meesvandenbrink.nl
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- www.google.com×2
- www.googletagmanager.com×2
Contact
- Phone
- Address
- Tolstraat 26, 7482 DB, Haaksbergen, Overijssel, NL
DNS records live
- NS
-
- nsauth1.introweb.nl
- nsauth2.introweb.nl
- nsauth3.introweb.net
- MX
-
- 10 meesvandenbrink-nl.mail.protection.outlook.com
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 a mx ip4:213.154.247.189/32 ip4:149.210.244.68/32 ip4:23.83.222.0/24 ip4:62.13.151.239/32 a:remote.meesvandenbrink.nl include:relay.mailchannels.net include:spf.protection.outlook.com include:emsd1.com include:solvisoft.net include:sendgrid.net ~all include:authsmtp.comsoftfail (~all) - DMARC
-
v=DMARC1; p=nonepolicy: none (monitoring only) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvKGsfJdPiummNDOy5zRwMo1jczPnqTU+3TN5JiSGizapA7pEJQm7MuwXcBdMd9hEMAxFUbzWKjjU86o/jO… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2cxiXj7XMBFUenCSN1L8pqv9f79ILpjc5WRDxTdOl/l1ANgt5vRTJk5PHUcQgFwaxRgvLH1WpL5Sx7xyoO…
selectors probed - s1:
Certificate (current)
Sectigo Public Server Authentication CA OV R36
Expires in 15 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.google.com/recaptcha/api.js https://www.google-analytics.com/ https://maps.googleapis.com/maps/api/ https://www.gstatic.com/recaptcha/releases/ https://maps.googleapis.com/maps-api-v3/api/js/ https://cdnjs.cloudflare.com/ajax/libs/clipboard.js/1.5.10/clipboard.min.js https://www.feedbackcompany.com/includes/widgets/feedback-company-widget.min.js https://maps.googleapis.com/maps/vt https://www.googletagmanager.com/ https://www.googleadservices.com/ https://embed.tawk.to/ https://cdn.jsdelivr.net/emojione/2.2.7/lib/js/emojione.min.js https://developer.api.autodesk.com/ https://js.hs-scripts.com/ https://js.hsforms.net/forms/embed/v2.js https://analytics.tiktok.com/ https://cdn.leadinfo.net/ https://consent.cookiebot.com/ https://connect.facebook.net/ https://pagead2.googlesyndication.com/ https://cdn.ldnfrpl.com/ https://googleads.g.doubleclick.net/ https://consentcdn.cookiebot.com/; worker-src blob:; frame-ancestors 'self';- strict-transport-security
max-age=31536000; includeSubDomains; preload