mastermate.nl
HTML metadata
Technology
- Server
- www.mastermate.nl
- CMS
- Gatsby
- Stack
- Django
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (4)
- api88.salesfeed.com×1
- maps.googleapis.com×1
- www.google.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns01.hostnet.nl
- ns02.hostnet.nl
- MX
-
- 10 mx1-eu1.ppe-hosted.com
- 20 mx2-eu1.ppe-hosted.com
- TXT
-
ppe-e2ebf3adad52f7f1adf01183fc68af535b4b6c45
- Verified for
-
- Apple
Email authentication partial
- SPF
-
v=spf1 include:spf.protection.outlook.com include:spf1.mastermate.nl include:mailplus.nl include:spf.ecmanage.nl include:smtp.hroffice.eu include:_spf.eu.mailgun.org a:socylist.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:postmaster@mastermate.nl; ruf=mailto:postmaster@mastermate.nl; fo=1;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCRll/vZeM6vS9SXQ++JN8JI0uaCyGrGw7gcg/R1QyKjHPIjHdheezh4JJA9BsSxXmCXGDeCDg1XNQk/3HXwA… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzCrdJq2EKtVD0jb8J/d3C9pSqjlyMjYP7Yj+Y1UXxuSdoRGGHO2OqTPKkVWMQEhwTBE0KODHPLBYuE… - s1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDpqh1flTrQbWKjNicTIBWL4hBW19zCOXD2B1C6iMAVO8SMMY0spN3k5p46UqAc4nPKDizTJX9agXZuX03l2vybkE2IXEP…
selectors probed - selector1:
Certificate (current)
R13
Expires in 30 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- cross-origin-opener-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin, origin-when-cross-origin- x-frame-options
DENY- x-content-type-options
nosniff, nosniff- content-security-policy
default-src https: wss:; script-src https: 'unsafe-inline' 'unsafe-eval'; style-src https: 'unsafe-inline'; img-src https: data:; frame-ancestors file: secure.cannonworks.com- strict-transport-security
max-age=31536000; preload- cross-origin-opener-policy
same-origin