kvk.nl
HTML metadata
Technology
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- production-site-nl.kvk.bloomreach.cloud×5
- app.tolkie.nl×1
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- ns0.rijksoverheidnl.com
- ns1.rijksoverheidnl.nl
- ns2.rijksoverheidnl.eu
- ns3.rijksoverheidnl.org
- MX
-
- 10 kvk-nl.b-v1.mx.microsoft
- TXT
-
Show 4 TXT records
google-site-verification=dVWbmiglx9c1SaqpPzkwtSpLWda-NmFkx5n8XywAxJ0ms-domain-verification=3c67f1e8-d23b-4c6d-b60d-d15250293e93MS=ms34194033atlassian-domain-verification=bQNatrREATwsBBeNH4GEo/hpas2BEohXwgkm1ovHHQ9Zvi1te6hJ3Gg3afe7CINN
Email authentication strong
- SPF
-
v=spf1 ip6:2001:67c:17ec::ed9e:2 ip6:2001:67c:17ec::ed9e:201 ip4:176.117.57.0/24 ip4:46.235.17.248/29 ip4:157.97.199.200 ip4:35.189.233.205 ip4:34.79.15.150 a include:spf.protection.outlook.com include:_spf.salesforce.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:44nv4nua@kvk.nl; ruf=mailto:41cudlpj@kvk.nl;policy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- default:
p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCohtUBdNbNvqZF2xCaUqCqvyouhpT8/fq3NKT2SHhsBKOaK8ZZAVD9sZt5m85M9XfF95GcXfD4sVMK5NJN7hde6t8dFmk3DE5ycL… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCx4oYOPYe1nBRjJ7kJeCd9iMQezN70f44AkoXvHH/df+na9u5/s0jf8Z6IXUEy2jxJs+8evnKpTN36ybFtnO… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuXHi8VbMpAJ1gEILjc+wsclQ7L62vrUr7VavNlaqGscUGKkufR7KYoLFAZJp2nJKEmLKAXtMjv9+oDvycN… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDFQfBtnKnWyAIyuYyS2+0WwEtSHWhjtHcS+wOH1nJ/LbTuwDeF3EGguFvpdVZVtoeW1GmxScoKLPV3+n6Hngni5K…
selectors probed - default:
Certificate (current)
DigiCert G2 TLS EU RSA4096 SHA384 2022 CA1
Expires in 164 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer- x-frame-options
deny- x-content-type-options
nosniff- content-security-policy
default-src 'self' https:; object-src 'self'; frame-src 'self' *.kvk.nl www.youtube.com m.youtube.com cloud.reflexappointment.nl iwelcome.sso.eherkenning.nl ehm01.iwelcome.nl opendata.ondernemersplein.nl www.google.com www.googletagmanager.com *.hotjar.com *.mopinion.com *.soundcloud.com *.youtube-nocookie.com *.spotify.com webservices.kvk.nl webservices.acp.kvk.nl channel.me documentservices.adobe.com viewlicense.adobe.io *.sprinklr.com https://app.tolkie.nl; child-src 'self' *.kvk.nl www.youtube.com cloud.reflexappointment.nl iwelcome.sso.eherkenning.nl ehm01.iwelcome.nl opendata.ondernemersplein.nl www.googletagmanager.com *.hotjar.com *.mopinion.com *.soundcloud.com *.youtube-nocookie.com *.spotify.com webservices.kvk.nl webservices.acp.kvk.nl documentservices.adobe.com viewlicense.adobe.io; style-src 'self' 'unsafe-inline' data: *.kvk.nl tagmanager.google.com translate.googleapis.com *.mopinion.com https://fonts.googleapis.com *.spotify.com *.kvk.bloomreach.cloud *.gstatic.com doc- strict-transport-security
max-age=31536000