thuas.com

.com crawl

First seen 2026-04-14 · Last seen 2026-05-08 · ok HTTP/1.1 200 10940 ms crawled 2026-05-08

DE · 3.74.54.211 · AS16509 Amazon.com, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Welcome to THUAS | The Hague University of Applied Sciences
Language
en
Generator
Drupal 10 (https://www.drupal.org)
Canonical
https://www.thuas.com/
Translations
  • en
  • nl

Open Graph

url
https://www.thuas.com/node/1254
title
Welcome to THUAS | The Hague University of Applied Sciences
site name
The Hague University of Applied Sciences

Technology

CDN
Cloudflare
CMS
Drupal
Analytics
  • Google Analytics
  • Google Tag Manager
Cookie consent
  • Cookiebot
Third-party hosts loaded (7)
  • browser.sentry-cdn.com×3
  • www.googletagmanager.com×2
  • consent.cookiebot.com×1
  • consentcdn.cookiebot.com×1
  • dev.visualwebsiteoptimizer.com×1
  • www.dehaagsehogeschool.nl×1
  • www.google-analytics.com×1

Social

Contact

Address
Johanna Westerdijkplein 75, 2521 EN, The Hague, NL

Registration

Registrar
Hosting Concepts B.V. d/b/a Registrar.eu
Created
2014-05-30
Expires
2027-05-30 375 days left
Updated
2025-10-29
Name servers
  • ns1.surfnet.nl
  • ns1.zurich.surf.net
  • ns2.surfnet.nl
  • ns3.surfnet.nl

DNS records live

NS
  • ns1.surfnet.nl
  • ns2.surfnet.nl
  • ns3.surfnet.nl
TXT
Show 4 TXT records
  • HARICA-AafW33QWLVcpxGXwfSm
  • abcfbe29f7564065907ec1290f467a92
  • google-site-verification=Vbk2V0wanSKB_Nol-MRuOSAzKSbCendTx2zW5RPFHsQ
  • d365mktkey=1mckdfvynje8fjyvjsg16lrye

Email authentication no MX

SPF
v=spf1 -all
strict (-all)
DMARC
v=DMARC1;p=none;rua=mailto:dmarc-a@student.hhs.nl;ruf=mailto:dmarc-f@student.hhs.nl;fo=1
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificates

Loading certificate

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.thuas.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: https://*.visualwebsiteoptimizer.com app.vwo.com https://cdnjs.cloudflare.com https://browser.sentry-cdn.com *.azureedge.net https://client.prod.repmap.microsoft.com https://www.google.com https://www.google.nl https://www.google.be https://www.google.de https://www.google.fr https://*.googletagmanager.com https://*.google-analytics.com https://*.analytics.google.com https://*.cookiebot.com https://www.youtube.com https://sc-static.net https://connect.facebook.net https://*.snapchat.com https://snap.licdn.com https://www.googleadservices.com analytics.tiktok.com https://static.hotjar.com https://script.hotjar.com https://*.googlesyndication.com https://*.dynamics.com https://*.azureedge.net https://exch.dehaagsehogeschool.nl https://exch.thuas.com https://bgmin.cdn.billygrace.com; style-src 'self' 'unsafe-inline' https://cdnjs.cloudflare.com https://*.visualwebsiteoptimizer.com app.vwo.com https://loyal-lyrebird.
strict-transport-security
max-age=63072000; includeSubDomains; preload

Links to (7)

Linked from (1)