appostel.nl
HTML metadata
Technology
- Server
- Apache
- CMS
- WordPress 6.9
- jQuery
- 3.5.1
- Analytics
-
- Google Tag Manager
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (4)
- www.youtube.com×3
- code.jquery.com×2
- www.googletagmanager.com×2
- www.google.com×1
Contact
DNS records live
- NS
-
- cpns01.csnet.nl
- cpns02.csnet.nl
- MX
-
- 0 mail.appostel.nl
- TXT
-
mandrill_verify.GTgVs6zdtJj40PFXnbCB7g
Email authentication strong
- SPF
-
v=spf1 include:spf.simplemailservice.eu ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=quarantine;sp=none;adkim=r;aspf=r;pct=100;fo=0;rf=afrf;ri=86400policy: quarantine · sp=none - DKIM
-
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwfz1khPFnH6TTAW4Q0MYtKS9SZMlWnBGscbHzRYLfnEzhsBIyaBTX4s/EMN9xEu682hydk8h+A8Y5R…
selectors probed - default:
Certificate (current)
Sectigo Public Server Authentication CA EV R36
Expires in 121 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- weak frame protection
- missing content type protection
- missing Referrer Policy
Header values
- x-frame-options
DENY, SAMEORIGIN- permissions-policy
geolocation=(); midi=();notifications=();push=();sync-xhr=();accelerometer=(); gyroscope=(); magnetometer=(); payment=(); camera=(); microphone=();usb=(); xr=();speaker=(self);vibrate=();fullscreen=(self);- content-security-policy
default-src https:; font-src https: data:; img-src https: data:; script-src https: 'unsafe-inline' 'unsafe-eval'; style-src https: 'unsafe-inline' 'unsafe-eval';- strict-transport-security
max-age=31536000; includeSubdomains; preload
Links to (4)
- skggouda.nl×1
- miniorange.com×1
- google.com×1
- apple.com×1