accolade.nl
HTML metadata
Technology
- jQuery
- 3.5.1
Social
Contact
- Phone
DNS records live
- NS
-
- ns0.transip.net
- ns1.transip.nl
- ns2.transip.eu
- MX
-
- 0 accolade-nl.mail.protection.outlook.com
- TXT
-
Show 4 TXT records
C0CAia/DNgoOwf8Gwp/nQKeVnBFstLjBOW83WXZcecJM5QoQrZNCmYw9SPUzkK3ZQbAs7XFA3W0XJjaD5LmsIA==amazonses:hzplhbb2+Vwc6Xq4LlLKfdjnuw2qsUpCTNvojR6fQW0=autodesk-domain-verification=Vs2SnxONwgWOPFYFycUaMS=528DDDF1E61B21AC6923AB1DA78E07D1FB632311
- Verified for
-
- Apple
- Microsoft
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:_spf.aareon.com include:spf.topdesk.net include:spf.flowmailer.net a:malengo.exception.mx ip4:195.72.120.189 ip4:80.250.140.161 -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:nmcks4b1@ag.eu.dmarcadvisor.com; ruf=mailto:nmcks4b1@fr.eu.dmarcadvisor.com;policy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtrF63jcsjTico96g/4esh0Eca0n5snsxu0f47DLwl3VkD36c2gIz6o20cgoHq5Y5QbcbyakuuxKjgJ… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDL896PLKhQX06CfrEG2y372u7d4WB0O3mPfa6WFmQJEHvBqZGLg1tpdOXa1zE1oElMhGW/eLAokAWHwdVC5k… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAr39PtnOMkZRSgkImZIJPePclcViVnFBNNNTfWRHQr0EnPPhc2KK+u3bCWrRKe+/slCgJLqsYyfqcvZS1f3… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq53mniw9R+IXfsDN3k/YvudhZmf5rKNKn7mKEHPUtsh12sQNrMhJIQyXUW4yOAELk5DtDyyEw/OcEs4P6k…
selectors probed - selector1:
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 186 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
vibrate=(), push=(), microphone=(), camera=(), payment=()- x-content-type-options
NOSNIFF- content-security-policy
default-src 'self';connect-src 'self' www.google-analytics.com region1.google-analytics.com *.tolkie.nl;script-src 'self' www.googletagmanager.com www.google-analytics.com *.tolkie.nl;frame-src 'self' www.youtube.com www.youtube-nocookie.com www.kcmsurvey.com login.polarishrs.nl *.tolkie.nl;style-src 'self' 'unsafe-inline' *.tolkie.nl;img-src 'self' data: www.google-analytics.com *.tolkie.nl;font-src 'self' *.tolkie.nl;object-src 'self';media-src 'self'- strict-transport-security
max-age=31536000; includeSubdomains