interparking.be
HTML metadata
Technology
- CDN
- Azure Front Door
- CMS
- Next.js
- Cookie consent
-
- OneTrust
Third-party hosts loaded (3)
- images.ctfassets.net×49
- cdn.cookielaw.org×1
- privacyportal-eu-cdn.onetrust.com×1
Social
DNS records live
- NS
-
- ns1-09.azure-dns.com
- ns2-09.azure-dns.net
- ns3-09.azure-dns.org
- ns4-09.azure-dns.info
- MX
-
- 0 interparking-be.mail.protection.outlook.com
- TXT
-
Show 7 TXT records
google-site-verification=kz0bt7RnpxKvlTgaxA2i4EUWQFrXORr1DqPzDbzIUVA_globalsign-domain-verification=uPusE1oc3hJ6tYNvIuGKUvAJSTPNlrktz_TaRiDYu_google-site-verification=_86nm5h3fttXN8ytl6XfT8t_PkTZeNdzcfm6l7b40kUmyaccount=949532c196bf93dc62e19b62e9139a0amandrill_verify.9aCB5mmwNOab8R73MjRxRwMS=ms49589920www=4d6771b5738213e3a72c556bd5753422
Email authentication strong
- SPF
-
v=spf1 mx ip4:188.118.10.185 ip4:89.202.151.34 ip4:89.202.151.54 include:spf.protection.outlook.com a:smtp.interparking.com a:mail.interparking.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; adkim=s; aspf=r; rua=mailto:9a5qiars@ag.eu.dmarcadvisor.com;ruf=mailto:9a5qiars@fr.eu.dmarcadvisor.com; rf=afrf; pct=100;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq5myYRHUlDc3hdWxguk1ymlkaG3sAtQXIf//FxZr5dCxLRjQZaATEWZShPWaw4zc2ItNciDLfXNUXE… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwijnjhpgAijg4REcz7+aZdaEeDPPfNs3SSM+KOSlzfAdWErEYbB9Dao70PlK4iK7veaNVtbRO1KouK…
selectors probed - selector1:
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 116 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(self), midi=(self), push=(self), sync-xhr=(self), microphone=(self), camera=(self), magnetometer=(self), gyroscope=(self), speaker=(self), vibrate=(self), fullscreen=(self), payment=(self)- x-content-type-options
nosniff- content-security-policy
default-src data: 'unsafe-inline' 'unsafe-eval' blob: *.interparking.be *.cookielaw.org *.facebook.com *.friendlycaptcha.eu *.googleapis.com *.gstatic.com *.ctfassets.net *.matomo.cloud *.onetrust.com *.typekit.net; style-src 'unsafe-inline' *.honey.io *.googleapis.com *.typekit.net *.gstatic.com *.cloudflare.com *.cdnfonts.com *.matomo.cloud *.onetrust.com *.interparking.com *.fontawesome.com;img-src data: www.google.com www.google.be *.interparking.be *.aitopia.ai *.cookielaw.org *.honey.io *.facebook.com *.matomo.cloud *.googleapis.com *.gstatic.com *.ctfassets.net *.lejacquesfranck.be *.internetpolitie.nl *.surfe.be; font-src data: *.affilitizer.com *.merci-app.com *.tailwindapp.com *.scite.ai *.cdnfonts.com *.gstatic.com *.matomo.cloud *.onetrust.com *.interparking.be; script-src data: 'unsafe-inline' 'unsafe-eval' *.tally.so tally.so *.facebook.net *.cookielaw.org *.facebook.com *.matomo.cloud *.googleapis.com *.googletagmanager.com *.youtube.com *.onetrust.com *.cloudflare.com- strict-transport-security
max-age=31536000; includeSubDomains