24plus.be
HTML metadata
Technology
- Cookie consent
-
- TrustArc
Third-party hosts loaded (4)
- wcmassets.kbc.be×71
- consent.trustarc.com×2
- consent.truste.com×2
- assets.adobedtm.com×1
Social
DNS records live
- NS
-
- a1-253.akam.net
- a13-66.akam.net
- a16-66.akam.net
- a24-64.akam.net
- a26-67.akam.net
- a9-66.akam.net
- MX
-
Show 6 MX records
- 10 mail60.mailinfra.com
- 10 mail61.mailinfra.com
- 10 mail62.mailinfra.com
- 10 mail63.mailinfra.com
- 10 mail80.mailinfra.com
- 10 mail81.mailinfra.com
- TXT
-
Show 4 TXT records
amazonses:OjCAddrLU+86zom393WrJmYCUK8+5TsU5F3VdP2VE0k=_hm888a43k9qt7on4pcer22h6nnhu985amazonses:9PiL2TVD/WBdtmp8Vnnzp/dMXtbA3wsFo/CahN9zch0=amazonses:Oo8WUXqhE0vS2sQx8U8Fkgfn5wi/R0noGHUByCGJN2s=
Email authentication strong
- SPF
-
v=spf1 mx -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;rua=mailto:agg.email.reports@kbc.bepolicy: reject (enforced) - DKIM
-
- default:
v=DKIM1;k=rsa;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwWU+o2dxQM1jLy+aoR8xcoIJyi/yxVj3AwPp/+/0zAQK4vYFM/bLLQpGD8//UiDISFpfsIO7hqTrpUqY…
selectors probed - default:
Certificate (current)
DigiCert EV RSA CA G2
Expires in 151 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- findings
-
- CSP uses wildcard sources
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin, strict-origin- x-content-type-options
nosniff- content-security-policy
base-uri none; connect-src 'self' https://*.cbc.be https://*.clicktale.com https://*.clicktale.net https://*.kbc.be https://*.kbc.com https://*.kbcsecurities.com https://*.kbcbrussels.be https://*.kbceconomics.be https://*.kbceconomics.com https://*.kbclease.lu https://*.24plus.be https://*.omtrdc.net https://dpm.demdex.net https://kbc.symex.be https://uat.serversidegraphics.com https://*.trustarc.com https://uk.personalcard.net https://www.facebook.com https://*.contentsquare.net https://admp-tc-mediahuis.adtlgc.com https://es6-elasticapm.kbc.be https://es6-elasticapm-a.kbc.be https://onesignal.com https://*.googleapis.com https://www.google.com https://adservice.google.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://*.adobe.com https://viewlicense.adobe.io https://*.adobedc.net https://adobedc.demdex.net http://localhost:8443 https://x9y-p.local.intapp.eu/ https://d36ygvu01nuobw.cloudfront.net https://*.komgo.io https://evnt.byspotify.com https://px.a- strict-transport-security
max-age=31536000; includeSubDomains; preload