fabriquecitoyenne.fr

.fr crawl

First seen 2026-04-13 · Last seen 2026-05-02 · ok HTTP/1.1 200 387 ms crawled 2026-05-07

US · 104.17.4.91 · AS13335 Cloudflare, Inc.

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
La Fabrique Citoyenne - Rennes
Language
fr
Canonical
https://fabriquecitoyenne.fr/

Open Graph

url
https://fabriquecitoyenne.fr/
title
La Fabrique Citoyenne - Rennes
site name
La Fabrique Citoyenne - Rennes

Technology

CDN
Cloudflare
Analytics
  • Cloudflare Insights
Fonts
  • Font Awesome

Third-party hosts loaded (6)

  • fonts.cdnfonts.com×1
  • maps.googleapis.com×1
  • maxcdn.bootstrapcdn.com×1
  • stackpath.bootstrapcdn.com×1
  • static.cloudflareinsights.com×1
  • use.fontawesome.com×1

Registration

Registrar
GANDI
Created
2021-09-07
Expires
2026-09-07 110 days left
Updated
2026-02-10
Name servers
  • ns-116-b.gandi.net
  • ns-231-c.gandi.net
  • ns-84-a.gandi.net

DNS records live

NS
  • ns-116-b.gandi.net
  • ns-231-c.gandi.net
  • ns-84-a.gandi.net
MX
  • 10 spool.mail.gandi.net
  • 50 fb.mail.gandi.net

Email authentication partial

SPF
v=spf1 include:_mailcust.gandi.net ?all
neutral (?all)
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

E7
from 2026-03-14 to 2026-06-12
Expires in 23 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://fabriquecitoyenne.fr/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
Header values
referrer-policy
no-referrer-when-downgrade
permissions-policy
xr-spatial-tracking=(self), geolocation=(self), midi=(), sync-xhr=(), microphone=(self), camera=(self), magnetometer=(), gyroscope=(), fullscreen=(self), payment=()
x-content-type-options
nosniff
content-security-policy
default-src * 'unsafe-inline' 'unsafe-eval'; script-src * data: blob: https://* 'unsafe-inline' 'unsafe-eval'; worker-src blob:; connect-src * 'unsafe-inline'; img-src * data: blob: 'unsafe-inline'; frame-src * data: blob: ;frame-ancestors 'self'; style-src * data: https://* 'unsafe-inline';
strict-transport-security
max-age=15768000

Links to (2)

Linked from (1)