syntess.nl
HTML metadata
Technology
- jQuery
- 2.2.4 known XSS (<3.5)
- Stack
- ASP.NET
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (4)
- cdnjs.cloudflare.com×17
- use.typekit.net×1
- www.googleoptimize.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- Registrar.eu
- Created
- 1997-03-04
- Updated
- 2025-07-11
- Name servers
-
- ns2.gcdn.services
- ns1.gcorelabs.net
DNS records live
- NS
-
- ns1.gcorelabs.net
- ns2.gcdn.services
- MX
-
- 10 mx.eu.mailmarshal.cloud
- TXT
-
Show 18 TXT records
bw=RlBymWmbK49YNe1mQ2YgOHIqa0v38c6am4BVqm6S0cSh_h5voqa4ev8ykhy32vv9ibad521e3eol_tc1t0myuy5irgsf4fad16ogl4cesjhe_y1vbb7v2f3qiwhls8c4r73wpjdudo4s_hn086bjug3f16ap2lrf2ekj9tm9ize1_0lbo10doma9domjyx6dg6ymbrgw1657_xd64jx21h4osbdqn6pyft4oocuf4ahr_y1jz2mddz70t2k7y1pkkkp27mjl4jnu_oknbly10jq7gzbyz0bwhj4j0pw953ak_subcrv3lpxfs6oqlrimiak5shlibp38_j4ve9eoz3zy827olkwqcicwsv0e31bv_weto4luwu0u280n1un4nxobwn81sf2v_e295qzmjoonenwlrigrpemqa5jkmdocQuoVadis=b12f9d48-70cc-47f4-bcf0-329873c0f2e3vBkGXL61erwYOKVd/rkXbsW7vr0tK0otfQj5JXOvQSQ=_zhr4rilehd72f5i4ajlaxebdbk7zc4fsyntessstaging.azurewebsites.netQuoVadis=216a89ae-00ac-450e-a916-78e68cc32513
- Verified for
-
- Anthropic
- Microsoft 365
- OpenAI
Email authentication strong
- SPF
-
v=spf1 ip4:185.30.237.178 ip4:185.61.69.254 ip4:84.241.182.106 include:servers.mcsv.net include:mailplus.nl include:spf.protection.outlook.com include:spf.eu.exclaimer.net include:spf.eu.mailmarshal.cloud include:spf.flowmailer.net -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; fo=1; adkim=r; aspf=r; rua=mailto:4OjYuFD5anzGjgAe@dmarc-ingest.securityhive.nl; ruf=mailto:4OjYuFD5anzGjgAe@dmarc-ingest.securityhive.nlpolicy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDKyeX/uY5WC+iEk2Ir7CatSrORbhO341S1VBsS74a7Rj8xALB7xG1UpmRPzhF4O6l3LT2blfWrzRl1d9Wp9C… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuPhwJViIvvLV09NiIfbmZfIa31OzKbLciXQzQje7PBuS/jcR4JIWA/l1YCFhOXBPjV6sqVxqzfFp5c…
selectors probed - selector1:
Certificate (current)
Trust Provider B.V. TLS RSA CA G1
Expires in 19 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=*, battery=(), camera=(), cross-origin-isolated=(), display-capture=(), document-domain=(), encrypted-media=(self), execution-while-not-rendered=(self), execution-while-out-of-viewport=(self) fullscreen=*, geolocation=(self), gyroscope=(), idle-detection=(), magnetometer=(), microphone=(), midi=(), navigation-override=(), payment=(self), picture-in-picture=*, publickey-credentials-get=*, screen-wake-lock*, serial=*, sync-xhr=*, usb=(), web-share=*, xr-spatial-tracking=*- x-content-type-options
nosniff- content-security-policy
default-src http: data: 'unsafe-inline' 'unsafe-eval' www.googletagmanager.com www.google.nl www.google-analytics.com use.typekit.net p.typekit.net *.doubleclick.net snap.licdn.com region1.analytics.google.com *.linkedin.com imgsct.cookiebot.com consentcdn.cookiebot.com consent.cookiebot.com