Summary of coesor.fr [Desktop version] Website Security Test
Provided "as is" without any warranty of any kind.
Date/Time:Jul 31st, 2026 15:45 GMT+0
Server IP:109.234.164.34
Reverse DNS:109-234-164-34.reverse.odns.fr
Location:Paris, France
Version:for desktop
Your final score:
- A
- B
- C
- F
A
This test was made 38 days ago and may be outdated
Refresh Test
It appears that system is not responding or blocking software fingerprinting attempts, performed from the following IP ranges: 192.175.111.224/27, 64.15.129.96/27, 70.38.27.240/28, 72.55.136.144/28. Please whitelist them for successful continuation of the test.
Misconfiguration or weakness
Test Results Summary for coesor.fr
- 7 third-party web software dependancies were identified, including 2 outdated dependancies. No known vulnerabilities were detected. 2 identified third-party web software dependancies have unknown versions. The CMS (WordPress) was identified, however, its version could not be determined. The following CMS components, JS-libraries or frameworks were identified: jquery, vanilla-lazyload, Official MailerLite Sign Up Forms, and others. Software fingerprinting may be restricted by the system, so the results could be incomplete. Show details.
- No obvious GDPR-related compliance issues were detected across Privacy Policy, Website Security, TLS Encryption, Cookie Protection, Cookie Disclaimer. Website Security check may be incomplete because fingerprinting attempts appear to be blocked. Show details.
- The website is compliant with PCI DSS Requirement 6.4. The assessment of PCI DSS Requirement 6.3 may be incomplete due to limited software fingerprinting. Show details.
- Issues were identified with key security headers: missing Content-Security-Policy; misconfigured X-Frame-Options. Optional HTTP headers appear to be properly configured: Server, Referrer-Policy, Cache-Control, X-Permitted-Cross-Domain-Policies, Cross-Origin-Resource-Policy (CORP), Cross-Origin-Opener-Policy (COOP), Cross-Origin-Embedder-Policy (COEP). Deprecated HTTP headers detected: X-XSS-Protection. Show details.
- Content-Security-Policy headers are not present. Show details.
- One cookie detected; o2s-chl has security or privacy-related configuration issues. Show details.
- No external requests were detected. Show details.
- 10 robots.txt rules and 8 bot protection mechanisms detected. No protection detected via User-Agent blocks or meta restrictions. Show details.
- DNS A record detected; DNSSEC signatures are not present. Show details.
- PDF Certificate and Badge
- Web Server Configuration Test
- Web Software Security Test
- GDPR Compliance Test
- PCI DSS Compliance Test
- HTTP Headers Security Test
- Content Security Policy (CSP) Test
- Cookies Privacy and Security Test
- External Content Security Test
- Protection from Data Scraping Test
- DNSSEC Configuration Test


