lesbiwinkel.nl
HTML metadata
Technology
- CDN
- Cloudflare
- Stack
- PHP
Third-party hosts loaded (1)
- cdn.edc.nl×26
Contact
- Phone
DNS records live
- NS
-
- carl.ns.cloudflare.com
- irma.ns.cloudflare.com
- MX
-
- 10 mail.lesbiwinkel.nl
Email authentication weak
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
WE1
Expires in 36 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer 'none'; ambient-light-sensor 'none'; camera 'none'; encrypted-media 'self'; fullscreen 'self'; geolocation 'self'; gyroscope 'none'; magnetometer 'none'; microphone 'none'; midi 'none'; picture-in-picture 'none'; speaker 'self'; sync-xhr 'self'; usb 'none'; vr 'none';- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' https://cdn.edc.nl/js/ https://js-agent.newrelic.com/ https://www.google-analytics.com/analytics.js https://www.googletagmanager.com/gtag/js https://eqomcdn.com https://maps.googleapis.com/ https://checkoutshopper-test.cdn.adyen.com https://checkoutshopper-live.cdn.adyen.com https://pay.google.com/ https://x.klarnacdn.net https://x.klarnacdn.net https://js.playground.klarna.com https://www.paypal.com nonce-4f297cfdb6b83bee4728bfd367f895fe0fea24fba3ca8c078f0445800fd95458; style-src 'self' 'unsafe-inline' https://cdn.edc.nl https://fonts.googleapis.com https://checkoutshopper-test.cdn.adyen.com https://checkoutshopper-live.cdn.adyen.com nonce-4f297cfdb6b83bee4728bfd367f895fe0fea24fba3ca8c078f0445800fd95458; object-src 'self' https://checkoutshopper-test.cdn.adyen.com https://checkoutshopper-live.cdn.adyen.com; base-uri 'self'; connect-src 'self' https://*.nr-data.net https://*.google-analytics.com https://stats.g.doubleclick.net https