sdesm.fr
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (5)
- fonts.googleapis.com×5
- fonts.gstatic.com×2
- www.googletagmanager.com×2
- gmpg.org×1
- piwik.a3web.eu×1
Social
Contact
- Phone
- Address
- rue Claude Bernard – 77000
Registration
- Registrar
- OVH
- Created
- 2013-10-30
- Expires
- 2026-10-22 155 days left
- Updated
- 2025-12-16
- Name servers
-
- dns17.ovh.net
- ns17.ovh.net
DNS records live
- NS
-
- dns17.ovh.net
- ns17.ovh.net
- MX
-
- 100 mx20b.mailinblack.com
- 5 mx20.mailinblack.com
- TXT
-
QuoVadis=034220b1-6708-4744-9795-c68f5007bcfb
Email authentication partial
- SPF
-
v=spf1 a mx ptr ip4:193.252.193.242 ip4:46.18.192.0/21 ip4:195.114.26.0/23 ip4:193.168.50.0/24 -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
E7
Expires in 30 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-embedder-policy
- findings
-
- CSP allows unsafe inline scripts/styles
Header values
- referrer-policy
strict-origin-when-cross-origin, strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(), autoplay=(), camera=(), clipboard-read=(), clipboard-write=(), display-capture=(), encrypted-media=(), fullscreen=(), gamepad=(), geolocation=(), gyroscope=(), hid=(), idle-detection=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=(), serial=(), sync-xhr=(), usb=(), xr-spatial-tracking=()- x-content-type-options
nosniff- content-security-policy
default-src https: data: 'unsafe-inline' 'unsafe-eval' always blob:- strict-transport-security
max-age=31536000; includeSubDomains; preload- cross-origin-embedder-policy
unsafe-none