schuurman-et.nl

.nl crawl

First seen 2026-06-04 · Last seen 2026-06-04 · ok HTTP/1.1 200 1016 ms crawled 2026-06-04

NL · 84.247.11.97 · AS20857 Signet B.V.

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
Home | Schuurman | Groothandel in Elektrotechniek
Canonical
https://www.schuurman-et.nl/?i=6a20fa68ca8f3&d=&u=

Technology

Server
nginx
PHP
7.4.33 end of life
Stack
PHP
Fonts
  • Google Fonts

Third-party hosts loaded (4)

  • fonts.googleapis.com×2
  • fonts.gstatic.com×1
  • js-eu1.hs-scripts.com×1
  • px.ads.linkedin.com×1

Social

Contact

Phone

DNS records live

NS
  • ns1.schuurman.nl
  • ns2.schuurman.nl
MX
  • 0 schuurmanet-nl02c.mail.protection.outlook.com
TXT
  • v=DKIM1;k=rsa;t=s;s=email;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApIQeIiMzt3FACS+y4xohs0ZWqWcMH27xc6CJNbGC1TN0cxg1OAN7yGU/y5vsDErXaqjY+h+teqdmIptKSHdohTe12sDtK8qCR5rEsreclRiwbnhvezuMesnB6LIhZMD/G3QBhQfZYOcwlBHzFlJ86B+Ns8lrtyy94wNb5ICw5XZHQNABOfWYN5F4f1TvPJ+E8QZG0wEY6g8g7tgSUhQirGEoHTPyxCy/9pfaXS8J97htyfUgCM5V862808DCEXXh4j1yDLD/uZRZ6eOlYgS/us/EgihlI7ZXgPlKtJkqqDsSFtcRgZsUSm1hi+Y17Jsp+baTBEQ9eJmMKg+KzjsNywIDAQAB
Verified for
  • Brevo
  • Microsoft
  • Microsoft 365

Email authentication strong

SPF
v=spf1 ip4:85.146.193.158 ip4:87.236.103.70 ip4:84.247.11.96 ip4:84.247.11.97 ip4:84.247.11.98 ip4:5.102.138.189 ip4:195.243.225.91 ip4:5.102.138.187 ip4:5.102.138.137 ip6:2a01:7c8:bb01:450::1/128 include:spf.protection.outlook.com include:spf.trustit.eu include:spf.emarsys.net include:eu-west-1.amazonses.com -all
strict (-all)
DMARC
v=DMARC1; p=reject; adkim=s; aspf=r; rua=mailto:rua@dmarc.brevo.com
policy: reject (enforced)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA50JMyLBD2PIPZ7FQjHqc7JIOOMK65b3V+T/c9qhgB1we2HS9758HzB2it9+aPeYSCWsFeIXsOcGBZ5…
selectors probed

Certificate (current)

Sectigo Public Server Authentication CA DV R36
from 2026-04-03 to 2026-10-19
Expires in 129 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://www.schuurman-et.nl/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
default-src * data: blob: filesystem: about: ws: wss: 'unsafe-inline' 'unsafe-eval'; script-src * data: blob: 'unsafe-inline' 'unsafe-eval'; connect-src * data: blob: 'unsafe-inline'; img-src * data: blob: 'unsafe-inline'; frame-src * data: blob: ; style-src * data: blob: 'unsafe-inline'; font-src * data: blob: 'unsafe-inline'; object-src 'none';

Links to (4)

Linked from (2)

Use this data via API

Everything on this page for schuurman-et.nl is available as JSON from the indexo.dev REST & MCP API.

curl "https://indexo.dev/api/v1/domains/schuurman-et.nl" \
  -H "X-API-Key: idx_..."

Read the docs & get a free key →