mondialtissus.fr

.fr crawl

First seen 2026-04-19 · Last seen 2026-05-13 · ok HTTP/1.1 200 5793 ms crawled 2026-05-13

FR · 213.182.48.13 · AS8304 Ecritel SASU

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
Tissus et mercerie en ligne
Description
Retrouvez un très grand choix de tissus au mètre, articles de mercerie, patrons de couture et machines à coudre sur le web et dans + de 100 magasins !
Language
fr
Canonical
https://www.mondialtissus.fr

Open Graph

url
https://www.mondialtissus.fr
title
Tissus et mercerie en ligne
site name
Mondial Tissus
description
Retrouvez un très grand choix de tissus au mètre, articles de mercerie, patrons de couture et machines à coudre sur le web et dans + de 100 magasins !

Technology

CMS
Gatsby
Analytics
  • Google Tag Manager
Social widgets
  • YouTube Embed
Third-party hosts loaded (9)
  • apis.google.com×1
  • assets.pinterest.com×1
  • cdnjs.cloudflare.com×1
  • js-agent.newrelic.com×1
  • maps.gstatic.com×1
  • www.google.com×1
  • www.googletagmanager.com×1
  • www.gstatic.com×1
  • www.youtube.com×1

Social

Registration

Registrar
GANDI
Created
2007-07-11
Expires
2029-06-10 1116 days left
Updated
2025-05-31
Name servers
  • ns-150-b.gandi.net
  • ns-219-c.gandi.net
  • ns-98-a.gandi.net

DNS records live

NS
  • ns-150-b.gandi.net
  • ns-219-c.gandi.net
  • ns-98-a.gandi.net
MX
  • 0 mondialtissus-fr.mail.protection.outlook.com
TXT
  • VUHXKvzandQvfIMsPgnUjfBVGN4PqKALe/Q3Y5wBdLEeuwiRVq53hMAp+tLcsfk3wLSF5sUzM73WVmagnlVH0g==
  • m65xtg7fpg22ds9tg4sx3tv7h0vskwby
Verified for
  • Google
  • Microsoft 365

Email authentication strong

SPF
v=spf1 include:spf.mtasv.net include:spf.protection.outlook.com include:spf.exclaimer.net include:spf.mailjet.com ip4:86.64.142.164 ip4:86.65.209.115 ip4:86.65.209.114 ip4:109.70.22.65 ip4:54.241.38.0/24 ip4:185.232.24.248 ip4:185.33.91.210 ip4:213.182.47.60 ip4:213.182.34.0/28 -all
strict (-all)
DMARC
v=DMARC1; p=quarantine; rua=mailto:47id2fdw@ag.dmarcian-eu.com
policy: quarantine
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoFi2BAHeMBkCkv3sMZTBfpMQ86BmxMKeyu3BBWOhwqqtuMGi0KTOd807/NZ2ee3JNfbXVZ8WI45pAC…
  • selector2: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDxAMST5gPmOjIqclOWSENN1xJ1+69UzB0avgYD+n1QrOH9EmQo+/uNzy+Ua/P00MjFmonl+ThvoTOUPMiH7z…
selectors probed

Certificate (current)

GandiCert
from 2026-01-16 to 2027-01-27
Expires in 251 days

HTTP security headers

Header hygiene 45/100 Checked live page: https://www.mondialtissus.fr/

present
  • content-security-policy-report-only
  • x-frame-options
  • x-content-type-options
findings
  • missing HSTS
  • missing Content Security Policy
  • weak content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff, nosniff
content-security-policy-report-only
font-src fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com www.paypalobjects.com fonts.googleapis.com *.fontawesome.com data: https://fonts.gstatic.com https://fonts.googleapis.com https://*.sovendus.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com *.adyen.com *.cardinalcommerce.com 3ds-secure.cardcomplete.com www.clicksafe.lloydstsb.com pay.activa-card.com *.wirecard.com acs.sia.eu *.touchtechpayments.com www.securesuite.co.uk rsa3dsauth.com *.monzo.com *.arcot.com *.wlp-acs.com * 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src fast.amc.demdex.net *.adobe.com bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardin

Links to (13)

Linked from (2)