aldi.nl
HTML metadata
Technology
- CDN
- Azure Front Door
- CMS
- Next.js
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (4)
- app.usercentrics.eu×1
- assets.adobedtm.com×1
- play-lh.googleusercontent.com×1
- www.aldi.nlhttps×1
Social
DNS records live
- NS
-
- ns-1174.awsdns-18.org
- ns-2032.awsdns-62.co.uk
- ns-248.awsdns-31.com
- ns-687.awsdns-21.net
- MX
-
- 10 aldi-nl.mail.protection.outlook.com
- TXT
-
miro-verification=86bb8a16f203a015e16e07df2d4e9edea0a88036n69lb5t4f0bqr3pz13g9scn2cfm2nqy0swisssign-check=pe6ogK4syGi5Ktb8yCib4TjYGyA
Email authentication strong
- SPF
-
v=spf1 ip4:18.196.215.67 ip4:20.40.137.116/30 ip4:20.40.137.120/29 ip4:20.61.145.119 ip4:20.224.168.48 ip4:46.183.45.192/27 ip4:185.149.52.31 ip4:185.149.52.57 ip4:185.149.52.58 ip4:185.149.52.66 ip4:185.149.52.70 include:spf.servicemail24.de include:_spf.salesforce.com include:spf.afas.online include:mailswitch.nl include:spf.protection.outlook.com include:spf.learningonline.nl include:essprod0.templafy-ess.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; sp=quarantine; rua=mailto:dmarc-rua@aldi-nord.de; pct=100; ri=86400policy: quarantine · sp=quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAul3xHR4KNQIDbUOy1CqXjBMk3nh3zLPs3WoOvaEd8TCWUJzpYfjwpCLoayJYgvwdpnK0hh5WjgbqnS… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoaD+Ka+XExzH5ZiiysWwlYxyW9ZtKzTjwGFOTOm37z2XkHZyido2vAfEVEQvAnN71fVkYNC/FktYJW… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6848BptQYK7nWODFZNq7h50LxMX3fGpSHzHS0lBaZGBS89rXH89BB2C3EIzBPOTLjGVP6ZGylY727JoCAr… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDElXy+S21iMvjNULpuYBZd5q6RmjUR1hU9mfz+5W0xqxkZYZDS8PmSJ8ube8b2xw5evoHA99ZdOey7A4bFQUxke4…
selectors probed - selector1:
Certificate (current)
E8
Expires in 72 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
origin-when-cross-origin- permissions-policy
geolocation=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'self'; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://author.aldigroup-prod.magnolia-platform.com https://public.aldigroup-prod.magnolia-platform.com https://*.salesforce.com https://*.force.com https://*.lightning.force.com https://*.visual.force.com https://*.vf.force.com https://*.sandbox.vf.force.com https://emea3.recruitmentplatform.com; font-src 'self' data: https://fonts.gstatic.com https://author.aldigroup-prod.magnolia-platform.com https://public.aldigroup-prod.magnolia-platform.com https://*.salesforce.com https://*.lightning.force.com https://*.recruitmentplatform.com https://*.lumessetalentlink.com; img-src 'self' data: http://s7g10.scene7.com https://s7g10.scene7.com https://*.an-pcm.com https://*.googleapis.com https://*.gstatic.com https://*.uberall.com https://www.aldi.nl https://*.usercentrics.eu https://www.aldi.be https://aldinord.sc.omtrdc.net ipaper.ipapercms.dk *.ipaper.io https://static.lumessetalentlink.com https://*.googleuse- strict-transport-security
max-age=31536000; includeSubDomains; preload
Links to (5)
- aldi.com×1
- facebook.com×1
- instagram.com×1
- linkedin.com×1
- youtube.com×1