evivanlanschot.nl
HTML metadata
Technology
- Server
- Microsoft-IIS
- CMS
- Gatsby
- jQuery
- 3.5.1
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (8)
- ajax.aspnetcdn.com×3
- f.vimeocdn.com×1
- i.vimeocdn.com×1
- plug-platform.devrev.ai×1
- tags.tiqcdn.com×1
- try.abtasty.com×1
- visitor-service-eu-central-1.tealiumiq.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
- Address
- © Evi van LanschotLeonardo da Vinciplein 60, 5223 DR 's-Hertogenbosch
DNS records live
- NS
-
- ns1-08.azure-dns.com
- ns2-08.azure-dns.net
- ns3-08.azure-dns.org
- ns4-08.azure-dns.info
- MX
-
- 100 mail.evivanlanschot.nl
- TXT
-
Show 7 TXT records
aSok632bR9x4A5ooMao6nlRPdoLwHk6JKjHs557jsdU=sx7oQ+PgE4yhQtwF5gavoe5dAJmqtPKnANrIwJhEcMAAkFdydruqUSz8p695E6REN8gfcWrDKltXts9zQXLAVQ==box-domain-verification=ae9cd197918f3d847885cff7683d1d14d9a30714943500574869a495d0baf9c7MIVXXdjKlOxp975y8c0hhSequIAOjyvcKt9/phXNENibM0lGAlVbEYQh8urQBN2aKtfh28Y5ILtdOicuBO8h1g==EObjzYwMfsrMPSZpnbRhEjVTNsIyaWsKeCN7XzFFGPo=cZIVeJJyjQNKplSgcLI8djPk3bsQzRya/7y0K+gdMG4=9YO/2wRNmzO8CcE58sPz5G6QMajx7Q7QmMC4gokdirF2LkUvLVCWTRb6uTHJ2IL/ZfQSLqYT0RHCN/wB7/l+EQ==
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:evivanlanschot.nl._nspf.vali.email include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc_agg@vali.email,mailto:vanlanschotkempen@rua.netcraft.com; ruf=mailto:vanlanschotkempen@ruf.netcraft.compolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC8w1ZG2VbYHMMKl69UlsADAS7w/BphxQFEIV+z/im8Cg7pyPuPN0FTZ1Vg/9WVpALdmGCGiz7xSEYgzqqW2y…
selectors probed - selector1:
Certificate (current)
GlobalSign RSA OV SSL CA 2018
Expires in 55 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
default-src * 'self' blob:; manifest-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline' 'report-sample' https://facebook.com https://plug-platform.devrev.ai https://bat.bing.com https://www.google.com/pagead/* https://robeco.mopinion.com https://collect.mopinion.com https://deploy.mopinion.com https://code.highcharts.com https://*.abtasty.com https://*.tealiumiq.com spdy.linkedin.com static-src.linkedin.com *.ads.linkedin.com *.licdn.com static.chartbeat.com www.google-analytics.com ssl.google-analytics.com bcvipva02.rightnowtech.com www.bizographics.com sjs.bizographics.com js.bizographics.com d.la4-c1-was.salesforceliveagent.com slideshare.www.linkedin.com https://snap.licdn.com/li.lms-analytics/insight.min.js platform.linkedin.com platform-akam.linkedin.com platform-ecst.linkedin.com platform-azur.linkedin.com try.abtasty.com https://ajax.aspnetcdn.com https://*.evivanlanschot.nl https://tags.tiqcdn.com *.visualwebsiteoptimizer.com app.vwo.com https://*.relay42.com http://*- strict-transport-security
max-age=31536000; includeSubdomains; preload