https://zerologementvacant.beta.gouv.fr
Permettre aux collectivités de mobiliser les propriétaires de logements vacants pour les remettre sur le marché

Nmap
Scan Summary :
severity | service | vulnerability |
info | http (port:80) | |
info | https (port:443) |
Mozilla HTTP observatory
Scan Summary :
Impact | Description | Documentation |
Content Security Policy (CSP) header not implemented | Implement one, see MDN's Content Security Policy (CSP) documentation. | |
Does not redirect to an HTTPS site. | Documentation for redirection-to-https | |
| Add HSTS. Consider rolling out with shorter periods first (as suggested on https://hstspreload.org/). |
CodeScan MTES-MCT/zero-logement-vacant
Scan Summary :
severity | rule | description |
warning | js/loop-bound-injection | Loop bound injection |
warning | js/insecure-randomness | Insecure randomness |
warning | docker:S6437 | Credentials should not be hard-coded |
warning | secrets:S6698 | PostgreSQL database passwords should not be disclosed |
Nuclei
Séverité | Name | Matcher |
unknown | Credentials Disclosure Check | credentials-disclosure |
info | CAA Record | caa-fingerprint |
info | DNS DMARC - Detect | dmarc-detect |
info | SPF Record - Detection | spf-record-detect |
info | DNS TXT Record Detected | txt-fingerprint |
info | NS Record Detection | nameserver-fingerprint |
info | MX Record Detection | mx-fingerprint |
info | HTTP Missing Security Headers | x-permitted-cross-domain-policies |
info | HTTP Missing Security Headers | clear-site-data |
info | HTTP Missing Security Headers | cross-origin-embedder-policy |
info | HTTP Missing Security Headers | cross-origin-resource-policy |
info | HTTP Missing Security Headers | content-security-policy |
info | HTTP Missing Security Headers | permissions-policy |
info | WAF Detection | apachegeneric |
info | Detect SSL Certificate Issuer | ssl-issuer |
info | SSL DNS Names | ssl-dns-names |
info | TLS Version - Detect | tls-version |
info | TLS Version - Detect | tls-version |
medium | Django Debug Configuration Enabled | django-debug |
Qualimétrie SonarCloud MTES-MCT/zero-logement-vacant
badge | name | value |
bugs | 4 | |
vulnerabilities | 0 | |
codeSmells | 387 |