leforem.be

.be crawl

First seen 2026-05-21 · Last seen 2026-05-30 · ok HTTP/1.1 200 784 ms crawled 2026-05-28

NL · 40.74.36.103 · AS8075 Microsoft Corporation

Reputation 100/100

Classifying

HTML metadata

Title
Citoyens | Le Forem
Description
Espace citoyens du Forem : accédez aux offres d'emploi, de formations et les services du Forem. Toutes les infos essentielles pour les citoyens, les jeunes sortant de l'école, les chercheurs d'emploi et les travailleurs.
Language
fr-BE
Canonical
https://www.leforem.be/index.html

Open Graph

url
https://www.leforem.be/index.html
title
Citoyens
site name
Le Forem
description
Espace citoyens du Forem : accédez aux offres d'emploi, de formations et les services du Forem. Toutes les infos essentielles pour les citoyens, les jeunes sortant de l'école, les chercheurs d'emploi et les travailleurs.

Technology

Server
Apache
CMS
Gatsby
Analytics
  • Google Tag Manager
  • Hotjar

Third-party hosts loaded (6)

  • assets.adobedtm.com×1
  • cdn.jsdelivr.net×1
  • script.hotjar.com×1
  • static.hotjar.com×1
  • unpkg.com×1
  • www.googletagmanager.com×1

Social

Contact

Phone

DNS records live

NS
  • nameserver1.win.be
  • nameserver2.win.be
MX
  • 0
TXT
  • LMYrW/G+LJroS/Ihq91gg2LC0++4o3XpFq2NIXWfOmo=
Verified for
  • GlobalSign
  • Google
  • Microsoft 365

Email authentication strong

SPF
v=spf1 -all
strict (-all)
DMARC
v=DMARC1 ; p=reject ; rua=mailto:dmarc-parking@forem.be; ruf=mailto:dmarc-parking@forem.be ; sp=reject
policy: reject (enforced) · sp=reject
DKIM
Show 12 DKIM selectors
  • default: v=DKIM1;p=
  • google: v=DKIM1;p=
  • selector1: v=DKIM1;p=
  • selector2: v=DKIM1;p=
  • k1: v=DKIM1;p=
  • k2: v=DKIM1;p=
  • mail: v=DKIM1;p=
  • dkim: v=DKIM1;p=
  • s1: v=DKIM1;p=
  • s2: v=DKIM1;p=
  • mxvault: v=DKIM1;p=
  • smtpapi: v=DKIM1;p=
selectors probed

Certificate (current)

GlobalSign RSA OV SSL CA 2018
from 2026-01-07 to 2027-02-08
Expires in 253 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.leforem.be/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
strict-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'unsafe-eval' 'unsafe-inline' *.clarity.ms *.jsdelivr.net unpkg.com *.doubleclick.net *.demdex.net *.googleapis.com *.hotjar.com *.hotjar.io ws://ws.hotjar.com wss://ws.hotjar.com *.google-analytics.com *.adobedtm.com *.adobeaemcloud.com *.leforem.be *.forem.be *.googletagmanager.com *.gstatic.com *.google.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.clarity.ms https://*.googletagmanager.com https://*.google-analytics.com https://*.google.com https://*.gstatic.com https://unpkg.com https://*.forem.be https://*.leforem.be https://*.hotjar.com https://*.adobedtm.com https://partner.googleadservices.com https://syndicatedsearch.goog https://ep1.adtrafficquality.google https://ep2.adtrafficquality.google; script-src-elem 'self' 'unsafe-inline' 'unsafe-eval' *.clarity.ms *.jsdelivr.net unpkg.com *.doubleclick.net *.demdex.net *.googleapis.com *.hotjar.com *.hotjar.io ws://ws.hotjar.com wss://ws.hotjar.com *.google-analytics.com *.adobedtm.com *.adobeaemcloud.com *.lefo
strict-transport-security
max-age=63072000; includeSubdomains;

Links to (9)

Linked from (6)