hortusleiden.nl
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- www.youtube.com×2
- translate.google.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1.surfnet.nl
- ns2.surfnet.nl
- ns3.surfnet.nl
- MX
-
- 0 hortusleiden-nl.c-v1.mx.microsoft
- TXT
-
RLJyHISwCQPiV1fiMrb4+aCGoL7RIAuRhtsfXB+pwkvh/kgCuqxBJozU8enB0H3CAFE8ixumndt8Zf8PAJBxxQ==
- Verified for
-
- HARICA
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:_spf.smtp.leidenuniv.nl ip4:82.94.205.36 a:gatekeeper.ticketteam.com a:mailing.ticketteam.cloud include:_spf.cre8ion.nl include:_spf.xqueue.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; sp=reject; fo=1; ri=86400; rua=mailto:dmarcreportsrua@issc.leidenuniv.nl; ruf=mailto:dmarcreportsruf@issc.leidenuniv.nlpolicy: quarantine · sp=reject - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsGZ/pJLGZGbfYr9boE6q5Sj4OSbTIEVkK7Ux6Zhm0d2aM1kb194cAsXAvm0znJwfffwL4RvIh8VGxY… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArgL3Gi0y/xw5RG1ggTAAIuGMtQZn6OonCp8K4qjwO0PVO44mhN447fZG16FkYjvPzcLRd0QCkrZEfb…
selectors probed - selector1:
Certificate (current)
R12
Expires in 69 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
unsafe-url- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(self)- x-content-type-options
nosniff- content-security-policy
block-all-mixed-content; base-uri 'self'; default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' localhost:* *.google.com *.gstatic.com www.google-analytics.com *.addtoany.com use.fontawesome.com *.youtube.com *.ytimg.com *.googleapis.com googleapis.com *.googletagmanager.com *.cloudflare.com *.vimeo.com *.formitable.com *.googleadservices.com *.openstreetmap.org *.openlayers.org www.clarity.ms rtb8.adscience.nl connect.facebook.net *.cookiecode.nl static.hortusleiden.nl; style-src 'self' 'unsafe-inline' *.googleapis.com googleapis.com *.google.com *.addtoany.com cloud.typography.com *.myfonts.net *.typekit.net *.cloudflare.com *.formitable.com *.gstatic.com *.openstreetmap.org *.openlayers.org static.hortusleiden.nl; font-src 'self' *.gstatic.com data: *.typekit.net *.cloudflare.com static.hortusleiden.nl; img-src 'self' data: *.google-analytics.com *.analytics-google.com *.gstatic.com *.googleapis.com googleapis.com *.google.com *.cloudflare.com *.openstreetmap.org c.cl- strict-transport-security
max-age=31536000