remant.be
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- www.google.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- elma.ns.cloudflare.com
- piers.ns.cloudflare.com
- MX
-
- 10 remant-be.mail.protection.outlook.com
- TXT
-
Show 5 TXT records
zdtISrF1kP4z4CKur8WL9uXqf4KmHwkZ39c8eOZnSUYvht7tOL3Uigho38vUMxDJ9dG4AbPNPwQ9N4e/dKo0r3nxkrXzbEMLxVLtWm+nn/vUd7+JwHu2pA==airalo-domain-verification=wIuVu91Onz0xxDEbw=H8OmEwMtCrstzGHKRXBP3OjzhOfgnc7YAV1OMz349Jjdsending_domain1103562=460f0539426bec6005bb7f6d37d29c7a2546faecf83df17516406e5f115f90da
- Verified for
-
- GlobalSign
Email authentication strong
- SPF
-
v=spf1 include:780zs467qp.spf.paladin.cheops.support -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:q3erur4b02@rua.paladin.cheops.support; ruf=mailto:q3erur4b02@ruf.paladin.cheops.support; pct=100; fo=1;policy: quarantine - DKIM
-
- selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDA/TXwPwXFROWR+EhwEKEtat0ReARRtMaKulcmuZpPqv2a/4wZrzJf2R2v4/VbVdie14LhuwlhPDuLFMqzj9… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - selector2:
Certificate (current)
R12
Expires in 45 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- content-security-policy
default-src 'self'; script-src 'self' 'strict-dynamic' tag-staging.be *.googleapis.com www.google-analytics.com www.google.com www.gstatic.com www.googletagmanager.com *.cookie-script.com 'nonce-URqJIAUYNDEcvIXGPGA0lQ=='; style-src 'self' 'unsafe-inline' *.typekit.net fonts.googleapis.com https://remant.be; img-src 'self' data: https://remant.be *.ads.linkedin.com www.linkedin.com *.gstatic.com *.googleapis.com www.google.be www.google-analytics.com www.googletagmanager.com www.placeholder.com *.placehold.it *.gravatar.com i.ytimg.com; font-src 'self' data: *.typekit.net typekit.net fonts.gstatic.com https://remant.be; connect-src 'self' www.google.com *.ads.linkedin.com *.cookie-script.com *.google-analytics.com *.analytics.google.com *.googleapis.com *.doubleclick.net; media-src 'self' *.tag-staging.be *.remant.be tag-staging.be remant.be; object-src 'none'; child-src 'self'; frame-src 'self' www.youtube.com www.youtube-nocookie.com *.vimeo.com www.google.com *.aflip.in heyzine.com c