anwbgolf.nl
HTML metadata
Technology
- Server
- nginx
Third-party hosts loaded (3)
- ik.imagekit.io×21
- cdn.jsdelivr.net×1
- unpkg.com×1
Social
Contact
- Phone
- Address
- Abcouderstraatweg 46, 1105AA, Amsterdam, Noord-Holland, NL
DNS records live
- NS
-
- ns0.dataweb.nl
- ns2.dataweb.nl
- MX
-
- 0 anwbgolf-nl.mail.protection.outlook.com
- TXT
-
ar-p-wa-anwbgolf.azurewebsites.net2F6ED172FF003051EF6E32AE8903821EBD352C2EFB9666C31225325238C62C8BCvXnDHkgW72TfKS50huf6mUJUla439Veu64+z0rGVy2Y6XGpmVLm2OVJukXUt/RCu5JNKO4xwf25zmZEsbBQaQ==
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 include:spf.protection.outlook.com include:em8929.anwbgolf.nl include:spf.flowmailer.net include:_senderspf.copernica.com include:_spf.eu.mailgun.org include:em3463.anwbgolf.nl include:spf.mandrillapp.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@inbound.flowmailer.net; ruf=mailto:dmarc@inbound.flowmailer.net; fo=1policy: none (monitoring only) - DKIM
-
Show 5 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt84cM6yOHTMJmcoTtsgAsEU54xkdRnUIyyWVPJ6qTpcDEITG+w1l9lVrhff37lzpqR9I5tFa/g5f8B… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - dkim:
v=DKIM1;k=rsa;g=*;s=email;h=sha256;t=;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCtwCZVHiiurGbGudInvccRKoNU/QvqENDelqYBZu4URp6r7Dwae2MDFiDm0+VH… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1ezsrODZ3USxDNBGzoFZJFXQO4PRcx4I5obw7iP6vR+taXXKd5Hg+CeJf/MW14Jz9IoHkb2jaREg0XiT5p… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCd4TwtoO14yuR3KGTxWuEcHNCZ4jiwC1O88uGvXdLiiJBfsd86nYOuoXpvl+mlRX/3h7RoLMO5fhbpHH4OBt588M…
selectors probed - selector1:
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 251 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(self)- x-content-type-options
nosniff- content-security-policy
default-src https: 'unsafe-eval' 'unsafe-inline'; object-src 'none'; img-src 'self' https://bat.bing.com https://bat.bing.net https://img.youtube.com data: https://c.bing.com https://ik.imagekit.io/anwbgolf/ https://*.facebook.com https://*.clarity.ms maps.gstatic.com *.googleapis.com https://*.google.com https://*.google.nl https://*.google-analytics.com www.googletagmanager.com https://script.hotjar.com; font-src 'self' data: fonts.gstatic.com https://*.anwbgolf.nl https://script.hotjar.com https://cdnjs.cloudflare.com https://maxcdn.bootstrapcdn.com; script-src https 'self' 'unsafe-eval' 'unsafe-inline' https://*.anwbgolf.nl https://*.anwb.nl https://plugins.blueconic.net/ https://*.clarity.ms https://*.google-analytics.com https://connect.facebook.net https://bat.bing.com https://cdn.blueconic.net maps.googleapis.com polyfill.io unpkg.com https://www.googletagmanager.com https://toestemmingen.anwbreizen.nl https://static.hotjar.com https://script.hotjar.com cdn.jsdelivr.net https:- strict-transport-security
max-age=63072000; includeSubDomains; preload