qwantjunior.com
HTML metadata
Technology
Third-party hosts loaded (3)
- dd.qwant.com×1
- fdn.qwant.com×1
- mn.qwant.com×1
Registration
- Registrar
- Gandi SAS
- Created
- 2015-10-20
- Expires
- 2026-10-20 154 days left
- Updated
- 2025-09-19
- Name servers
-
- gns21.cloudns.net
- gns22.cloudns.net
- gns23.cloudns.net
- gns24.cloudns.net
DNS records live
- NS
-
- gns21.cloudns.net
- gns22.cloudns.net
- gns23.cloudns.net
- gns24.cloudns.net
- MX
-
- 50 mail1.qwant.com
- TXT
-
google-site-verification=wm9WTEevwNNZi6kvpy15IMs8vn6YPFvWfTTXXfmmMGU
Email authentication strong
- SPF
- not published
- DMARC
-
v=DMARC1; p=reject; adkim=s; aspf=s; rua=mailto:mailauth-reports@qwant.com; ruf=mailto:mailauth-reports@qwant.compolicy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
GandiCert
Expires in 202 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- cross-origin-opener-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer, same-origin- x-frame-options
SAMEORIGIN, SAMEORIGIN- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self' data: blob:;script-src 'self' 'unsafe-inline' 'unsafe-eval' data: *.qwantjunior.com qwantjunior.com *.qwant.com qwant.com;script-src-elem 'self' 'unsafe-inline' data: *.qwantjunior.com qwantjunior.com *.qwant.com sdk.privacy-center.org api.privacy-center.org qwant-prod.piwik.pro https://*.clarity.ms https://c.bing.com https://msadsscale.azureedge.net https://msadsscale.microsoft.com ;style-src 'self' 'unsafe-inline' data: *.qwantjunior.com qwantjunior.com;object-src 'self';connect-src 'self' ws: *.apple.com *.qwantjunior.com qwantjunior.com *.qwant.com qwant.com https://*.clarity.ms https://c.bing.com https://msadsscale.azureedge.net https://*.microsoft.com sdk.privacy-center.org api.privacy-center.org qwant-prod.piwik.pro ;img-src blob: 'self' www.qwant.com s1.qwant.com s2.qwant.com s.qwant.com f.qwant.com data: s.qwantjunior.com s1.qwantjunior.com s2.qwantjunior.com www.qwantjunior.com *.s3.gra.io.cloud.ovh.net sdk.privacy-center.org https://*.clarity.ms https://- strict-transport-security
max-age=31536000; includeSubDomains- cross-origin-opener-policy
same-origin- cross-origin-resource-policy
same-origin