boumanonline.nl
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Gatsby
- Analytics
-
- Cloudflare Insights
- Google Tag Manager
Third-party hosts loaded (3)
- bat.bing.com×1
- static.cloudflareinsights.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- gordon.ns.cloudflare.com
- sunny.ns.cloudflare.com
- MX
-
- 1 smtp.google.com
- Verified for
-
Email authentication partial
- SPF
-
v=spf1 a mx include:_spf.google.com ip4:213.197.217.23 ip4:213.197.217.20 ip4:82.201.42.4 ip4:82.201.42.5 ip4:95.217.203.254 ip6:2a01:4f9:4a:46c1::2 include:trustpilotservice.com include:mailplus.nl include:spf.mandrillapp.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:9048ad8cbbaa46e58c86804a2e9892bd@dmarc-reports.cloudflare.netpolicy: none (monitoring only) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAx2Q51kn0bxFWKZ0WuQR6hMbdq/wdXlvquhbW90SG8wFbUwqTw8B08O9ETuclLcgTGBr4cX9lxVZcsT…
selectors probed - google:
Certificate (current)
WE1
Expires in 72 days
HTTP security headers
- present
-
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- missing Content Security Policy
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy-report-only
font-src https://cdn.riverty.design/ *.fontawesome.com https://www.gstatic.com https://fonts.gstatic.com https://fonts.bunny.net maxcdn.bootstrapcdn.com fonts.gstatic.com data: 'self' 'unsafe-inline'; form-action uc8.tv *.facebook.com 'self' 'unsafe-inline'; frame-ancestors https://www.google.com/ 'self'; frame-src bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com player.vimeo.com https://www.google.com/recaptcha/ uc8.tv https://documents.riverty.com/ https://*.google.com https://hcaptcha.com https://*.hcaptcha.com https://challenges.cloudflare.com https://consentcdn.cookiebot.com/ https://www.googletagmanager.com/ https://bat.bing.com https://bat.bing.net https://imgsct.cookiebot.com https://t.squeezely.tech https://www.google.com https://www.google.nl https://www.googletagmanager.com https://td.doubleclick.net challenges.cloudflare.com *.weltpixel.com *.googletagmanager.com *.doubleclick.net *.typeform.com 'self' 'unsafe-inline'; img-src widgets.magentocommerce.com data: goo