podiummozaiek.nl
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- AmazonS3
- CMS
- Next.js
Contact
DNS records live
- NS
-
- ns1.as41887.nl
- ns2.as41887.eu
- ns3.as41887.io
- ns4.as41887.it
- MX
-
- 10 podiummozaiek-nl.mail.protection.outlook.com
- TXT
-
MS=ms76324369.
Email authentication partial
- SPF
-
v=spf1 include:mailswitch.nl mx ip4:83.96.243.164 ip4:85.90.88.62 ip4:145.102.244.206 include:spf.protection.outlook.com include:mailswitch.nl a:outbound.e-building.net a:smtp.e-building.net include:sendgrid.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:inoadmin@podiummozaiek.nl; ri=86400policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCp5v2b+skQ6MIKZPJYuaeQbRLmRqtGOhDQ9LU325EjhTOFFSWrP7XvRLfzTlrMtFlFvlrskV9kq1avKL2XKE…
selectors probed - selector1:
Certificates
Loading certificate
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
camera=(), microphone=(), geolocation=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; img-src 'self' data: https: blob:; script-src 'self' 'unsafe-inline' 'unsafe-eval' 'wasm-unsafe-eval'; style-src 'self' 'unsafe-inline'; font-src 'self' data: https:; connect-src 'self' https:; frame-src 'self' https://www.youtube.com https://youtube.com https://www.youtube-nocookie.com https://bookings.zenchef.com; worker-src 'self' blob:;- strict-transport-security
max-age=31536000; includeSubDomains; preload