation 89/100 weak security headers dmarc monitor-only

Classifying

HTML metadata

Title
Bourse aux logements USH74
Description
La bourse d'échanges de logements à destination des bailleurs de logements sociaux USH74 et de leurs locataires.
Language
fr

Open Graph

url
https://echangeonsnoslogements74.fr
title
Bourse aux logements USH74
site name
https://echangeonsnoslogements74.fr
description
La bourse d'échanges de logements à destination des bailleurs de logements sociaux USH74 et de leurs locataires.

Technology

Server
Apache
Fonts
  • Google Fonts

Third-party hosts loaded (2)

  • fonts.googleapis.com×2
  • fonts.gstatic.com×1

Social

Registration

Registrar
AXINET COMMUNICATION
Created
2012-10-22
Expires
2026-10-22 153 days left
Updated
2025-11-30
Name servers
  • ns131.axinet.fr
  • ns3.axinet.fr

DNS records live

NS
  • ns131.axinet.fr
  • ns3.axinet.fr
MX
  • 10 mail.echangeonsnoslogements74.fr

Email authentication partial

SPF
v=spf1 a mx include:_spf.perfora.net include:_spf.kundenserver.de ip4:188.130.25.165 ip4:188.130.25.141 ip4:188.130.25.142 ip4:94.247.176.202 ~all
softfail (~all)
DMARC
v=DMARC1; p=none
policy: none (monitoring only)
DKIM
  • mail: TXT v=DKIM1; h=sha256; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzqr5iskQwVooWNIEwgzNZ2LXGnCtR43207SEDRbnWlwPkunCWgwFw0Zg4DPB8XFt…
selectors probed

Certificate (current)

E7
from 2026-05-10 to 2026-08-08
Expires in 79 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://echangeonsnoslogements74.fr/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' data: *.googleapis.com *.gstatic.com *.google.com *.ggpht.com *.googleusercontent.com *.googletagmanager.com *.google-analytics.com; img-src 'self' quickchart.io data: blob: *.googleapis.com *.gstatic.com *.google.com *.googleusercontent.com *.ggpht.com; frame-src 'self' *.google.com; connect-src 'self' *.googleapis.com *.google.com *.gstatic.com *.google-analytics.com data: blob:; font-src * 'unsafe-inline' data: blob: fonts.gstatic.com; style-src 'self' 'unsafe-inline' fonts.googleapis.com

Links to (6)

Linked from (1)