eriks.nl
HTML metadata
Technology
- Analytics
-
- Google Analytics
- Google Tag Manager
- Hotjar
- Ads
-
- Meta Pixel
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (11)
- www.googletagmanager.com×2
- apeagle.io×1
- connect.facebook.net×1
- consent.cookiebot.com×1
- consentcdn.cookiebot.com×1
- in.hotjar.com×1
- px.ads.linkedin.com×1
- static.hotjar.com×1
- www.facebook.com×1
- www.google-analytics.com×1
- www.gstatic.com×1
Social
Contact
DNS records live
- NS
-
- ns1-05.azure-dns.com
- ns2-05.azure-dns.net
- ns3-05.azure-dns.org
- ns4-05.azure-dns.info
- MX
-
- 10 eriks-nl.mail.protection.outlook.com
- TXT
-
74ec08452e4d4419ae9dcd435bc0f0fb5251e0dfda391fe505743d0c51d16525xmkh86xq1484g2zb44zh2hxxxhwjzqns
- Verified for
-
- Atlassian
- DocuSign
- Dynamics 365
Email authentication strong
- SPF
-
v=spf1 ip4:178.237.44.34 ip4:20.126.188.128 ip4:20.234.226.69 ip4:20.4.43.187 ip4:20.13.59.113 ip4:20.8.141.37 include:spf.protection.outlook.com include:spf.eu.exclaimer.net include:mktomail.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:eriks-rua@eriks.lu; ruf=mailto:eriks-ruf@eriks.lupolicy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA864xmGKnk675tkcF/h9ncGWWCORlWInEX7oR5qqVV1t8RW11NwICwRrHX3j+ERIn/B08HQXmeoKt8f… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAp5zrrKo+M3Yl/UR2SKW9PA9bM3A6CFxszMtyVC9tDLoMgefPId9+BTaaKpnPnhaNAt0Ehr5jXtySI+… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - selector1:
Certificate (current)
PerfectSSL
Expires in 142 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self' shop.eriks.nl *.shop.eriks.nl; upgrade-insecure-requests; script-src eriks.nl *.eriks.nl *.shop.eriks.nl *.vimeo.com *.cookiebot.com unpkg.com blueconic.net *.blueconic.net *.marketo.net pages.eriks.com visualwebsiteoptimizer.com *.visualwebsiteoptimizer.com apeagle.io *.youtube.com *.adobedtm.com *.azure.com *.azureedge.net *.googleapis.com *.googletagmanager.com *.adservice.google.com *.googleadservices.com googleads.g.doubleclick.net *.google-analytics.com dqm.crownpeak.com *.twimg.com *.twitter.com twitter.com *.facebook.net *.cobrowser.com *.google.com *.gstatic.com *.hsforms.net *.hsforms.com *.elfsight.com snap.licdn.com static.hotjar.com script.hotjar.com js.hs-scripts.com js.hs-analytics.net js.hs-banner.com ubembed.com *.ubembed.com js.ubembed.com *.js.ubembed.com c.leadlab.click 'self' 'unsafe-eval' 'unsafe-inline';- strict-transport-security
max-age=31557600