herent.be
HTML metadata
Technology
Third-party hosts loaded (2)
- prod.widgets.burgerprofiel.vlaanderen.be×2
- stats.lcp.be×1
Social
Contact
- Phone
DNS records live
- NS
-
- lcpnos1.corp.lcpnet.com
- ns3.corp.lcpnet.com
- MX
-
- 10 herent-be.mail.protection.outlook.com
- Verified for
-
- GlobalSign
Email authentication strong
- SPF
-
v=spf1 include:spf.ciport.be include:spf.flexmail.eu a ip4:212.123.22.196/26 ip4:84.199.65.248/25 ip4:149.5.27.0/24 ip4:192.254.121.166 include:spf.facilitator.e2e.be include:gcdewildeman.be include:spf.protection.outlook.com include:spf.lcp.be include:oclcspf3.oclc.org include:_spf.bibliotheek.be ?allneutral (?all) - DMARC
-
v=DMARC1;p=reject;pct=100;rua=mailto:dmarc@herent.be;ruf=mailto:dmarc@herent.be;ri=86400;fo=1;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDXa//MwqkkUxv5tjCs+a8QizEvQ62cOkvKFxV6M0dhUhFSr+ljJ14Uo8WKfTDDKVGy7Yt+nQotqTmdYqmbxL… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuJcgsXw1fLGwNj1qqqPLa29gkH18nRlu1xKekarmPNCXeMY2IwcqTHWgycbpHrbV8nkKRhaT87i8ZusrO6… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDWKlBYjeaKex0tp6OFYFFlBJVPJBeMZMtdny8wX6wF3TZ7VXq/DYsO2TJn+rFvXosHRMsy0zmE7xrEeDxM4jnEiM…
selectors probed - selector1:
Certificate (current)
R13
Expires in 35 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- weak content type protection
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN, SAMEORIGIN- permissions-policy
accelerometer=(), autoplay=*, camera=(), cross-origin-isolated=(), document-domain=(), encrypted-media=(), fullscreen=*, geolocation=*, gyroscope=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=*, publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=*, usb=(), web-share=(), xr-spatial-tracking=(), clipboard-read=(), clipboard-write=()- x-content-type-options
nosniff, NOSNIFF- content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' *.herent.be *.lcp.be *.icordis.be *.google-analytics.com *.tile.openstreetmap.org *.googleapis.com *.gstatic.com *.uitdatabank.be *.imgix.net *.youtube.com *.ytimg.com *.vimeo.com *.vimeocdn.com *.twitter.com *.facebook.com *.fwebservices.be *.tile.openstreetmap.be *.widgets.burgerprofiel.vlaanderen.be *.vlaanderen.be *.frontend.burgerprofiel.vlaanderen.be *.tni.frontend.burgerprofiel.dev-vlaanderen.be *.widgetconfigservice.burgerprofiel.vlaanderen.be tni.widgets.burgerprofiel.dev-vlaanderen.be *.tni.widgets.burgerprofiel.dev-vlaanderen.be *.tni.contactapi.uat-vlaanderen.be tni.frontend.burgerprofiel.dev-vlaanderen.be *.contactapi.vlaanderen.be wss://authenticatie-ti.vlaanderen.be wss://authenticatie.vlaanderen.be *.cloudfront.net authenticatie.vlaanderen.be authenticatie-ti.vlaanderen.be *.googletagmanager.com https://region1.analytics.google.com *.osm.be osm.be *.readspeaker.com *.e.issuu.com *.issuu.com data: googleads.g.doubleclick.n- strict-transport-security
max-age=31536000