pulm.fr
HTML metadata
Technology
- Server
- nginx
- CMS
- Gatsby
Third-party hosts loaded (1)
- www.google.com×1
Social
Registration
- Registrar
- GIP RENATER
- Created
- 2007-07-12
- Expires
- 2026-07-12 52 days left
- Updated
- 2025-08-31
- Name servers
-
- cnudns.cines.fr
- dnsstc.univ-montp3.fr
- ns1.univ-montp3.fr
DNS records live
- NS
-
- cnudns.cines.fr
- dnsstc.univ-montp3.fr
- ns1.univ-montp3.fr
- MX
-
- 0 teti.univ-montp3.fr
- TXT
-
6a81f52e9a3e425f97f5e22311ddb9c3
- Verified for
-
- HARICA
Email authentication weak
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
GEANT TLS RSA 1
Expires in 288 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- weak content type protection
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
ALLOW-FROM univ-montp3.fr- permissions-policy
geolocation=(),midi=(),sync-xhr=(),microphone=(),camera=(),magnetometer=(),gyroscope=(),fullscreen=(self)- x-content-type-options
nosniff, nosniff- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' *.univ-montp3.fr *.youtube.com *.gstatic.com *.googleapis.com *.google-analytics.com *.google.com cdnjs.cloudflare.com assets.zendesk.com connect.facebook.net *.univ-montp3.fr; frame-src 'self' *.youtube.com assets.zendesk.com *.facebook.com s-static.ak.facebook.com tautt.zendesk.com *.google.com *.univ-montp3.fr *.doubleclick.net; object-src 'self'- strict-transport-security
max-age=63072000; includeSubdomains- content-security-policy-report-only
font-src www.paypalobjects.com fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com https://fonts.gstatic.com https://ws.colissimo.fr *.fontawesome.com https://fonts.bunny.net https://cdnjs.cloudflare.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src fast.amc.demdex.net *.adobe.com bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com www.paypalobjects.com player.vimeo.com https://www.google.com/recaptcha/ *.braintreegate