bitonic.nl
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
Third-party hosts loaded (1)
- ocw.messagebird.com×2
Social
DNS records live
- NS
-
- arushi.ns.cloudflare.com
- dean.ns.cloudflare.com
- MX
-
- 10 mail.bitonic.nl
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 mx ip4:185.96.4.162 include:_spf.tem.scaleway.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine;policy: quarantine - DKIM
-
- mail:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC3Rv7SIj5MQkOfgefGKScmQCOCs/s2u34bdS19ZgyrgG25kxy6uavceIMEhWhmamjsFyChYL//jrxues0ymE…
selectors probed - mail:
Certificate (current)
R13
Expires in 34 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self', default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://stats.bitonic.nl https://livechat.messagebird.com/bootstrap.js https://ocw.messagebird.com/bootstrap.js; style-src 'self' 'unsafe-inline'; img-src data: * blob:; connect-src 'self' https://stats.bitonic.nl https://pushpromjs.messagebird.com/measure https://messaging.messagebird.com/livechat/widget/ https://livechat-metrics.messagebird.com/measure; font-src data: 'self'; media-src 'self'; child-src 'self' https://livechat.messagebird.com/index.html https://ocw.messagebird.com/index.html https://player.vimeo.com; object-src 'self' blob:; report-uri /csp-failure-report- strict-transport-security
max-age=31536000