Paramètres d'affichage

Choisissez un thème pour personnaliser l'apparence du site.

Mozilla HTTP observatory

Scan Summary :

D-

ImpactDescriptionDocumentation

-25

Content Security Policy (CSP) header not implemented

-20

Strict-Transport-Security header not implemented.

Add HSTS. Consider rolling out with shorter periods first (as suggested on https://hstspreload.org/).

-20

X-Frame-Options (XFO) header not implemented.

Documentation for x-frame-options-sameorigin-or-deny

-5

Subresource Integrity (SRI) not implemented, but all external scripts are loaded over HTTPS.

Add SRI to external scripts.

-5

X-Content-Type-Options header not implemented.

Documentation for x-content-type-options-nosniff

Rapport détaillé

SSL

Scan Summary :

B


Grade capped to A. HSTS is not offered

Grade capped to B. TLS 1.0 offered

Grade capped to B. TLS 1.1 offered

Rapport détaillé