nazzuidwest.nl
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress 6.9.4
- jQuery
- 3.7.1
Social
DNS records live
- NS
-
- dns1.erasmusmc.nl
- ns1.surfnet.nl
- ns1.zurich.surf.net
- ns2.surfnet.nl
- ns3.surfnet.nl
- MX
-
- 10 nazzuidwest-nl.mail.protection.outlook.com
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com ip4:176.62.168.242 -allstrict (-all) - DMARC
-
v=DMARC1;p=rejectpolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwUDrLTObuHIlhCIb0sjvmD3fB99vEtohu9xe0aEPGb+tFoc404LHAHq9eTPpTJJIjjuddjyKdn43vV… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArEtBVpqSLnrAIQnBJMtIfX6q7j7XLXjNJ+lAaYRSksdfX1C4Uy2mHqDP153Zft4q2ESCL55MnqzKog…
selectors probed - selector1:
Certificate (current)
R12
Expires in 43 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- missing Permissions Policy
Header values
- referrer-policy
unsafe-url- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'report-sample' 'self' 'unsafe-inline' https://cdn.mxpnl.com/libs/mixpanel-2-latest.min.js https://secure.polldaddy.com/p/11161195.js https://widget.docsbot.ai/chat.js; style-src 'report-sample' 'self' 'unsafe-inline' https://fonts.googleapis.com; object-src 'self'; base-uri 'self'; connect-src 'self' https://docsbot.ai; font-src 'self' data: https://fonts.gstatic.com; frame-src 'self' https://www.youtube.com; img-src 'self' data: https://ps.w.org https://s.w.org https://secure.gravatar.com; manifest-src 'self'; media-src 'self'; report-uri https://679cb663e3f0851534607554.endpoint.csper.io?builder=true&v=2; worker-src blob:;
Links to (6)
Linked from (1)
- lnaz.nl×1