nwo.nl
HTML metadata
Technology
- CMS
- Drupal
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- fonts.googleapis.com×4
- cdn-eu.readspeaker.com×1
- fonts.gstatic.com×1
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- ns1.surfnet.nl
- ns1.zurich.surf.net
- ns2.surfnet.nl
- ns3.surfnet.nl
- MX
-
- 0 nwo-nl.c-v1.mx.microsoft
- TXT
-
Show 10 TXT records
DomainVerification=VE42RBYMZSQ1O0QEGUK022SIWOFTHPTOQB259JPNROSORGPW2DEKCQCB7T65XXN4ZOOM_verify_ER8lwGp5S4OsODz_gjrZ3Agoogle-site-verification=5Phi-Zut6Gzh1SK3tz_gGA7rPKHeiui67B8ALonTa1gapple-domain-verification=McqTt6hDn1K9EZL6adobe-idp-site-verification=487a6419c11add74e64df09cb19ee6e36084bda0802f10ad32fbdcff7998d96ecisco-ci-domain-verification=4cfba02080718f6fb9544601b2f8940c38b9f37843973b7d46ac24e48f0b87bv=verifydomain MS=ms33246492HARICA-gCmnJJ6NMdfluvR9uFSfacebook-domain-verification=txp1q8y05jkrlm18sp8w6cokukqiowMrF0JJvsIkMqdUigb1i5RQaLC5Vg5jGK56gAT5MrLmvmMf2tDEdYj0PZpn6XqxaNV3py7jcqr7qWGgKc2CqR6Q==
Email authentication strong
- SPF
-
v=spf1 ip4:192.87.72.9 include:spf.protection.outlook.com include:spf.topdesk.net include:_spf.betawerk.nl include:_customers.moreover.com ip4:109.234.207.166 ip4:195.143.61.129 ip4:37.220.169.132 ip4:37.220.169.150 ip4:37.230.99.46 ip4:31.7.5.242 ip4:31.7.5.249 ip4:192.16.189.135 ip4:90.145.221.192 ip4:5.79.89.162 ip4:13.94.232.90 ip4:168.245.24.19 ip4:185.8.52.0/22 ip4:185.181.140.125 ip4:37.46.141.132 ip4:82.94.210.253 ip4:168.245.121.45 include:_spf.hellodialog.com ip4:80.79.108.80 ip4:136.144.188.132 include:_spf.transip.email include:mailswitch.nl include:servers.mcsv.net -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:eppb4fgu@ag.eu.dmarcadvisor.compolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDgtnyNcaY3+Vim0vZwpXktbvQE0BDBCc5YuAvW3uEUQc+lAN6SDhcIIx/J5Zg/aa1sS0P2F2n527TXxyjdxx… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDSwFn++KcBpVnzkX/q5eA44yGJwMyL3d715WJiOQHUgje+lPx0lcq2h9rzgwnJayv64fJaObjgR+Kgdib53Q… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - selector1:
Certificate (current)
GEANT TLS RSA 1
Expires in 31 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-embedder-policy
- cross-origin-resource-policy
- findings
-
- CSP uses wildcard sources
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(),autoplay=(*),camera=(),ch-ua=(self),ch-ua-arch=(self),ch-ua-bitness=(self),ch-ua-full-version=(self),ch-ua-full-version-list=(self),ch-ua-mobile=(self),ch-ua-model=(self),ch-ua-platform=(self),ch-ua-platform-version=(self),ch-ua-wow64=(self),display-capture=(self),encrypted-media=(*),fullscreen=(*),geolocation=(self),gyroscope=(),hid=(),idle-detection=(),keyboard-map=(),magnetometer=(),microphone=(),midi=(),payment=(),picture-in-picture=(self),publickey-credentials-get=(),screen-wake-lock=(self),serial=(),sync-xhr=(*),usb=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; connect-src 'self' https://*.google-analytics.com https://*.siteimprove.com https://*.readspeaker.com https://*.hireserve.nl https://*.acc.hireserve.nl https://*.doubleclick.net https://www.facebook.com https://api.ats-platform.com https://platform.hireserve.nl https://connect.facebook.net https://adservice.google.com https://www.nwo.nl https://maps.googleapis.com https://www.google.com https://www.google-analytics.com https://www.googletagmanager.com; font-src 'self' data: https://fonts.gstatic.com https://*.hireserve.nl https://fonts.googleapis.com https://*.acc.hireserve.nl https://www.nwo.nl; frame-src 'self' https://www.google.com https://*.twitter.com https://*.youtube.com https://*.vimeo.com https://app.powerbi.com https://td.doubleclick.net https://my2.siteimprove.com https://expeditienext.weticket.io https://contentassistant.eu.siteimprove.com; img-src 'self' https://*.siteimproveanalytics.io data: https://www.gstatic.com https://*.google-analytics.com http- strict-transport-security
max-age=31536000- cross-origin-opener-policy
same-origin-allow-popups- cross-origin-embedder-policy
unsafe-none- cross-origin-resource-policy
cross-origin