servicepleinheemskerk.nl
HTML metadata
Technology
- Stack
- PHP
Third-party hosts loaded (1)
- informatieservice.info×1
DNS records live
- NS
-
- ns1.kpn.net
- ns11.kpn.net
- MX
-
- 0 servicepleinheemskerk-nl.s-v1.mx.microsoft
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc@servicepleinheemskerk.nl; ruf=mailto:dmarc@servicepleinheemskerk.nl; sp=reject; pct=100; aspf=rpolicy: quarantine · sp=reject - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArcBLD92Ho+uCclnou8xWJ8xwt4B0hQxT5r6PspJzOa04uc6eZy+QCa3y+HI4s7/hDcedTpiF6e2Wj0…
selectors probed - selector1:
Certificate (current)
E7
Expires in 81 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.elkander.nl *.appsoftware.nl *.youtube-nocookie.com youtube-nocookie.com *.youtube.com youtube.com *.vimeo.com mailingtool.iwink.nl fast.wistia.net *.hotjar.com *.hotjar.io *.readspeaker.com *.tolkie.nl; script-src 'unsafe-inline' 'unsafe-eval' 'self' *.googleapis.com *.google-analytics.com *.google.com *.googletagmanager.com siteimproveanalytics.com cdnjs.cloudflare.com stackpath.bootstrapcdn.com w.sharethis.com *.elkander.nl browser-update.org appsoftware.nl *.appsoftware.nl *.hotjar.com www.accessiblecheck.com kaart.pdok.nl widget.tiledesk.com *.browsealoud.com client.crisp.chat *.readspeaker.com wm-livechat-2-prod-dot-watermelonmessenger.appspot.com *.youtube.com youtube.com tools.appsoftware.nl *.tolkie.nl; connect-src 'unsafe-inline' 'unsafe-eval' 'self' wss://ws9.hotjar.com *.hotjar.com *.hotjar.io www.accessiblecheck.com *.elkander.nl widget.tiledesk.com api.tiledesk.com googleapis.com www.googleapis.com *.google-analytics.com wss://tiledesk-prod-v2.firebas- strict-transport-security
max-age=31536000, max-age=63072000; includeSubDomains; preload