ccs.nl
HTML metadata
Technology
- Server
- Apache
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- cdnjs.cloudflare.com×3
- www.googletagmanager.com×3
- js.hs-scripts.com×2
Social
DNS records live
- NS
-
- ns1.kpn.net
- ns11.kpn.net
- MX
-
- 5 ccs-nl.mail.protection.outlook.com
- TXT
-
atlassian-sending-domain-verification=303dd984-174f-4695-a8b4-76fc82c4726e
- Verified for
-
- Atlassian
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 ip4:193.172.150.253 include:_spf.afasonline.nl include:spf.protection.outlook.com include:_spf.salesforce.com include:3072780.spf07.hubspotemail.net -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; sp=reject; pct=100; rua=mailto:dmarcreports@ccs.nl;policy: reject (enforced) · sp=reject - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt35EyCbJh54otiE8ThxrFA02VDPqmpEByOcf5y760EnWEFdstw+h2oz3w0tcnc/+HjbAC+ql2yfs+9… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAriK9ba4ZNvIvqRivPis6bMTdQmQnUZLLpXcKdrLS0uWEX1hqKiwB2Y1DcyFzDCLu6iF3fBR8SMI4/H…
selectors probed - selector1:
Certificate (current)
R13
Expires in 81 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
fullscreen=(*)- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' blob: data: *.cloudflare.com *.hsforms.net *.hsforms.com *.amazonaws.com *.googletagmanager.com *.youtube-nocookie.com *.youtube.com *.ytimg.com *.googleapis.com *.gstatic.com *.google-analytics.com *.w.org *.wpml.org *.cookielaw.org *.licdn.com *.hotjar.com *.facebook.net *.facebook.com *.linkedin.com *.hubspot.com *.hsappstatic.net *.spur.us *.hs-scripts.com *.hsleadflows.net *.hsadspixel.net *.hs-analytics.net *.hs-banner.com *.google.com *.google.nl *.hubapi.com *.recruitee.com *.doubleclick.net- strict-transport-security
max-age=63072000; includeSubdomains; preload