s-port.nl
HTML metadata
Technology
- CMS
- WordPress 7.0
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Cookiebot
- Fonts
-
- Google Fonts
Third-party hosts loaded (7)
- fonts.googleapis.com×5
- consent.cookiebot.com×2
- www.googletagmanager.com×2
- cdn-eu.readspeaker.com×1
- consentcdn.cookiebot.com×1
- fonts.gstatic.com×1
- ka-p.fontawesome.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- nsauth1.interconnect-dns.nl
- nsauth2.interconnect-dns.eu
- nsauth3.interconnect-dns.be
- MX
-
- 10 smx1.interconnect.nl
- 10 smx2.interconnect.nl
- 10 smx3.interconnect.nl
- 1000 fallback.interconnect.nl
- TXT
-
_1aujrjvkq35394n8atv9kiex6ewwbt9
Email authentication partial
- SPF
-
v=spf1 ip4:88.198.53.83 include:spf.interconnect.nl -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:3lsekjdr@rua.eu.dmarcmanager.app; ruf=mailto:3lsekjdr@ruf.eu.dmarcmanager.apppolicy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
DigiCert G2 TLS EU RSA4096 SHA384 2022 CA1
Expires in 261 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- permissions-policy
accelerometer=(self), autoplay=(self), camera=(self), cross-origin-isolated=(self), display-capture=(self), encrypted-media=(self), fullscreen=(self), geolocation=(self), gyroscope=(self), keyboard-map=(self), magnetometer=(self), microphone=(self), midi=(self), payment=(self), picture-in-picture=(self), publickey-credentials-get=(self), screen-wake-lock=(self), sync-xhr=(self), usb=(self), xr-spatial-tracking=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'self' www.s-hertogenbosch.nl openpub.s-hertogenbosch.nl openpdc.s-hertogenbosch.nl matomo.stuurlui.nl matomo.stuurlui.dev cdn-eu.readspeaker.com cdnjs.cloudflare.com ka-p.fontawesome.com; form-action 'self'; base-uri 'self'; frame-ancestors 'self'; frame-src 'self' www.cookiebot.com www.youtube.com www.youtube-nocookie.com www.vimeo.com consentcdn.cookiebot.com ka-p.fontawesome.com app-eu.readspeaker.com cdn-eu.readspeaker.com denbosch.bba.nl; img-src 'self' data: openpub.s-hertogenbosch.nl tracking.monsido.com openpdc.s-hertogenbosch.nl imgsct.cookiebot.com maps.gstatic.com maps.googleapis.com; font-src 'self' data: ka-p.fontawesome.com at.alicdn.com pro.fontawesome.com fonts.gstatic.com; style-src-elem 'self' 'unsafe-inline' pro.fontawesome.com cdn-eu.readspeaker.com fonts.googleapis.com; style-src 'self' 'unsafe-inline' fonts.googleapis.com cdn-eu.readspeaker.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' data: www.s-hertogenbosch.nl openpub.s-hertogenbosch.nl p- strict-transport-security
max-age=31536000