thuas.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Drupal
- Analytics
-
- Google Analytics
- Google Tag Manager
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (7)
- browser.sentry-cdn.com×3
- www.googletagmanager.com×2
- consent.cookiebot.com×1
- consentcdn.cookiebot.com×1
- dev.visualwebsiteoptimizer.com×1
- www.dehaagsehogeschool.nl×1
- www.google-analytics.com×1
Social
Contact
- Address
- Johanna Westerdijkplein 75, 2521 EN, The Hague, NL
Registration
- Registrar
- Hosting Concepts B.V. d/b/a Registrar.eu
- Created
- 2014-05-30
- Expires
- 2027-05-30 375 days left
- Updated
- 2025-10-29
- Name servers
-
- ns1.surfnet.nl
- ns1.zurich.surf.net
- ns2.surfnet.nl
- ns3.surfnet.nl
DNS records live
- NS
-
- ns1.surfnet.nl
- ns2.surfnet.nl
- ns3.surfnet.nl
- TXT
-
Show 4 TXT records
HARICA-AafW33QWLVcpxGXwfSmabcfbe29f7564065907ec1290f467a92google-site-verification=Vbk2V0wanSKB_Nol-MRuOSAzKSbCendTx2zW5RPFHsQd365mktkey=1mckdfvynje8fjyvjsg16lrye
Email authentication no MX
- SPF
-
v=spf1 -allstrict (-all) - DMARC
-
v=DMARC1;p=none;rua=mailto:dmarc-a@student.hhs.nl;ruf=mailto:dmarc-f@student.hhs.nl;fo=1policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificates
Loading certificate
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: https://*.visualwebsiteoptimizer.com app.vwo.com https://cdnjs.cloudflare.com https://browser.sentry-cdn.com *.azureedge.net https://client.prod.repmap.microsoft.com https://www.google.com https://www.google.nl https://www.google.be https://www.google.de https://www.google.fr https://*.googletagmanager.com https://*.google-analytics.com https://*.analytics.google.com https://*.cookiebot.com https://www.youtube.com https://sc-static.net https://connect.facebook.net https://*.snapchat.com https://snap.licdn.com https://www.googleadservices.com analytics.tiktok.com https://static.hotjar.com https://script.hotjar.com https://*.googlesyndication.com https://*.dynamics.com https://*.azureedge.net https://exch.dehaagsehogeschool.nl https://exch.thuas.com https://bgmin.cdn.billygrace.com; style-src 'self' 'unsafe-inline' https://cdnjs.cloudflare.com https://*.visualwebsiteoptimizer.com app.vwo.com https://loyal-lyrebird.- strict-transport-security
max-age=63072000; includeSubDomains; preload
Links to (7)
- facebook.com×2
- instagram.com×2
- linkedin.com×2
- outlook.com×2
- tiktok.com×2
- twitter.com×2
- youtube.com×2