hartman.eu
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (4)
- hartman.nl×2
- hartman.be×1
- hartman.de×1
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- ns1.shockmedia.nl
- ns2.shockmedia.nl
- ns3.shockmedia.nl
- MX
-
- 10 hartman-eu.mail.eo.outlook.com
- TXT
-
Show 5 TXT records
/IGKzsVGjHjy2zVA0ou/AomB3zW56Po/VeEqyv/woCNykWqbKVswI6fN2ooV1hedXJcfPpi/6lyOz6/+QZ9JvQ==google-site-verification=NTc6DQiP3ikdIXjPBt8OHTJRJHvJnIRzdq5Wyt8n-gofacebook-domain-verification=3x4v946mk5jhg0sndufatj7earb619v=spf1 include:spf.protection.outlook.com include:spf.mandrillapp.com include:emsd1.com include:spf.eu.exclaimer.net -allMS=ms14098377
Certificate (current)
R12
Expires in 52 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
Header values
- x-frame-options
SAMEORIGIN- permissions-policy
fullscreen=(*), geolocation=(*), camera=(*)- x-content-type-options
nosniff- content-security-policy
default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval' *.youtube.com *.vimeo.com *.google-analytics.com *.google.com *.gstatic.com *.googletagmanager.com *.googleadservices.com *.doubleclick.net *.facebook.com *.facebook.net *.pinimg.com *.clarity.ms c.bing.com *.cookiefirst.com *.activehosted.com *.marker.io *.app-us1.com ct.pinterest.com;style-src 'self' 'unsafe-inline' *.cookiefirst.com;object-src 'none' ;base-uri 'self' ;connect-src 'self' *.mapbox.com *.google-analytics.com *.clarity.ms *.g.doubleclick.net *.pinterest.com *.cookiefirst.com *.marker.io *.app-us1.com *.google.com *.doubleclick.net *.facebook.com;font-src 'self' data: ;frame-src 'self' *.youtube.com *.vimeo.com *.googletagmanager.com *.google.com *.pinterest.com *.publitas.com *.hartman.eu *.marker.io *.doubleclick.net;img-src 'self' data: *.cloudfront.net vumbnail.com *.ytimg.com *.google-analytics.com *.google.com *.google.nl *.google.de *.facebook.com *.bing.com *.pinterest.com *.clarity.ms *.cookiefi- strict-transport-security
max-age=15768000; preload;