berenschot.nl
HTML metadata
Technology
- Analytics
-
- Google Analytics
- Google Tag Manager
- Ads
-
- Meta Pixel
Third-party hosts loaded (8)
- www.berenschot.be×2
- www.googletagmanager.com×2
- code.jquery.com×1
- connect.facebook.net×1
- google.com×1
- gstatic.com×1
- www.berenschot.com×1
- www.google-analytics.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1-04.azure-dns.com
- ns2-04.azure-dns.net
- ns3-04.azure-dns.org
- ns4-04.azure-dns.info
- MX
-
- 10 de-smtp-inbound-1.mimecast.com
- 10 de-smtp-inbound-2.mimecast.com
- TXT
-
3a7g484g7edvMifuEo4r80rfLjNYmSqYv404ywXKnro75iAf1waSN2woQo+Bvg/B3slHmlXPcnc0NJoaD7vcCw==mentimeter-aa663ac2-ab9c-4f63-8560-94205b49e7e2
- Verified for
-
- Apple
- GlobalSign
Email authentication strong
- SPF
-
v=spf1 include:de._netblocks.mimecast.com include:spf.protection.outlook.com include:spf.afas.online include:amazonses.com include:spf.mtasv.net include:autotask.net -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:299b18810cab448@rep.dmarcanalyzer.com; ruf=mailto:299b18810cab448@for.dmarcanalyzer.com; fo=1;policy: reject (enforced) - DKIM
-
- k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArR8LpHKc10q2wTyoKHNwH4uHqpJpAmMSuygK0tHg7zzS90gOWwKASpJ+QykDn5rKip9ckl3cq/MszjsE08… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDHFQjcuk1YSvB04X9ASPBZ2t65NtFIzFl1Xijklu9QDRzmishMPp1MyjzlHLtktCPbvnBvddIkh5AqGQLgYdIwMO…
selectors probed - k2:
Certificate (current)
R12
Expires in 73 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(), autoplay=*, camera=(), encrypted-media=(), fullscreen=*, geolocation=(), microphone=(), payment=()- x-content-type-options
nosniff- content-security-policy
default-src 'self';object-src 'self';frame-src 'self' https://www.google.com/recaptcha/ https://recaptcha.google.com/recaptcha/ https://*.youtube.com https://*.youtu.be https://*.vimeo.com https://*.plyr.io https://noembed.com https://www.googletagmanager.com https://consentcdn.cookiebot.com https://open.spotify.com https://*.powerbi.com;connect-src 'self' https://*.googletagmanager.com https://*.google-analytics.com https://*.g.doubleclick.net/ https://*.google.com https://*.google.<TLD> https://pagead2.googlesyndication.com/ https://consentcdn.cookiebot.com https://consent.cookiebot.com https://*.powerbi.com;frame-ancestors 'self';style-src 'self' 'unsafe-inline' https:;font-src 'self' data: https:;img-src 'self' data: https: blob: https://*.google-analytics.com https://*.googletagmanager.com https://*.g.doubleclick.net https://*.google.com https://*.google.<TLD> http://imgsct.cookiebot.com/;media-src 'self' data: https: blob:;script-src 'nonce-wgDN6ldmkmIWd0hMHmUf7g==' 'self' 'sha38- strict-transport-security
max-age=31536000