fabriquecitoyenne.fr
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Cloudflare Insights
- Fonts
-
- Font Awesome
Third-party hosts loaded (6)
- fonts.cdnfonts.com×1
- maps.googleapis.com×1
- maxcdn.bootstrapcdn.com×1
- stackpath.bootstrapcdn.com×1
- static.cloudflareinsights.com×1
- use.fontawesome.com×1
Registration
- Registrar
- GANDI
- Created
- 2021-09-07
- Expires
- 2026-09-07 110 days left
- Updated
- 2026-02-10
- Name servers
-
- ns-116-b.gandi.net
- ns-231-c.gandi.net
- ns-84-a.gandi.net
DNS records live
- NS
-
- ns-116-b.gandi.net
- ns-231-c.gandi.net
- ns-84-a.gandi.net
- MX
-
- 10 spool.mail.gandi.net
- 50 fb.mail.gandi.net
Email authentication partial
- SPF
-
v=spf1 include:_mailcust.gandi.net ?allneutral (?all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
E7
Expires in 23 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
no-referrer-when-downgrade- permissions-policy
xr-spatial-tracking=(self), geolocation=(self), midi=(), sync-xhr=(), microphone=(self), camera=(self), magnetometer=(), gyroscope=(), fullscreen=(self), payment=()- x-content-type-options
nosniff- content-security-policy
default-src * 'unsafe-inline' 'unsafe-eval'; script-src * data: blob: https://* 'unsafe-inline' 'unsafe-eval'; worker-src blob:; connect-src * 'unsafe-inline'; img-src * data: blob: 'unsafe-inline'; frame-src * data: blob: ;frame-ancestors 'self'; style-src * data: https://* 'unsafe-inline';- strict-transport-security
max-age=15768000
Links to (2)
- rennes.fr×2
- office.com×2