damste.nl
HTML metadata
Technology
- CDN
- Cloudflare
- Stack
- PHP
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (3)
- consent.cookiebot.com×2
- www.googletagmanager.com×2
- js-eu1.hs-scripts.com×1
Social
Contact
- Phone
- Address
- Prins Bernhardplein 200, 1097 JB Amsterdam, Amsterdam
DNS records live
- NS
-
- tess.ns.cloudflare.com
- vicky.ns.cloudflare.com
- MX
-
- 10 de-smtp-inbound-1.mimecast.com
- 10 de-smtp-inbound-2.mimecast.com
- TXT
-
Show 4 TXT records
NTA7516 delivery via a Qualified Trust Service Provider - https://esignature.ec.europa.eu/efda/tl-browser/#/screen/tl/NL/12v=NTA7516-1;startdate=2022-01;enddate=2029-01;provider=Aangetekend B.V.;ntamx=10 nta7516-incoming.beveiligdmailen.nlv=NTA7516;version:2019-06;expire:2029-01;provider:Aangetekend B.V.;ntamx:nta7516-incoming.beveiligdmailen.nlLmE2Z9/lp5WLc0Nu0raDTMuMuSpqYEtSg4WWL8uNLxc9d1hvvDjeptiUQoPVwdF3dmDJzbqBCiosWipnKbZVhw==
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 mx a include:spf.mtasv.net include:de._netblocks.mimecast.com include:_spf.spotler.email ip4:23.249.239.218 ip4:213.125.70.142 ip4:31.207.23.250 ip4:62.165.65.25 ip4:31.7.7.78 include:_spf.previder.nl include:_spf.paytsoftware.com include:24905877.spf01.hubspotemail.net include:spf.flowmailer.net include:spf.mxcsv.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@inbound.flowmailer.net; ruf=mailto:dmarc@inbound.flowmailer.net; fo=1policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
E8
Expires in 45 days
HTTP security headers
- present
-
- content-security-policy
- permissions-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
Header values
- permissions-policy
fullscreen=(*), geolocation=(*), camera=(*)- content-security-policy
default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval' *.youtube.com *.vimeo.com *.google.nl *.googletagmanager.com *.google-analytics.com *.analytics.google.com *.googleadservices.com *.google.com *.gstatic.com *.googletagmanager.com *.doubleclick.net *.qooqie.com *.cookiebot.com *.zdassets.com *.zopim.com *.marker.io *.hs-scripts.com *.hsadspixel.net *.hs-analytics.net *.hscollectedforms.net *.hs-banner.com *.hubspot.com assets.calendly.com;style-src 'self' 'unsafe-inline' *.typekit.net *.cookiebot.com;object-src 'none' ;base-uri 'self' ;connect-src 'self' wss: *.googletagmanager.com *.google.nl *.google-analytics.com *.google.com *.g.doubleclick.net *.cookiebot.com *.qooqie.com *.zdassets.com *.zendesk.com *.zopim.com *.marker.io *.hubapi.com *.hscollectedforms.net *.doubleclick.net *.hubspot.com;font-src 'self' data: *.typekit.net;frame-src 'self' *.klantenvertellen.nl *.youtube.com *.vimeo.com *.googletagmanager.com *.doubleclick.net *.google.com *.marker.io *.zendesk