mechanicheritage.com

.com crawl

First seen 2026-06-03 · Last seen 2026-06-04 · ok HTTP/1.1 200 794 ms crawled 2026-06-04

FR · 5.196.134.168 · AS16276 OVH SAS

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Atelier de réparation automobile Wavre | Mechanic Heritage : voiture de collection
Description
Vous pouvez compter sur l’expertise et le dynamisme de l’équipe de Mechanic Heritage, atelier de réparation automobile. Pour voiture ancienne et de collection.
Language
fr
Canonical
https://www.mechanicheritage.com/

Open Graph

url
https://www.mechanicheritage.com/
title
Atelier de réparation automobile Wavre | Mechanic Heritage : voiture de collection
description
Vous pouvez compter sur l’expertise et le dynamisme de l’équipe de Mechanic Heritage, atelier de réparation automobile. Pour voiture ancienne et de collection.

Technology

Server
Apache
jQuery
1.9.1 known XSS (<3.5)
Stack
PHP
Fonts
  • Google Fonts

Third-party hosts loaded (4)

  • cdnnen.proxi.tools×21
  • fonts.googleapis.com×1
  • fonts.gstatic.com×1
  • videoplayer.proxi.tools×1

Social

Contact

Email
Phone
Address
Avenue Eiffel 8, 1300, Wavre, BE

Registration

Registrar
OVH sas
Created
2019-06-24
Expires
2026-06-24 19 days left
Updated
2025-06-25
Name servers
  • ns1.proximedia.com
  • ns2.proximedia.be

DNS records live

NS
  • ns.csdg.org
  • ns.online.be
MX
  • 10 in.mail.broker

Email authentication partial

SPF
v=spf1 mx a include:spf.proxi.tools ?all
neutral (?all)
DMARC
v=DMARC1; p=none; rua=mailto:dmarc@csdg.org
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

R12
from 2026-04-25 to 2026-07-24
Expires in 50 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.mechanicheritage.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
geolocation=(), camera=(), microphone=(), payment=(), fullscreen=(self)
x-content-type-options
nosniff
content-security-policy
default-src * data: blob: filesystem: about: ws: wss: 'unsafe-inline' 'unsafe-eval'; script-src * data: blob: 'unsafe-inline' 'unsafe-eval'; connect-src * data: blob: 'unsafe-inline'; img-src * data: blob: 'unsafe-inline'; frame-src * data: blob: ; style-src * data: blob: 'unsafe-inline'; font-src * data: blob: 'unsafe-inline';
strict-transport-security
max-age=31536000;

Links to (4)

Linked from (1)