pol.nl
HTML metadata
Technology
- Server
- nginx
- CMS
- Gatsby
- Stack
- PHP
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (2)
- fonts.googleapis.com×2
- www.googletagmanager.com×2
Social
Contact
- Address
- Poort van Midden Gelderland rood 15, 6666LS, Heteren, NL
DNS records live
- NS
-
- ns1.yourdomainprovider.net
- ns2.yourdomainprovider.net
- ns3.yourdomainprovider.net
- ns4.yourdomainprovider.net
- MX
-
- 0 pol-nl.mail.protection.outlook.com
- Verified for
-
- Microsoft
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 include:spf.protection.outlook.com include:spfinclude.werkonline.nu include:_spf.spotler.email include:u18137251.wl002.sendgrid.net include:polheteren.1c.eu-central.aws.youwecloud.nl ip4:194.88.230.32/27 ip4:194.88.231.0/24 ip4:213.197.217.20 -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:web@pol.nl; ruf=mailto:web@pol.nlpolicy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCsc5idSujj8pqNeNoAt5ARaixpJVXtdk97uY0SjSTTtvasUDhUifSPFA6O+sjZyNPBtI5UHwa7rDdUbKFYij… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0vN72vfVOgJ9xVhSGPp1WPZIKhiThFu6IO1OfdA18wYv+s1uDgqLzlUxfjd24I80ZpDmQOp3pDV4VBKLAB… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDNapNZ30b5EkKEWxPd9Jc6YXzm0kRSRaQXOy1cIGKF4LFbb2Z8dW3xSv0v4NSHYokUiMaJobqPTyPPVNIHB12IW6…
selectors probed - selector1:
Certificate (current)
E7
Expires in 58 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
font-src www.paypalobjects.com fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com https://www.gstatic.com https://fonts.gstatic.com *.fontawesome.com https://fonts.bunny.net 'self' data: data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com 64805.afasinsite.nl insite.afas.online www.pol.nl configurator.pol.nl 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src fast.amc.demdex.net *.adobe.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com www.paypalobjects.com player.vimeo