mijnfinrust.nl
HTML metadata
Technology
- Fonts
-
- Google Fonts
Third-party hosts loaded (1)
- fonts.googleapis.com×1
Registration
- Registrar
- team.blue nl B.V.
- Created
- 2019-03-19
- Updated
- 2021-11-19
- Name servers
-
- ns0.transip.net
- ns2.transip.eu
- ns1.transip.nl
DNS records live
- NS
-
- ns0.transip.net
- ns1.transip.nl
- ns2.transip.eu
- MX
-
- 10 mx.transip.email
- TXT
-
r78sbduq9sl59ddfk4amef7obcfinrust.azurewebsites.net
Email authentication partial
- SPF
-
v=spf1 include:_spf.transip.email ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 36 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
no-referrer- permissions-policy
geolocation=(), midi=(), notifications=(), push=(), sync-xhr=(), microphone=(), camera=(), magnetometer=(), gyroscope=(), speaker=(), vibrate=(), payment=()- x-content-type-options
nosniff- content-security-policy
style-src 'self' 'unsafe-inline' https://www.evivanlanschot.nl/ https://fonts.googleapis.com; frame-src https://finrust-proxy-prod.azurewebsites.net https://www.google.com/recaptcha/ https://recaptcha.google.com/recaptcha/ https://intercom-sheets.com https://www.intercom-reporting.com https://www.youtube.com https://player.vimeo.com https://fast.wistia.net https://iwize.nl/finrust-web/; worker-src 'self' blob: https://intercom-sheets.com https://www.intercom-reporting.com; frame-ancestors 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://*.vo.msecnd.net http://*.vo.msecnd.net https://www.google-analytics.com/analytics.js https://www.googletagmanager.com https://*.intercom.io https://*.intercomcdn.com https://app.purechat.com https://prod.purechatcdn.com; img-src 'self' blob: data: https://api.purechat.com/ https://www.evivanlanschot.nl/ https://www.google-analytics.com https://ssl.gstatic.com/ui/v1/icon- strict-transport-security
max-age=31536000; includeSubDomains; preload