lingerie-xxx.nl
HTML metadata
Technology
- CDN
- Cloudflare
- Stack
- PHP
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- cdn.edc.nl×19
- www.googletagmanager.com×1
Contact
- Phone
DNS records live
- NS
-
- janet.ns.cloudflare.com
- norm.ns.cloudflare.com
Email authentication no MX
- SPF
-
v=spf1 a mx ip4:188.93.144.85/21 ip6:2a00:4e40:1:1::7:1/120 ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
WE1
Expires in 79 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer 'none'; ambient-light-sensor 'none'; camera 'none'; encrypted-media 'self'; fullscreen 'self'; geolocation 'self'; gyroscope 'none'; magnetometer 'none'; microphone 'none'; midi 'none'; picture-in-picture 'none'; speaker 'self'; sync-xhr 'self'; usb 'none'; vr 'none';- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' https://cdn.edc.nl/js/ https://js-agent.newrelic.com/ https://www.google-analytics.com/analytics.js https://www.googletagmanager.com/gtag/js https://eqomcdn.com https://maps.googleapis.com/ https://checkoutshopper-test.cdn.adyen.com https://checkoutshopper-live.cdn.adyen.com https://pay.google.com/ https://x.klarnacdn.net https://x.klarnacdn.net https://js.playground.klarna.com https://www.paypal.com nonce-851b7faf80b323e872301b6f4f876042cdbff20ef3969ccf3d9c280a142b3551; style-src 'self' 'unsafe-inline' https://cdn.edc.nl https://fonts.googleapis.com https://checkoutshopper-test.cdn.adyen.com https://checkoutshopper-live.cdn.adyen.com nonce-851b7faf80b323e872301b6f4f876042cdbff20ef3969ccf3d9c280a142b3551; object-src 'self' https://checkoutshopper-test.cdn.adyen.com https://checkoutshopper-live.cdn.adyen.com; base-uri 'self'; connect-src 'self' https://*.nr-data.net https://*.google-analytics.com https://stats.g.doubleclick.net https