bonas.be
HTML metadata
Technology
- Server
- nginx
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- api.mapbox.com×1
- www.googletagmanager.com×1
Contact
- Phone
- Address
- Michel Vandewielestraat 7, 8510, Marke, West-Vlaanderen, Belgium
DNS records live
- NS
-
- ns1.eurodns.com
- ns2.eurodns.com
- ns3.eurodns.com
- ns4.eurodns.com
- MX
-
- 0 bonas-be.mail.protection.outlook.com
- TXT
-
mandrill_verify.DV4v-Ciz9JKINHcadxGF6g
- Verified for
-
- Atlassian
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 mx a ip4:84.199.112.32/29 ip4:84.199.49.193/27 ip4:217.21.186.42/32 ip4:217.21.186.53/32 ip4:194.78.158.5/32 ip4:194.78.158.6/32 ip4:84.199.49.196/32 a:crm.bonas.be include:_spf.salesforce.com include:_spf.relay.mailprotect.be include:spf.protection.outlook.com include:spf.mandrillapp.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine;policy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArXzZ2b7xejgdnfSsuwGqZqLyGyqwT57GSa9UN7vjE76RVU4NRrZmsQnINlk7Ha6YSlwyzId8H9eDbR…
selectors probed - selector1:
Certificate (current)
E7
Expires in 45 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
ALLOW-FROM self *.vandewiele.prod.digitalpulse.dev vandewiele.stag.digitalpulse.dev *.vandewiele.stag.digitalpulse.dev vandewiele.com *.vandewiele.com aros.se barattocornely.com bejimac.com bmsvision.com bonas.be cobble.co.uk iroab.com loepfe.com memminger-iro.com mesdan.it protechna.de roj.com www.saviospa.com superba.com vandewiele.se vigan.com titansew.com vandewiele-tufting.com- permissions-policy
geolocation=(self), microphone=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.vandewiele.prod.digitalpulse.dev vandewiele.stag.digitalpulse.dev *.vandewiele.stag.digitalpulse.dev vandewiele.com *.vandewiele.com aros.se barattocornely.com bejimac.com bmsvision.com bonas.be cobble.co.uk iroab.com www.loepfe.com memminger-iro.com memminger-iro.de mesdan.com protechna.de roj.com saviospa.com superba.com titansew.com vandewiele.se vigan.com cdnjs.cloudflare.com cdn.jsdelivr.net www.gstatic.com *.mapbox.com unpkg.com *.hotjar.com www.recaptcha.net www.googletagmanager.com www.googleoptimize.com www.google-analytics.com www.gstatic.cn gstatic.cn *.containers.piwik.pro cdn.polyfill.io *.vimeo.com *.youtube.com *.youtube-nocookie.com polyfill.io cdn.leadinfo.net snap.licdn.com *.facebook.com *.facebook.net npmcdn.com *.kadanza.io use.fortawesome.com cdn.myth.theoplayer.com; style-src 'self' 'unsafe-inline' *.vandewiele.prod.digitalpulse.dev vandewiele.stag.digitalpulse.dev *.vandewiele.stag.digitalpuls- strict-transport-security
max-age=31536000; includeSubDomains; preload