betaalvereniging.nl
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- jQuery
- 3.7.1
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (1)
- consent.cookiebot.com×1
Social
Contact
- Phone
Registration
- Registrar
- Realtime Register
- Created
- 2011-02-03
- Updated
- 2022-11-24
- Name servers
-
- ns1.argewebhosting.eu
- ns3.argewebhosting.nl
- ns2.argewebhosting.com
DNS records live
- NS
-
- ns1.argewebhosting.eu
- ns2.argewebhosting.com
- ns3.argewebhosting.nl
- MX
-
- 10 betaalvereniging-nl.mail.protection.outlook.com
- TXT
-
knowbe4-site-verification=2f6a639f5739b00f72d5706e29f6a964
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 a mx ip4:185.144.224.133 ip6:2a03:9700:8000::8182 ip4:141.138.195.169 ip4:193.189.134.4 ip4:194.151.85.22 ip4:193.109.254.103 ip4:195.245.230.39 ip4:185.144.224.17 ip6:2a03:9700:8000::7252 ip4:94.177.40.82 ip4:194.151.85.0/24 ip4:62.41.129.0/24 ip4:217.149.75.116 ip4:178.18.91.41 ip4:79.170.88.0/24 ip4:87.233.133.34 ip4:37.230.97.96 ip4:178.18.94.48 ip4:178.18.90.233 ip4:89.188.18.54 include:servers.mcsv.net include:sendgrid.net include:spf.protection.outlook.com include:mailgun.org -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; sp=reject; rua=mailto:postmaster@betaalvereniging.nl; ruf=mailto:postmaster@betaalvereniging.nlpolicy: reject (enforced) · sp=reject - DKIM
-
Show 4 DKIM selectors
- selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDIEVOoIyrkejJtEuiL6fLzPsrP0yb9xNP51sLWmK9wXjE4S5wuXonGPU7/MSsPE7wjN7DF8evHaKTrkvFB8G… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsDpVftU28eoh6Z0UHH6jSJBPvjmT0nOW4hhzoWDRgbX+qKtue6z/FgsbMOYp84NOs6LV2cIEC/B8Iqn0Ll… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCkcm+fheS0Svzgw61Uv8kqsF+rcqbEasyNCQ/cb3GH4WvwXq8aW05cUfNa2d1OmPyh5GOzQeyZ5SnfzoIOEQ9OHL…
selectors probed - selector2:
Certificate (current)
E8
Expires in 58 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src https: data: blob:; script-src 'unsafe-inline' 'unsafe-eval' https: data:; style-src 'unsafe-inline' https: data:; img-src data: https: blob: android-webview android-webview-video-poster:; font-src data: https:; connect-src * data:; media-src https: data: blob:; worker-src https: blob:; frame-src 'self' https: blob:; frame-ancestors 'self'; upgrade-insecure-requests- strict-transport-security
max-age=63072000
Links to (3)
- bsky.app×1
- linkedin.com×1
- x.com×1