interieurwereld.nl
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Gatsby
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (3)
- chimpstatic.com×1
- dev.visualwebsiteoptimizer.com×1
- use.typekit.net×1
Social
Contact
- Phone
- Address
- Verlengde Industrieweg 1, 7949 AR, Rogat, Overijssel, NL
DNS records live
- NS
-
- dane.ns.cloudflare.com
- venus.ns.cloudflare.com
- MX
-
- 0 interieurwereld-nl.mail.protection.outlook.com
- Verified for
-
- Microsoft 365
Email authentication weak
- SPF
-
v=spf1 ip4:37.97.214.114 a mx ip4:46.182.223.83 ip4:185.76.239.236 include:spf.interieurprod.hypernode.io include:spf.protection.outlook.com a:smtp.ziggozakelijk.nl a:smtpq5.tb.mail.iss.as9143.net ~allsoftfail (~all) - DMARC
- not published
- DKIM
-
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAr/Z5H8PZExdGNfkUNSCiS0L6T8PKrJk4/ZFJxHZ/zdH+uoRdPOUSpNMYAcAfOxiJN9cGE5UqBbHHHc… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - default:
Certificate (current)
WE1
Expires in 56 days
HTTP security headers
- present
-
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- missing Content Security Policy
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy-report-only
font-src *.gstatic.com 'self' data: *.cloudflare.com *.twitter.com *.typekit.net *.twimg.com *.trustedshops.com *.googleapis.com *.zopim.com *.facebook.net *.facebook.com *.mollie.com *.pinterest.com *.analytics.google.com interieurwereld.nl *.cookiebot.com *.cookiebot.eu *.googletagmanager.com *.fontawesome.com data: 'self' 'unsafe-inline'; form-action pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.twitter.com *.facebook.net *.facebook.com *.mollie.com *.pinterest.com *.analytics.google.com interieurwereld.nl *.cookiebot.com *.cookiebot.eu *.googletagmanager.com 'self' 'unsafe-inline'; frame-ancestors www.gstatic.com 'self'; frame-src fast.amc.demdex.net *.adobe.com player.vimeo.com *.youtube.com https://www.google.com/recaptcha/ bid.g.doubleclick.net www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com www.google.com *.weltpixel.com *.twitter.com *.demdex.net *.google.com *.facebook.net *.facebook.com *.mollie.com *.pinterest.com *.analytics.google