ocmw-st-truiden.be
HTML metadata
Technology
Third-party hosts loaded (1)
- fonts.icordis.be×2
Contact
- Phone
DNS records live
- NS
-
- ns1.combell.eu
- ns3.combell.net
- ns4.combell.net
- MX
-
- 0 ocmwsttruiden-be01j.mail.protection.outlook.com
- TXT
-
unHxuJ8MBes09z65KzCA6FWBHlcq1smn
Email authentication partial
- SPF
-
v=spf1 mx a ip4:78.24.168.37/32 include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@sint-truiden.be; ruf=mailto:dmarc@sint-truiden.be; fo=1policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAziTKUt6grCeElGQm5VRps6iF4nB0YRGeWvFTuCWPSEPooQLL/qd1ueqSy/UzVVRjIvs+K9fhnx8r2K…
selectors probed - selector1:
Certificate (current)
R12
Expires in 66 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=*, autoplay=*, camera=*, cross-origin-isolated=*, encrypted-media=*, fullscreen=*, geolocation=*, gyroscope=*, magnetometer=*, microphone=*, midi=(), payment=*, picture-in-picture=*, publickey-credentials-get=*, screen-wake-lock=(), sync-xhr=*, usb=(), xr-spatial-tracking=self, clipboard-read=*, clipboard-write=*- x-content-type-options
nosniff- content-security-policy
connect-src 'self' https://sint-truiden.icordis.be burgerprofiel.vlaanderen.be wss://authenticatie.vlaanderen.be wss://prod.widgets.burgerprofiel.vlaanderen.be https://prod.widgets.burgerprofiel.vlaanderen.be wss://prod.contactapi.uat-vlaanderen.be https://prod.contactapi.uat-vlaanderen.be https://contactapi.vlaanderen.be wss://contactapi.vlaanderen.be *.burgerprofiel.be widgets.vlaanderen.be geoserver.gis.cloud.mow.vlaanderen.be api.gipod.vlaanderen.be geo.api.vlaanderen.be *.toerismevlaanderen.be fonts.googleapis.com *.gstatic.com *.vrijwilligerswerk.be *.algolianet.com *.algolia.net *.facebook.com *.facebook.net yastatic.net *.jobsolutions.be *.timeblockr.com *.api.timeblockr.cloud wss://*.timeblockr.cloud *.signalr.timeblockr.cloud *.google-analytics.com *.googletagmanager.com stats.g.doubleclick.net *.analytics.google.com *.google.be td.doubleclick.net *.arcgis.com https://performance.typekit.net *.giveaday.be *.giveaday.eu https://stats.lcp.be toegankeli- strict-transport-security
max-age=31536000