Paramètres d'affichage

Choisissez un thème pour personnaliser l'apparence du site.

https://zerologementvacant.beta.gouv.fr

Permettre aux collectivités de mobiliser les propriétaires de logements vacants pour les remettre sur le marché
Copie d'écran de https://zerologementvacant.beta.gouv.fr

Nmap

Scan Summary :

A

severityservicevulnerability

info

http (port:80)

info

https (port:443)
Consulter le rapport détaillé

Mozilla HTTP observatory

Scan Summary :

D

ImpactDescriptionDocumentation

-25

Content Security Policy (CSP) header not implemented

-20

Does not redirect to an HTTPS site.

Documentation for redirection-to-https

-20

Strict-Transport-Security header not implemented.

Add HSTS. Consider rolling out with shorter periods first (as suggested on https://hstspreload.org/).

Rapport détaillé

SSL

Scan Summary :

A+


Expiration : 05/10/2025

Rapport détaillé

Alertes Dependabot MTES-MCT/zero-logement-vacant

Scan Summary :

E

Alertes dependabot

CodeScan MTES-MCT/zero-logement-vacant

Scan Summary :

D

severityruledescription

warning

js/loop-bound-injectionLoop bound injection

warning

js/insecure-randomnessInsecure randomness

warning

docker:S6437Credentials should not be hard-coded

warning

secrets:S6698PostgreSQL database passwords should not be disclosed

Alertes CodeQL

Nuclei11 mois

SéveritéNameMatcher

unknown

Credentials Disclosure Checkcredentials-disclosure

info

CAA Recordcaa-fingerprint

info

DNS DMARC - Detectdmarc-detect

info

SPF Record - Detectionspf-record-detect

info

DNS TXT Record Detectedtxt-fingerprint

info

NS Record Detectionnameserver-fingerprint

info

MX Record Detectionmx-fingerprint

info

HTTP Missing Security Headersx-permitted-cross-domain-policies

info

HTTP Missing Security Headersclear-site-data

info

HTTP Missing Security Headerscross-origin-embedder-policy

info

HTTP Missing Security Headerscross-origin-resource-policy

info

HTTP Missing Security Headerscontent-security-policy

info

HTTP Missing Security Headerspermissions-policy

info

WAF Detectionapachegeneric

info

Detect SSL Certificate Issuerssl-issuer

info

SSL DNS Namesssl-dns-names

info

TLS Version - Detecttls-version

info

TLS Version - Detecttls-version

medium

Django Debug Configuration Enableddjango-debug

Qualimétrie SonarCloud MTES-MCT/zero-logement-vacant

badgenamevalue

B

bugs4

A

vulnerabilities0

F

codeSmells387

Rapport détaillé