fostplus.be
HTML metadata
Technology
- CMS
- Drupal
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (3)
- js-eu1.hs-scripts.com×1
- use.typekit.net×1
- www.googletagmanager.com×1
Social
Contact
- Address
- Fost PlusOlympiadenlaan 2BE-1140 Evere
DNS records live
- NS
-
- ns1.combell.eu
- ns3.combell.net
- ns4.combell.net
- MX
-
- 30 fostplus-be.mail.protection.outlook.com
- TXT
-
Show 8 TXT records
pardot933413=46123201741009a83c4f1a64fc5553d53f04a2a601aa0d04abf5aa04d41fd00dsalesforce-domain-verification=00D5J000001Quph=1TBQw000000010vc55aff7181c047d2a93f57ad34084257o1qttxxbwatbhgyohjv3xs8xfyasoqgh2Ik2zI3HqXB6aGjIkgvI8Lmfx4pqFPNezircaH3gH60ssnkhX+6H9+w0QXRBAQppPxhX11NExO5etohnNGuPnw==00d5j000001quphuacbw=XSTNT8qNL3cC7IvETDBYNtNdcogJKNaKY13xgjfGTqld9GqlRxs6xY5LQBuloanPNEyIkJMQac8bEo+sBCIw/WM=
- Verified for
-
- Anthropic
- Apple
- Atlassian
- Dynatrace
- GlobalSign
- Mailgun
- OpenAI
- Perplexity
Email authentication strong
- SPF
-
v=spf1 a mx ip4:212.123.14.254 ip4:23.97.240.39 ip4:37.72.162.148 ip4:20.50.136.159 ip4:51.137.120.28/30 ip4:198.245.81.0/24 ip4:136.147.176.0/24 ip4:13.111.0.0/16 ip4:136.147.182.0/24 ip4:136.147.135.0/24 ip4:199.122.123.0/24 ip4:51.137.120.29 ip4:51.137.120.31 ip4:51.137.120.28 ip4:51.137.120.30 include:spf.protection.outlook.com include:_spf.salesforce.com include:spf.EU.exclaimer.net -allstrict (-all) - DMARC
-
v=DMARC1; p=reject;sp=reject;fo=1; rua=mailto:it.servicedesk@fostplus.be; ruf=mailto:it.servicedesk@fostplus.be;adkim=s;aspf=spolicy: reject (enforced) · sp=reject - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv8EOARAWC2Y0+mSjP+j3z+WwgGchyCPSjTXCnfIBP3zuWdQ4KeK2vLShk07SPIsky+uoizu4T9nems… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC+Sd6fDgT5DntGlHdyubKbNZHyEXKv7Q7l3EgfCsVEiKCwU3qXPSKc0w/+mEQu3MgDgQb5jPKZ7OUk6zrm5C… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - selector1:
Certificate (current)
GlobalSign RSA OV SSL CA 2018
Expires in 217 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' data:; script-src 'self' 'unsafe-inline' 'unsafe-eval' www.googletagmanager.com www.googleadservices.com *.usercentrics.eu connect.facebook.net snap.licdn.com *.google.com *.linkedin.com *.doubleclick.net cdnjs.cloudflare.com cdn.jsdelivr.net unpkg.com *.docksal.site:* *.ddev.site:* *.gstatic.com chosen.js *.hs-scripts.com *.hsadspixel.net *.hs-banner.com *.hs-analytics.net *.clarity.ms; object-src 'self'; style-src 'self' 'unsafe-inline' *.typekit.net *.icons8.com *.usercentrics.eu cdn.jsdelivr.net cdnjs.cloudflare.com chosen.css unpkg.com; img-src 'self' data: *.google.com *.google.be *.facebook.com *.linkedin.com *.typekit.net *.icons8.com *.usercentrics.eu www.googletagmanager.com *.doubleclick.net *.hubspot.com c.clarity.ms *.bing.com; media-src 'self'; frame-src 'self' *.usercentrics.eu app.powerbi.com *.youtube.com *.google.com www.googletagmanager.com *.spotify.com *.apple.com; frame-ancestors 'self'; child-src 'self' blob:; font-src 'self' 'u- strict-transport-security
max-age=31536000; includeSubDomains; preload