cotecna.nl
HTML metadata
Technology
- Server
- Vox
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×2
Social
Contact
- Phone
Registration
- Registrar
- MarkMonitor Inc.
- Created
- 2003-04-17
- Updated
- 2017-11-16
- Name servers
-
- ns2.easydns.com
- ns1.easydns.com
DNS records live
- NS
-
- dns1.easydns.com
- dns2.easydns.net
- dns3.easydns.ca
- MX
-
- 0 mxa-004ed501.gslb.pphosted.com
- 0 mxb-004ed501.gslb.pphosted.com
- TXT
-
Show 5 TXT records
dgK4mzcM4KgNe+Hb+7V307pnEgztl8qaO5iDHKbm1GywhBgP8FB691XIfsMrIapAUrI+oKIFAa/vbB15KLacog==N0O3F75551MS=ms69183630o97gijut7vrbofodm38aka4vh4pro-ctnmis-web.azurewebsites.net
Email authentication strong
- SPF
-
v=spf1 include:eaqmra2wfq.powerspf.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:ngxlwxdeek@rua.powerdmarc.com; ruf=mailto:ngxlwxdeek@ruf.powerdmarc.com; pct=100; fo=1;policy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwA4d5RwdgU6h5Bx5l8Q8o4fLTzuZlRt8pE/aNXiUcLGNdPhpksuGxhyrnmIWXc7ZJSF66uKZ2oIE0L… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtOKm4Tp8tRvczJbxlL1CIDcCbegizjTnNord0rfh/rmqQ6ncbQo2vUrIum97+YpI3t+1hkRR67EC1C… - s1:
v=DKIM1; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAouwUl3ggKlwPUcMj95bIVrUFM8DUWXVT7SY+2OT0j/BPmfF1T1sjeHrvNIDcdo3Wu+Diov6emmCXa2zW087WO… - s2:
v=DKIM1; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA8uWv+J4orhfN8YhFE2CakmaLBG0/Jhec2rjTz4lzDuTYZKXG7NTV1a3oChBYmYVK/erHE3fbMXPJz2OhEUCGX…
selectors probed - selector1:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 142 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' https://fitosoil.com https://www.google-analytics.com https://www.googletagmanager.com https://stats.g.doubleclick.net https://code.jquery.com https://fonts.googleapis.com https://fonts.gstatic.com https://ajax.aspnetcdn.com https://cdnjs.cloudflare.com https://googlemaps.github.io https://maps.googleapis.com https://unpkg.com https://www.youtube.com https://www.youtube-nocookie.com https://stackpath.bootstrapcdn.com https://i.ytimg.com https://www.google.com https://maps.gstatic.com https://www.gstatic.com https://wati-integration-service.clare.ai https://fonts.intercomcdn.com https://cotecna-cdn.b-cdn.net https://cotecna-cdn-test.b-cdn.net https://cotecna-kairos.my.site.com https://cotecna-kairos.my.salesforce-scrt.com https://pre-prod-cotecna.voxteneo.com https://cdn.shopify.com https://widget.intercom.io https://js.intercomcdn.com https://user-images.githubusercontent.com https://api-iam.intercom.io https://cotecna-national-cdn-- strict-transport-security
max-age=31536000; includeSubDomains- content-security-policy-report-only
default-src 'self' http: https: data: blob: 'unsafe-eval' 'unsafe-inline'; frame-ancestors 'self';