capelleaandenijssel.nl
HTML metadata
Technology
- CMS
- Drupal
- JS framework
- Next.js
Third-party hosts loaded (3)
- cuatro.sim-cdn.nl×67
- capelleaandenijssel.logging.simanalytics.nl×1
- fonts.bunny.net×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1.intermax.nl
- ns2.intermax.nl
- ns3.intermax.eu
- MX
-
- 0 capelleaandenijssel-nl.d-v1.mx.microsoft
- TXT
-
Show 22 TXT records
_h3wkpzp613e57859hhoezpzbxh85lrpv=NTA7516-1;startdate=2019-06;enddate=2029-09;provider=bastionic;ntamx=10 mx.bastion365.net_b7f8wzpdmm0nitzpve3e0kv42w6egm6_ifphsp46ia6okylr815gg5m8i11sb5u6d904f78e4d8793baea2adabf1ea63c3beb2f419fb98b8ee9e0e6e9b47a25245_3cp20aryaqms612pruz7xygfa6p1e13_5fvqq1zbk8n7okd93hocqxbieg3oy32e745bcbb1f8269325707789c5ca03136a181a2feeaedfbf2c75d3b5f9ed65066knowbe4-site-verification=c1bc8b3d02c66f2f745d55e99bfdd405bastion365-domain-validation=1060a3020ebe9dba9224a8dc279ea946f0c762d08bc746fd0c24449a288ade1547435247b74b2a92d79e2016b9f33b5dd7889e37ff85dd75bc9e038916df12930d56e72840d19_g0mx013vl4jhy0i545d4rh54aujhloxf914064f741aa40f6a149095060f1429ad06721441a4360a7d0d15f32c1da386f47b002fa2feb12532014871002a8df83255be5de8fb29e9ba5e991fbdfae54b40b11bdfa7cea8210679492441dbfffa8e5d0c1c58b8c717e88c5a03ead407a8_awkx8mc4lunvav242w17hbqpybdv65k0b38c61196b01a075ca7ef799ae1ee8e7d29668d6ddcdf3ea9d28b6445038ed1xAIxp0zitMRE8YUq3akbx4HJ6n8lBYrsPcD7iaEF8slm8MOpzR3ZwnrCXPS192Kja757f0d3adbd8cc0916f6cb6e7271390autodesk-domain-verification=WYDzhS7yZxudL789U3jg53251746c6289b47169784df38c25b753ddc66f659354ca8852e856386fee03b
- Verified for
-
- Apple
Email authentication strong
- SPF
-
v=spf1 ip4:92.42.235.1/24 ip4:92.42.239.114/32 ip4:92.42.239.248/32 ip4:188.66.17.24/32 ip4:37.235.116.145/32 ip4:185.122.116.118/32 ip4:136.144.187.216/24 ip4:176.74.239.242 ip4:213.208.232.101 ip4:194.53.72.4 ip4:194.53.72.10 ip4:194.53.72.252 ip6:2001:4cb8:59c:1::25 ip6:2A07:CB84:3075:912:10:10:159:25 include:_spf.intermax.nl include:_spf.mailcampaigns.nl include:spf.flowmailer.net include:spf.topdesk.net include:spf.simgroephosting.nl include:recreatex.be include:_spf.mail.services.bastion365.net include:spf.protection.outlook.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:untkrx7x@ag.eu.dmarcadvisor.com,mailto:rua@dmarc.brevo.com; ruf=mailto:untkrx7x@fr.eu.dmarcadvisor.com;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDlwd+LGi+eG1ryzCwKs9fEPqFc0BIv5D4HSle4sCAtd5vViMtRxPzDpkoWUDJB9fBn6gugXEIpy83xHsn3tx…
selectors probed - selector1:
Certificate (current)
Thawte TLS RSA CA G1
Expires in 233 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
always- x-content-type-options
nosniff- content-security-policy
default-src 'self'; img-src * data: 'unsafe-inline' blob:; style-src * 'unsafe-inline' blob:; font-src * data:; script-src * 'unsafe-inline' 'unsafe-eval'; connect-src *; form-action *; media-src *.readspeaker.com *.streamlock.net *.archieven.nl storage.googleapis.com scribit-pro-hosting.storage.googleapis.com scribit-pro.storage.googleapis.com app.talkjs.com *.bbvms.com *.cloudfront.net data: 'self' blob:; frame-src *; frame-ancestors 'self' https://*.polly.help; worker-src * 'unsafe-inline' blob:;- strict-transport-security
max-age=31536000- content-security-policy-report-only
default-src 'self'; img-src * data: blob:; style-src * 'unsafe-inline' blob: https://fonts.googleapis.com; font-src 'self' data: https://fonts.bunny.net https://fonts.gstatic.com https://cuatro.sim-cdn.nl https://cuatro.sim-cdn-acceptatie.nl https://cuatro.sim-cdn-test.nl; script-src 'nonce-ZjVhODgzNDctMWJlOS00OGJmLThiY2EtMmU0OTdkODc2ZTVi' 'strict-dynamic' 'report-sample'; connect-src *; form-action 'self'; media-src https://*.readspeaker.com https://*.streamlock.net https://storage.googleapis.com https://scribit-pro-hosting.storage.googleapis.com https://scribit-pro.storage.googleapis.com https://app.talkjs.com 'self' blob:; frame-src *; frame-ancestors 'self' https://*.polly.help; worker-src * 'unsafe-inline' blob:; report-uri /api/csp-report