opensourcewerken.nl
HTML metadata
Technology
- CMS
- Gatsby
DNS records live
- NS
-
- ns01.hostnet.nl
- ns02.hostnet.nl
- MX
-
- 0
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 -allstrict (-all) - DMARC
-
v=DMARC1; p=rejectpolicy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 52 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-content-type-options
nosniff- content-security-policy
upgrade-insecure-requests; frame-ancestors 'self'; img-src 'self' data: https://*.pleio.nl https://statistiek.rijksoverheid.nl https://i.ytimg.com https://i.vimeocdn.com https://*.bbvms.com https://account.pleio.nl https://www.toegankelijkheidsverklaring.nl/; font-src 'self'; frame-src 'self' https://*.pleio.nl https://www.youtube-nocookie.com https://player.vimeo.com https://api.eu.kaltura.com https://feed.mikle.com https://*.bbvms.com https://collabora.pleio.nl https://www.toegankelijkheidsverklaring.nl/; script-src 'strict-dynamic' 'nonce-8nPiG7QfCKcQ22fT2T+y8g=='; base-uri 'none'; form-action 'self'; style-src 'self' 'unsafe-inline' https://formulieren.pleio.nl; default-src 'self'; connect-src 'self' https://*.pleio.nl https://statistiek.rijksoverheid.nl https://vimeo.com https://*.sentry.io https://collabora.pleio.nl; object-src 'none'- strict-transport-security
max-age=31536000; includeSubDomains