hapnijmegenboxmeer.nl

.nl crawl

First seen 2026-06-02 · Last seen 2026-06-02 · ok HTTP/1.1 200 1175 ms crawled 2026-06-02

NL · 31.7.1.87 · AS20847 Previder B.V.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Start het digitaal spreekuur - Kies hieronder uw klacht: - Huisartsenposten Nijmegen en Boxmeer voor Spoed
Language
nl
Canonical
https://www.hapnijmegenboxmeer.nl

Open Graph

url
https://www.hapnijmegenboxmeer.nl/
title
Start het digitaal spreekuur - Kies hieronder uw klacht:
locale
nl
see also
https://twitter.com
site name
Huisartsenposten Nijmegen en Boxmeer voor Spoed

Technology

Server
Apache
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts

Third-party hosts loaded (5)

  • unpkg.com×5
  • fonts.googleapis.com×2
  • fonts.gstatic.com×1
  • urgentiecheck.spreekuur.nl×1
  • www.googletagmanager.com×1

Contact

Phone

DNS records live

NS
  • ns1.elonisas.nl
  • ns2.elonisas.nl
MX
  • 10 cihn-nl.mail.protection.outlook.com
TXT
  • v=NTA7516-1;startdate=2020-01;enddate=2023-06;provider=zorgmail;ntamx=10 relay.zorgmail.nl
Verified for
  • Google
  • Microsoft 365

Email authentication partial

SPF
v=spf1 a a:smtp.uniserver.nl ip4:31.7.1.87 ip6:2a03:9700:8000:0:4a03:2046:7087:6bbf ip4:83.143.187.131 ip4:195.69.75.60 ip4:83.143.187.130 ip4:195.69.75.5 ip4:84.38.234.162 ip4:89.146.58.25 ip4:82.94.164.250 include:spf.protection.outlook.com include:_spf.zorgmail.nl include:spf.afas.online include:servers.mcsv.net -all
strict (-all)
DMARC
v=DMARC1; p=none;
policy: none (monitoring only)
DKIM
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed

Certificate (current)

Sectigo Public Server Authentication CA DV E36
from 2025-09-02 to 2026-10-02
Expires in 120 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.hapnijmegenboxmeer.nl/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
same-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src * 'unsafe-eval' 'unsafe-inline' data: filesystem: about: blob: ws: wss:; base-uri 'self'; frame-ancestors 'self';
strict-transport-security
max-age=31536000; preload

Links to (6)

Linked from (1)