lapperre.be
HTML metadata
Technology
- CDN
- Azure Front Door
- CMS
- Next.js
- JS framework
- Next.js
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
Third-party hosts loaded (22)
- eu-images.contentstack.com×22
- cdn.cookielaw.org×5
- www.googletagmanager.com×4
- www.lapperre.lu×2
- cdn.optimizely.com×1
- cdn.schemaapp.com×1
- www.audionova.com×1
- www.audionova.com.br×1
- www.audionova.dk×1
- www.audionova.se×1
- www.audionovaitalia.it×1
- www.auditionsante.fr×1
- www.bootshearingcare.com×1
- www.bootshearingcare.ie×1
- www.connecthearing.ca×1
- www.connecthearing.com.au×1
- www.geers.de×1
- www.geers.hu×1
- www.geers.pl×1
- www.hansaton.at×1
- www.schoonenberg.nl×1
- www.tritonhearing.co.nz×1
Social
DNS records live
- NS
-
- ns-1188.awsdns-20.org
- ns-1786.awsdns-31.co.uk
- ns-381.awsdns-47.com
- ns-772.awsdns-32.net
- ns1-09.azure-dns.com
- ns2-09.azure-dns.net
- ns3-09.azure-dns.org
- ns4-09.azure-dns.info
- MX
-
- 10 mail101.sonova.com
- 10 mail102.sonova.com
- 10 mail103.sonova.com
- 10 mail104.sonova.com
- TXT
-
EtNV5/b77EUet5vWiTCXJuMYzoEgXbkBcM56Vy4qQ3VuprE/UdXPwLqgVoAWImsXh+tO8REl4QWNp2Duh2lVjQ==MS = ms78786657mandrill_verify._FSrVZlOZIzbTalhYraCNA
- Verified for
-
- Adobe
- Cisco
- Meta
Email authentication partial
- SPF
-
v=spf1 mx include:sonova.net include:mandrillapp.com include:spf.steam-connect.com include:trustpilotservice.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:gthwor3p38@rua.powerdmarc.com; ruf=mailto:gthwor3p38@ruf.powerdmarc.com; fo=0:1:d:s;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6ggY+ZwTqx/MQF075JFdOP5B6Mm2VBDdMQDCo8TV3223IP2+T4KzDp/VOR1P5SI4+kIsnDGPjGhEGY… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - selector1:
Certificate (current)
E7
Expires in 64 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
img-src 'self' * maps.googleapis.com maps.gstatic.com cdn.cookielaw.org eu-images.contentstack.com data:; frame-src *.connexone.co.uk bws.schoonenberg.nl/ *.hubspot.com *.trustpilot.com *.spotify.com *.youtube.com *.vimeo.com *.google.com storage.googleapis.com webseite360.at hansaton.softgarden.io *.fls.doubleclick.net www.googletagmanager.com *.doubleclick.net *.criteo.com *.eu.criteo.com *.flipsnack.com server.fillout.com *.typeform.com *.youtube-nocookie.com *.fillout.com *.jotform.com *.matterport.com eu-assets.contentstack.com *.optimizely.com; frame-ancestors 'self' https://www.lapperre.be open.spotify.com *.youtube.com *.vimeo.com *.google.com storage.googleapis.com https://hansaton.softgarden.io/ https://webseite360.at/ https://www.hansaton.at/form-action 'self' *.trustpilot.com *.google.com; object-src *.youtube.com *.vimeo.com *.hubspot.com *.lpsnmedia.net; report-to csp-endpoint;- strict-transport-security
max-age=31536000; includeSubDomains