nn-careers.com
HTML metadata
Technology
- Server
- nginx
Third-party hosts loaded (8)
- elfsightcdn.com×2
- analytics.ahrefs.com×1
- assets.adobedtm.com×1
- cdn.cookie-script.com×1
- maps.googleapis.com×1
- plugins.flockler.com×1
- unpkg.com×1
- www.google.com×1
Social
Contact
- Address
- Schenkkade 65, 2595 AS, Den Haag
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 2014-11-12
- Expires
- 2026-11-12 175 days left
- Updated
- 2025-09-23
- Name servers
-
- a1-220.akam.net
- a13-65.akam.net
- a2-66.akam.net
- a20-67.akam.net
- a26-64.akam.net
- a7-65.akam.net
DNS records live
- NS
-
- a1-220.akam.net
- a13-65.akam.net
- a2-66.akam.net
- a20-67.akam.net
- a26-64.akam.net
- a7-65.akam.net
- MX
-
- 10 custmx.cscdns.net
- 10 mx.sendgrid.net
- TXT
-
vmqpdy4lrnfwngtz1s02x5yjccc5ny1457651dc614524a4285e17aeb2fba96a1f6b980aae9fa41bd8ae724571cb7bb93
- Verified for
-
- Meta
Email authentication partial
- SPF
-
v=spf1 -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@inbound.flowmailer.net; ruf=mailto:dmarc@inbound.flowmailer.net; fo=1policy: none (monitoring only) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApd8nkhqB5A/WUqKsCRklJHbNmbqQj6Uke3jJ3hennAPc8wHlWWh1z/uGONG7UTuRuauX+GPveS6LtfiRhU… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDUpTV0GxL05BAGXcb+vvZC7K2cP3bfqok26S+yVlEC+/cHep6ntB+ys7VcA/DNF0BUIuJ3xx4xSIz5KYO7augAZH…
selectors probed - s1:
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 190 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; default-src 'self'; media-src * data: blob: 'self'; script-src 'nonce-HCAzU+gys0KESwc7mius/Q==' 'sha256-YI2+1gwtO0bB4W0uf2eSb0edF79ERb9L7y5KXKGlQHw=' 'unsafe-eval' 'strict-dynamic'; connect-src * data: blob: 'unsafe-inline'; img-src * data: blob: 'unsafe-inline'; frame-src * data: blob:; style-src * data: blob: 'unsafe-inline'; font-src * data: blob: 'unsafe-inline'; object-src 'none';- strict-transport-security
max-age=31536000; includeSubDomains; preload