luqi.fr

.fr crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 763 ms crawled 2026-05-18

US · 104.18.40.200 · AS13335 Cloudflare, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
LuQi

Technology

CDN
Cloudflare
Fonts
  • Google Fonts

Third-party hosts loaded (1)

  • fonts.googleapis.com×1

Registration

Registrar
CSC CORPORATE DOMAINS INC.
Created
2014-09-05
Expires
2026-09-19 121 days left
Updated
2025-09-20
Name servers
  • dom.ns.cloudflare.com
  • mia.ns.cloudflare.com

DNS records live

NS
  • dom.ns.cloudflare.com
  • mia.ns.cloudflare.com
MX
  • 10 luqi-fr.mail.protection.outlook.com
  • 50 luqi-fr.mail.protection.outlook.com
TXT
Show 4 TXT records
  • 5xnpbjcn5pchc1trq9z7smtcks2f3n0j
  • _5nn9gcdxctc172e7gimelkxada1eks7
  • box-domain-verification=d0369ff4a0618ff19f1d7f9c98c9bb65203e8a33febfc79cf2df6db7eab0fcba
  • gsjts13qlyy59dnmwcn622dq8wwl11cq
Verified for
  • Microsoft 365

Email authentication strong

SPF
v=spf1 include:spf.protection.outlook.com ~all
softfail (~all)
DMARC
v=DMARC1;p=quarantine;rua=mailto:dmarc@luqi.fr;pct=100
policy: quarantine
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAo7xP9aMW0WQu8smM7T8LHSvyv2Yfuf6dAjX56myftuXX7JRJ2c40smba/gBBvxBghSO4O/EkYtSWhm…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoRwSGc7IzTsT6RMnSBnqlbMB8jK5gIjOjlPiwd9rZUrsOG0958SVHbwP8Y758FTmExFXNUsiZFuPQ2…
selectors probed

Certificate (current)

WE1
from 2026-05-07 to 2026-08-05
Expires in 77 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://luqi.fr/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
Header values
referrer-policy
no-referrer
permissions-policy
geolocation=*
x-content-type-options
nosniff
content-security-policy
frame-ancestors 'self' https://localhost capacitor://localhost; style-src 'unsafe-inline' 'self' https://polyfill.io/ https://fonts.googleapis.com/ https://cision-t3556.eu1app.churnzero.net/ https://widget.intercom.io/ https://*.getbee.io/ https://*.beefree.io/; font-src 'self' https://fonts.gstatic.com/ data: blob: 'unsafe-inline'; script-src 'unsafe-eval' 'unsafe-inline' 'self' https://platform.twitter.com/ https://tag.aticdn.net/ https://eum.instana.io/ https://cision-t3556.eu1app.churnzero.net/ https://widget.intercom.io/ https://js.intercomcdn.com/ https://*.getbee.io/ https://*.beefree.io/;
strict-transport-security
max-age=31536000; includeSubDomains

Linked from (1)