hollandskroon.nl
HTML metadata
Technology
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (5)
- kit.fontawesome.com×2
- cloudstatic.obi4wan.com×1
- gmpg.org×1
- translate.google.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1.triple.nl
- ns2.triple.be
- ns3.triple.nu
- MX
-
- 0 hollandskroon-nl.r-v1.mx.microsoft
- TXT
-
Show 15 TXT records
bkiVFCvJCel7xLLE8a685yLpOM8WttoOzOrpr0gvV7a5m2K5K5Vi8AK19pS07TycpIWcUp2gqKVuyUjDKgSZeb1fbdb46628a886a39fbc53f8bcc10dc415049b324e57e843afdc0d58eaad2cvtQMKL2Eu8kpXIfsAAVXscp50qpaazkbhpz4eQ4lomYIRwvZ87c0EDmETgWUllPLceGtFlfPainlv1oduSmjUoN9bs/nU82qvry9bm0h W01WXJmXfMzcTrv959pxdBblBhwQETY6ZfVMIqlEjMiPA==BArZikNFbGDpLv7znLGFHUiM5VWrNreE3k9b0aPBhvXhxP2LNl3WNypFwoq7L3ldbastion365-domain-validation=21a86732ac601DomainVerification=BFVRX5MF0H3P0O33ZCJCV1CBA93HS8KVCW5R3X4GORIY1ZKKWKT3P1TOP6GIVL02EabY0wcii+wSzWypfVNHdlSKCLm5GmGaHXNRG0tN/rE=5813848c4d2c4c7aa6aab987b14c037320f404c41e746fbfa329225ae326d18demWPogkO0fMy1qZScW2hvIpSYVcvZmVSzxKTqRxfkpvBATPZJPalXDBdh0loDgGJmsfpkey=4t3r3gmxksyq3ar4crgr9qsfvv=NTA7516-1;startdate=2019-06;enddate=2029-09;provider=bastionic;ntamx=10 mx.bastion365.netuepFYjVNaMtWQu7SzJjh3r6Fi3flS0gKiNjCq2m6FYlzijpgyXclm7yMgE2Rscys3zFiaymwPM4lyraGIsk8lE44r6IdAtwqnDgRB7RMeuZeYlyz4zHLHxwtDnvK3TWd
- Verified for
-
- Apple
Email authentication strong
- SPF
-
v=spf1 ip4:20.56.15.134 include:_spf.mail.services.bastion365.net include:spf.protection.outlook.com include:spf.shockmedia.email -allstrict (-all) - DMARC
-
v=DMARC1; p=reject;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq0Cd6yRerMatsomjg0TPXzfUqh9wVz9qj4RnUCELy3quZUkWNLfA9PFNZgEqCZv2J5v4WtqEcPrg1T… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwz5fTMygxuVzce/awqh7LFO4tq0NvtQikCMldJBWdDaNhsxZqlv3Z0oSfpeht+UtVl4Cd1GW48PF21…
selectors probed - selector1:
Certificate (current)
Sectigo Public Server Authentication CA OV R36
Expires in 143 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- weak content type protection
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
sameorigin, SAMEORIGIN- permissions-policy
accelerometer=(self), autoplay=(self), camera=(self), cross-origin-isolated=(self), encrypted-media=(self), fullscreen=(self), geolocation=(self), gyroscope=(self), interest-cohort=(), magnetometer=(self), microphone=(self), midi=(self), payment=(self), picture-in-picture=*, publickey-credentials-get=(self), screen-wake-lock=(self), sync-xhr=*, usb=(self), xr-spatial-tracking=(self)- x-content-type-options
nosniff, nosniff- content-security-policy
base-uri 'self'; default-src 'self' 'unsafe-inline' https://*.clarity.ms https://app.obi4wan.ai https://cloudstatic.obi4wan.com https://chatapi.obi4wan.com https://fonts.googleapis.com https://fonts.gstatic.com https://ilost.co https://img.youtube.com https://ka-p.fontawesome.com https://kit.fontawesome.com https://maps.googleapis.com https://maps.gstatic.com https://obipubvideo.s3.eu-central-1.amazonaws.com https://platform.twitter.com https://region1.analytics.google.com https://region1.google-analytics.com https://secure.gravatar.com https://stats.pusher.com https://translate-pa.googleapis.com https://translate.google.com https://translate.googleapis.com https://www.arcgis.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.youtube-nocookie.com https://elasticsearch-yard.app.owc.shockapp.io https://openpdc.hollandskroon.nl https://openpub.hollandskroon.nl wss://ws-eu.pusher.com https://laadkaart.mrae.nl https://simpelsubsidie.nl https://ap- strict-transport-security
max-age=31536000; includeSubDomains
Links to (5)
- youtube.com×1
- wa.me×1
- linkedin.com×1
- instagram.com×1
- facebook.com×1