lecotentin.fr

.fr crawl

First seen 2026-04-14 · Last seen 2026-05-18 · ok HTTP/1.1 200 445 ms crawled 2026-05-07

FR · 109.234.167.140 · AS50474 O2switch SAS

Reputation 92/100 no dmarc policy

sector government type homepage

HTML metadata

Title
Accueil - Agglo du Cotentin
Description
Découvrez l’Agglomération du Cotentin : services, actualités et actions pour le territoire et ses habitants
Language
fr-FR
Generator
WP Rocket 3.21.1
Canonical
https://www.lecotentin.fr/
Feeds

Open Graph

url
https://www.lecotentin.fr/
title
Accueil - Agglo du Cotentin
locale
fr_FR
site name
Agglo du Cotentin
description
Découvrez l’Agglomération du Cotentin : services, actualités et actions pour le territoire et ses habitants

Technology

Server
o2switch-PowerBoost-v3
CMS
WordPress
Analytics
  • Google Tag Manager

Third-party hosts loaded (2)

  • gmpg.org×1
  • www.googletagmanager.com×1

Social

Registration

Registrar
GANDI
Created
2016-10-18
Expires
2026-11-10 175 days left
Updated
2025-09-10
Name servers
  • ns-14-a.gandi.net
  • ns-29-b.gandi.net
  • ns-67-c.gandi.net

DNS records live

NS
  • ns-14-a.gandi.net
  • ns-29-b.gandi.net
  • ns-67-c.gandi.net
MX
  • 10 mailgate.lecotentin.fr
TXT
  • google-site-verification=wjMKJSEVobDOyHho1P7xLaQpR6ocJBqxt4Lo0G90PNA
  • MS=ms96157500

Email authentication weak

SPF
v=spf1 mx ip4:213.32.80.163 ip4:95.141.100.232 ip4:94.23.210.220 ip4:109.234.167.140 ip4:45.85.45.9 ip4:35.181.11.152 include:_spf.o2switch.inovawork.net include:spf.horanet.com include:spf.mailjet.com ~all
softfail (~all)
DMARC
not published
DKIM
  • default: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzNl46wfPMwPVWr+rxK2d4gM4KE2zXwxiuziXmwbJ/QiAPVwX2KGoRpr6cEgFbFBWhYcLaNPCMCwGqF…
selectors probed

Certificate (current)

R12
from 2026-04-14 to 2026-07-13
Expires in 55 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.lecotentin.fr/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
fullscreen=*, geolocation=*, camera=*, microphone=*, display-capture=*
x-content-type-options
nosniff
content-security-policy
default-src * https: data: blob: 'unsafe-inline' 'unsafe-eval';
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (7)

Linked from (8)