ludostation.com
HTML metadata
Technology
- Server
- openresty
- CMS
- Drupal
- Social widgets
-
- Vimeo Embed
Third-party hosts loaded (1)
- player.vimeo.com×1
Registration
- Registrar
- OVH sas
- Created
- 2007-07-11
- Expires
- 2026-07-11 53 days left
- Updated
- 2025-10-31
- Name servers
-
- dns10.ovh.net
- ns10.ovh.net
DNS records live
- NS
-
- dns10.ovh.net
- ns10.ovh.net
- MX
-
- 10 aspmx.l.google.com
- 100 aspmx2.googlemail.com
- 100 aspmx3.googlemail.com
- 100 aspmx4.googlemail.com
- 100 aspmx5.googlemail.com
- 50 alt1.aspmx.l.google.com
- 50 alt2.aspmx.l.google.com
- TXT
-
MS=F5628013854111D08FB7BF47BEA336F7ADEE2A05v=spf1 include:spf.mailjet.com include:_spf.google.com a mx ~allbrevo-code:5ea5dcf78210c59bdf7aa4738c535dff
Certificate (current)
E7
Expires in 32 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' data: *.ludostation.com *.googletagmanager.com *.google-analytics.com; frame-src 'self' player.vimeo.com *.google.com; img-src 'self' data: *.ludostation.com *.twimg.com; script-src * 'report-sample' 'unsafe-inline'; style-src * 'report-sample' 'unsafe-inline'; worker-src 'self'; base-uri 'self'; form-action 'self'; frame-ancestors 'self'- strict-transport-security
max-age=63072000; preload