luuksjewellery.nl

.nl crawl

First seen 2026-05-24 · Last seen 2026-05-24 · ok HTTP/1.1 200 2290 ms crawled 2026-05-29

NL · 185.50.92.177 · AS12902 Ekco B.V.

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
Passie voor mooie sieraden van goede kwaliteit - Luuks Jewellery
Language
nl-nl
Canonical
https://www.luuksjewellery.nl/intro

Open Graph

url
https://www.luuksjewellery.nl/intro
title
Passie voor mooie sieraden van goede kwaliteit - Luuks Jewellery

Technology

Server
Apache
jQuery
3.2.1 known XSS (<3.5)
Stack
PHP
Fonts
  • Font Awesome
  • Google Fonts

Third-party hosts loaded (3)

  • fonts.googleapis.com×3
  • ajax.googleapis.com×1
  • use.fontawesome.com×1

Social

Contact

Email
Phone

Registration

Registrar
Realtime Register
Created
2018-07-12
Updated
2021-11-22
Name servers
  • ns1.bdm.microsoftonline.com
  • ns2.bdm.microsoftonline.com
  • ns3.bdm.microsoftonline.com

DNS records live

NS
  • ns1.bdm.microsoftonline.com
  • ns2.bdm.microsoftonline.com
  • ns3.bdm.microsoftonline.com
  • ns4.bdm.microsoftonline.com
MX
  • 0 luuksjewellery-nl.mail.eo.outlook.com
TXT
  • mscid=0PiUAyynfLD1VCdrn18ELVx4L0MI34AH9AkkyBoc5HIi+6l4qhF2d7diFhhx/i678pE3AncdoeEcUT8YGAlEcw==
  • brw7I+jvjI8VVRUHebDPXPCwpD1yh3OLv8+mHxXBPOOvsy7vCmRBOpBjs04AABM6S0CSexH3QBy8RLXvb58zKA==

Email authentication strong

SPF
v=spf1 mx a:mail.tendenza.nl ip4:83.232.124.45 include:spf.protection.outlook.com -all
strict (-all)
DMARC
v=DMARC1; p=reject; sp=reject; pct=100; adkim=s; aspf=s; rua=mailto:dmarc_agg@vali.email; ruf=mailto:security@ken.nl; fo=0:1
policy: reject (enforced) · sp=reject
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArFB7hAAvf6l3yQpfZWuA4dzFCZ96QDqMQVNBWziFyhCgDXrLz3IOTr2HOUSnF21VVEhn6/Hw4ilbEf…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvD42vcKc6qkp77q5QBIZMOpFvGELB2hkzYq2gbyDYwS2/50GWvb69DtebwgDajS6Vmtn3IxOqjJ7Ez…
selectors probed

Certificate (current)

R12
from 2026-04-04 to 2026-07-03
Expires in 32 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://luuksjewellery.nl/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
default-src *; style-src * 'unsafe-inline'; script-src * 'unsafe-inline' 'unsafe-eval'; img-src * data: 'unsafe-inline'; connect-src * 'unsafe-inline'; frame-src *;

Links to (2)

Linked from (1)