kuiperverzekeringen.nl
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (3)
- fonts.googleapis.com×1
- www.google.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
- Address
- Breedpad 21, HeerenveenNederlandRoutebeschrijvingMeer contactgegevens
DNS records live
- NS
-
- ns0.claranet.com
- ns1.clara.net
- ns2.claranet.com
- MX
-
- 10 d325413.b.ess.de.barracudanetworks.com
- 5 d325413.a.ess.de.barracudanetworks.com
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:spf.ess.de.barracudanetworks.com include:spf.protection.outlook.com include:spf.mailjet.com mx a ip4:92.70.121.148 ip4:92.70.121.150 ip4:104.40.229.156 ip4:213.136.12.0/24 ip6:2001:7b8:3:5::25:0/112 include:sendgrid.net ip4:82.94.207.128/25 -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; sp=none;policy: quarantine · sp=none - DKIM
- no key found at common selectors
Certificate (current)
E7
Expires in 47 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
no-referrer- x-frame-options
DENY- permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=(), battery=(), camera=(), cross-origin-isolated=(), display-capture=(), document-domain=(), encrypted-media=(), execution-while-not-rendered=(), execution-while-out-of-viewport=(), fullscreen=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), midi=(), navigation-override=(), payment=(), picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(), usb=(), web-share=(), xr-spatial-tracking=()- x-content-type-options
nosniff- content-security-policy
default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' website-kuiper-frontend.localdev.localhost www.googletagmanager.com google-analytics.com www.google-analytics.com google.com www.google.com gstatic.com www.gstatic.com consent.cookiefirst.com;style-src 'self' 'unsafe-inline' website-kuiper-frontend.localdev.localhost fonts.googleapis.com consent.cookiefirst.com;img-src 'self' www.gravatar.com data: website-kuiper-frontend.localdev.localhost chart.googleapis.com googletagmanager.com www.googletagmanager.com consent.cookiefirst.com;font-src 'self' website-kuiper-frontend.localdev.localhost fonts.gstatic.com;connect-src 'self' *;frame-src 'self' google.com www.google.com;base-uri 'self';form-action 'self';frame-ancestors *;upgrade-insecure-requests- strict-transport-security
max-age=31536000; includeSubDomains; preload