thuisinmaastricht.nl
HTML metadata
Technology
- Fonts
-
- Google Fonts
Third-party hosts loaded (3)
- fonts.googleapis.com×3
- fonts.gstatic.com×1
- sf1-eu.readspeaker.com×1
Social
DNS records live
- NS
-
- sec1.rcode0.eu
- sec2.rcode0.net
- MX
-
- 10 smtp1.spzl.nl
- 20 smtp2.spzl.nl
- TXT
-
9814271a-e533-4d2e-9d0a-8f3e6f44acbf-26072018
- Verified for
-
- Meta
Email authentication strong
- SPF
-
v=spf1 include:reject.spf.spzl.nl a:smtp1.spzl.nl a:smtp11.spzl.nl a:smtp12.spzl.nl ip4:149.210.236.137 ip4:31.7.6.60 ip4:31.7.1.20 ip6:2a03:9700:8000:0:b4d4:766:58bb:d21e -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:rabjg8no@rua.eu.dmarcmanager.apppolicy: reject (enforced) - DKIM
-
- default:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCm+M3feuXgllaUtDMltEMXp3sj2fT/2IrOxDMV0nSoYT3amVQ0psGJEGg8+EyM58CfHfW1SSOi1TzkPszksp… - mail:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDzNJI89Fr4yeAxBjGhcF0lqHI286YRmQ4/cipBTBskCoCdkJ1bea727q+Tho7KEzR/T8bb4I1yHMJJl0w9vw…
selectors probed - default:
Certificate (current)
DigiCert G2 TLS EU RSA4096 SHA384 2022 CA1
Expires in 150 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(), ambient-light-sensor=(), camera=(), document-domain=(), geolocation=(self "https://www.thuisinmaastricht.nl" "https://thuisinmaastricht.gmst.staging.betawerk.eu"), gyroscope=(), magnetometer=(), microphone=(), midi=(), payment=(), usb=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; connect-src 'self' https://*.siteimprove.com https://*.readspeaker.com https://*.google-analytics.com https://*.analytics.google.com https://*.gemeentemaastricht.eu https://matomo.spzl.nl https://matomo-test.spzl.nl https://www.google.com https://maps.googleapis.com; font-src 'self' https://fonts.gstatic.com https://*.readspeaker.com https://matomo.spzl.nl https://matomo-test.spzl.nl data:; frame-src https://my2.siteimprove.com https://*.readspeaker.com https://www.google.com https://app.powerbi.com; img-src 'self' data: https://www.google-analytics.com https://www.googletagmanager.com https://*.global.siteimproveanalytics.io https://*.openstreetmap.org https://www.toegankelijkheidsverklaring.nl https://matomo.spzl.nl https://matomo-test.spzl.nl https://maps.googleapis.com https://maps.gstatic.com; manifest-src 'none'; object-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.googletagmanager.com https://www.google-analytics.com https://siteimpr- strict-transport-security
max-age=31536000