ksg.nl
HTML metadata
Technology
- CMS
- Gatsby
- jQuery
- 3.3.1 known XSS (<3.5)
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- cdn.consentmanager.net×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- auth01-peer.ib.routit.net
- auth02-peer.ib.routit.net
- MX
-
- 10 mx.spamexperts.com
- 20 fallbackmx.spamexperts.eu
- 30 lastmx.spamexperts.net
- TXT
-
2iyRVT94JB8LKI7HlyL85e22SmjxwMKxmsBuZqk892Vbp3vPF48N9UOrHKaepBEdgcWvzOBWa83gQKtF79Lreg==
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 ip4:84.35.130.244 ip4:84.35.130.242 ip4:77.60.50.104 ip4:37.97.179.208 ip4:31.14.97.108 a:ren-it.net a:static.msdp1.com include:spf.afas.online include:smtp.spf.ziggo.nl exists:%{ir}._spf.msdp1.com include:spf.protection.outlook.com include:amazonses.com include:spf.flowmailer.net -allstrict (-all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
R12
Expires in 72 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.ksg.nl; script-src 'self' *.ksg.nl *.googletagmanager.com *.google-analytics.com *.plyr.io *.consentmanager.net cdnjs.cloudflare.com *.bootcss.com s3.amazonaws.com www.google.com 'nonce-vmADByQd7EeRBVg1FvATzw=='; style-src 'self' *.ksg.nl cdnjs.cloudflare.com *.bootcss.com www.google.com 'unsafe-inline'; connect-src 'self' https://region1.google-analytics.com https://www.google-analytics.com https://www.googletagmanager.com https://cdn.plyr.io https://www.google.com; img-src 'self' data: *.ksg.nl *.sra.nl *.consentmanager.net *.googletagmanager.com *.google-analytics.com www.google.com; object-src 'none'; base-uri 'self'; frame-src https://www.googletagmanager.com *.ksg.nl *.consentmanager.net www.google.com *.shuftipro.com;- strict-transport-security
max-age=31536000