tandarts.nl

.nl crawl

First seen 2026-05-19 · Last seen 2026-05-30 · ok HTTP/1.1 200 20037 ms crawled 2026-05-26

NL · 95.170.74.84 · AS20857 Signet B.V.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Welkom op onze website | Tandarts.nl
Language
nl
Canonical
https://www.tandarts.nl/
Translations
  • nl

Open Graph

url
https://www.tandarts.nl/node/8117

Technology

Server
Apache
CMS
Drupal
Analytics
  • Google Tag Manager
Fonts
  • Font Awesome

Third-party hosts loaded (3)

  • www.googletagmanager.com×3
  • maps.googleapis.com×1
  • use.fontawesome.com×1

Social

Registration

Registrar
Registrar.eu
Created
1999-01-12
Updated
2025-07-11
Name servers
  • auth03.dns.trueserver.nl
  • auth02.dns.trueserver.nl
  • auth01.dns.trueserver.nl

DNS records live

NS
  • auth01.dns.true.nl
  • auth02.dns.true.nl
  • auth03.dns.true.nl
MX
Show 7 MX records
  • 1 aspmx.l.google.com
  • 10 aspmx2.googlemail.com
  • 10 aspmx3.googlemail.com
  • 10 aspmx4.googlemail.com
  • 10 aspmx5.googlemail.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
Verified for
  • Google

Email authentication partial

SPF
v=spf1 a mx ip4:95.170.74.84 ip4:84.30.81.214 include:_spf.google.com include:spf.tribecrm.nl -all
strict (-all)
DMARC
v=DMARC1; p=none; rua=mailto:dmarc_agg@vali.email;
policy: none (monitoring only)
DKIM
  • default: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwJs5oz8ez/TcHK017FMO+GytUIfC1MpivWa7iVdvYQ7rl9YrrG9bx51D4c08Nj8U91810m5+Arvtjx…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2EZQ1LJaHF3mf3/deHzb+ewy2BKfJxosNwIyfvtQ6aWNTHTcwupNpCnGIESghMqsefgbSElky5hi+1zYyn…
  • s2: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAmscY6j5yhdOd2P531+SuilURm4WbthlTgYKhr09UYMuR1/a73jV/dVoJ4Tj/zp7KSTuh/gNOyyORJaV2Wf…
selectors probed

Certificate (current)

R13
from 2026-04-29 to 2026-07-28
Expires in 58 days

HTTP security headers

Header hygiene 60/100 Checked live page: https://www.tandarts.nl/

present
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' *.googleapis.com *.googletagmanager.com *.google-analytics.com *.tandarts.nl *.googleadservices.com *.jquery.com unpkg.com *.google.com *.hotjar.com static.hotjar.com widget.intercom.io js.intercomcdn.com; object-src 'none'; style-src 'self' 'unsafe-inline' *.fontawesome.com *.googleapis.com *.gstatic.com *.tandarts.nl *.intercom.io *.intercomcdn.com *.googletagmanager.com; img-src 'self' *.gstatic.com *.mondzorgflexpool.nl *.googleapis.com *.google-analytics.com *.tandarts.nl *.doubleclick.net *.google.com *.google.nl *.google.ro *.google.be *.google.de *.googletagmanager.com *.vimeocdn.com data: js.intercomcdn.com static.intercomassets.com; frame-src 'self' *.tandarts.nl *.vimeo.com *.youtube.com https://static.mailerlite.com/ *.googletagmanager.com *.google.com intercom-sheets.com; child-src 'self' *.tandarts.nl *.vimeo.com *.youtube.com; font-src 'self' *.fontawesome.com *.gstatic.com fonts.gstatic.com *.tandarts.nl data: *.hotj

Links to (3)

Linked from (4)