mepcontent.com
HTML metadata
Technology
- Server
- X-MC-SERVER
- CMS
- Ghost
- Fonts
-
- Google Fonts
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (5)
- mepcontentproduction.blob.core.windows.net×14
- a.omappapi.com×1
- fonts.googleapis.com×1
- optanon.blob.core.windows.net×1
- www.youtube.com×1
Social
Contact
- Phone
- Address
- Sloep 1, 2411 CD, Bodegraven, NL
Registration
- Registrar
- Key-Systems GmbH
- Created
- 2009-12-14
- Expires
- 2026-12-14 209 days left
- Updated
- 2025-12-15
- Name servers
-
- ns0.transip.net
- ns1.transip.nl
- ns2.transip.eu
DNS records live
- NS
-
- ns0.transip.net
- ns1.transip.nl
- ns2.transip.eu
- MX
-
- 1 aspmx.l.google.com
- 10 aspmx2.googlemail.com
- 10 aspmx3.googlemail.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
google-site-verification=SmgKKKl1S9JnCvcES6PcypsKJ3rchDaRysih0Cfc0gYgoogle-site-verification=z5VQyh2TsRFp3-1VEGtwlU-dmNoZy3cE8Pne_NHbDyImepcontentproduction.azurewebsites.net
Email authentication weak
- SPF
-
v=spf1 ip4:37.17.216.131 ip4:81.4.72.36 ip4:81.4.72.37 ip4:37.17.216.130 ip4:37.97.161.124 ip4:95.170.88.25 ip4:37.97.241.100 ip4:198.245.81.0/24 ip4:136.147.176.0/24 ip4:13.111.0.0/16 ip4:136.147.182.0/24 ip4:136.147.135.0/24 ip4:199.122.123.0/24 exists:%{i}._spf.mta.salesforce.com ip4:155.63.0.0/24 ip4:155.63.8.0/24 ip4:155.63.64.0/24 ip4:155.63.136.0/24 ip4:62.95.72.0/24 ip4:35.190.247.0/24 ip4:64.233.160.0/19 ip4:66.102.0.0/20 ip4:66.249.80.0/20 ip4:72.14.192.0/18 ip4:74.125.0.0/16 ip4:108.177.8.0/21 ip4:173.194.0.0/16 ip4:209.85.128.0/17 ip4:216.58.192.0/19 ip4:216.239.32.0/19 ip6:2001:4860:4000::/36 ip6:2404:6800:4000::/36 ip6:2607:f8b0:4000::/36 ip6:2800:3f0:4000::/36 ip6:2a00:1450:4000::/36 ip6:2c0f:fb50:4000::/36 ip4:172.217.0.0/19 ip4:172.217.32.0/20 ip4:172.217.128.0/19 ip4:172.217.160.0/20 ip4:172.217.192.0/19 ip4:172.253.56.0/21 ip4:172.253.112.0/20 ip4:108.177.96.0/19 ip4:35.191.0.0/16 ip4:130.211.0.0/22 ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 229 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SameOrigin- content-security-policy
default-src 'self' blob:;script-src 'self' 'unsafe-inline' 'nonce-ufsjnE+1r6J7uw0c4CL4' 'unsafe-eval' https://*.blob.core.windows.net https://*.azurewebsites.net https://*.mepcontent.eu https://*.mepcontent.com https://*.google-analytics.com https://go.trimble.com https://*.gstatic.com https://*.googleapis.com https://maps.googleapis.com https://*.wistia.com https://*.google.com https://*.addthis.com https://*.addthisedge.com https://*.googletagmanager.com https://*.litix.io https://*.kxcdn.com https://*.hotjar.com https://cdn.jsdelivr.net https://*.pardot.com https://*.visualwebsiteoptimizer.com wss: https://optanon.blob.core.windows.net https://*.onetrust.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://cdnjs.cloudflare.com https://go.stabiplan.com https://fast.wistia.com https://*.jquery.com https://*.aptrinsic.com https://edge.fullstory.com https://cdn.segment.com https://*.cloudfront.net https://*.omappapi.com https://*.6sc.co;object-src 'self' http- strict-transport-security
max-age=86400; includeSubdomains