futurumshop.nl
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Analytics
- Google Tag Manager
Third-party hosts loaded (3)
- challenges.cloudflare.com×1
- www.google-analytics.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
- Address
- Europaweg 165, 7336, Apeldoorn, Gelderland, NL
DNS records live
- NS
-
- dion.ns.cloudflare.com
- molly.ns.cloudflare.com
- MX
-
- 10 mail-scan.nederland.net
- TXT
-
ms=ms89240221new-relic-domain-verification=cea00f2f29424b1ca2b8c2620dee21f9
- Verified for
-
- Ahrefs
- Atlassian
Email authentication strong
- SPF
-
v=spf1 mx include:_spf.smtp.computel.nl a:mail.futurumshop.nl ip4:31.161.68.8/29 ip4:87.233.154.205 include:msdp1.com include:_spf.supportbyrobin.com include:spf.protection.outlook.com include:spf.vanboxtel.hosting -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:development+dmarc@futurumshop.nl; ruf=mailto:development+dmarc@futurumshop.nl; fo=1policy: quarantine - DKIM
- no key found at common selectors
Certificate (current)
Sectigo Public Server Authentication CA EV R36
Expires in 44 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
frame-src 'self' *.futurumtest.nl *.futurumshop.nl *.futurumshop.com *.robinhq.com *.2mdn.net *.akstat.io *.doubleclick.net *.mpstat.us *.youtube-nocookie.com bolfelicitatie.b05-apps.nl platform.twitter.com player.autheos.com securewebregistrations.net tpc.googlesyndication.com view.publitas.com *.facebook.com *.google.com *.visualstudio.com *.vimeo.com *.criteo.com *.googletagmanager.com *.visualwebsiteoptimizer.com *.googletagmanager.com *.bing.com *.googleadservices.com robincontentdesktop.blob.core.windows.net sslwidget.criteo.com *.doubleclick.net *.gstatic.com *.youtube.com *.issuu.com 'unsafe-inline' *.facebook.net *.google-analytics.com creativecdn.com *.creativecdn.com *.selleitalia.com *.komoot.com *.adyen.com *.paypal.com *.googleoptimize.com rum-static.pingdom.net *.clarity.ms *.hotjar.com *.newrelic.com a.omappapi.com *.simpleanalyticscdn.com *.cloudflare.com analytics.ahrefs.com static.cloudflareinsights.com ;, script-src 'unsafe-eval' 'self' *.futurumtest.nl *.futurumsho- strict-transport-security
max-age=31536000; includeSubDomains