aov.nl

.nl crawl

First seen 2026-06-03 · Last seen 2026-06-04 · ok HTTP/1.1 200 82 ms crawled 2026-06-04

US · 23.185.0.253 · AS54113 Fastly, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
AOV | Home | Voedingssupplementen
Description
Chocolate Abuelita - Nestlé
Language
en
Canonical
https://www.aov.nl/

Open Graph

url
https://www.aov.nl/
title
Voedingssupplementen » Orthomoleculair ● AOV.nl
image:url
https://www.aov.nl/sites/default/files/2022-02/product_banner.png
site name
AOV
description
Kies voor pure supplementen ✔ 80% is vrij van geur-, kleur- & smaakstoffen ✔ +35 jaar geadviseerd ✔ Vegan aanbod ➸ Vind een AOV-verkooppunt
video:secure url
https://www.aov.nl/sites/default/files/2022-02/product_banner.png

Technology

Server
nginx
CMS
Drupal
jQuery
3.6.0

Third-party hosts loaded (4)

  • cdn.jsdelivr.net×1
  • maps.googleapis.com×1
  • www.facebook.com×1
  • www.google.com×1

Social

Contact

Email
Phone

DNS records live

NS
  • amsdns1.nestle.com
  • aoadns1.nestle.com
  • ctrdns1.nestle.com
  • eurdns1.nestle.com
MX
  • 10 aov-nl.mail.protection.outlook.com
TXT
  • C6duijbUAdFqGzePJgscYdToiL/K4uqbPpCUOiQZuNbbtSmmseHNmNRcE0jq0F5A5pZf1PA/gTSbphI20aI2jg==
  • d9f05jfbhjl4c9ofjhvh8o66io
  • Plaza Internet - https://www.plaza.nl
Verified for
  • Adobe
  • Canva
  • Google
  • Meta
  • Microsoft 365

Email authentication strong

SPF
v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email ~all
softfail (~all)
DMARC
v=DMARC1; p=reject; rua=mailto:dmarc_agg@vali.email
policy: reject (enforced)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtBgpaI24rSUW8xXjXNoFF5EtMMtg1J5DZiduziOrMvEa5stC3tm9/oPRPPy2g3upp3bIwQs+Au3smX…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3X3bHO2ffxgcXLcGRtm81IxLxIMZ7nYycXSP5hLyfvo06N/M3MQpgvC+mf70b5aK8iLPMdD5GgVtG3yI3S…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCvYQzOWdYuB59B/zW1RHy41TIgngXdQqh6K/0/u4xdpEw6LGTAvBiS9crgKsOObrG/IzboZXYVHPlEAEBAt7bRTy…
selectors probed

Certificate (current)

R12
from 2026-04-21 to 2026-07-20
Expires in 46 days

HTTP security headers

Header hygiene 75/100 Checked live page: https://www.aov.nl/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • short HSTS max-age
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: data-eu.aov.nl *.googletagmanager.com chimpstatic.com *.jsdelivr.net *.highcharts.com *.gigya.com *.youtube.com *.fontawesome.com *.nestle.com *.google.com *.cookielaw.org *.recaptcha.net *.onetrust.com *.gstatic.com *.qualtrics.com *.facebook.net *.googleapis.com *.gbqofs.com *.usabilla.com; frame-ancestors 'self'; connect-src 'self' data-eu.aov.nl *.fontawesome.com *.gigya.com *.google.com *.cookielaw.org *.recaptcha.net *.onetrust.com *.gstatic.com *.qualtrics.com *.google-analytics.com *.googleapis.com *.gbqofs.io *.facebook.com; report-uri /report-csp-violation
strict-transport-security
max-age=300

Links to (3)

Linked from (1)