tzorg.nl
HTML metadata
Technology
- Server
- Apache
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
DNS records live
- NS
-
- ns13.kpn.net
- ns3.kpn.net
- MX
-
- 5 tzorg-nl.mail.protection.outlook.com
- TXT
-
Show 5 TXT records
qIpGb5v4Iucy8fntaehJ3zUaxgZaElIHl/eTVgwDrD011KdSBAraI5e8nKIVMInLBhLrkpkX9KJZPDWuGD8hGQ==lHiHgjrQ0+nhxdhgjQ32QS1veA1S8xY9nLmT9E1pxZF2QmJdqcNFMYH9Nj+KcyHWZhmLRAS+4Hnafe+3lazr9w==See5raw72rfOlbB31F8cihQT6x2W0Hh8TfzgMbfMF9SnNWT1kPMYFaHF3vM5u+gf8Zurl1gt/mmzvi12qJz4dg==aanmelder.nl-user=79921v=NTA7516-1;startdate=2024-02;enddate=2026-02;provider=Zivver
- Verified for
-
- Apple
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:_s00003011.autospf.email -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; pct=100; rua=mailto:re+seuzmbuw4kl@dmarc.postmarkapp.com; sp=quarantine; aspf=r;policy: quarantine · sp=quarantine - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxqzQBX3ihIX/cOeXV5uUcjqkbhpHcLnU6+HaPDr8VttnH7OOPDuhf9eYYQGwg6rAORpd6pfSSiDP7D… - mail:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvX5InTr9vMw2GBi9Nva8wtCxBPlxb2t+848sUYCJnO4XyQthFVFacPmhFEm2ENyNsdubd2ZXx0Y8wQ… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5ditzrZC4mLkcyii3lMTu4WRxNRFVtxdAtXnDEs/rMiLnqLQKID3d+UhQCcEK+kwQHqAXM/PM4NwWj8SxA… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC1eV6/iiBz4/2go0wUxFqAyxoFtf1H9NP6+upt1k0F94nZv7SdX6JEZngwh+HTvxalLAuGrKDKc0rEfTGv+ry8jQ…
selectors probed - selector1:
Certificate (current)
Sectigo Public Server Authentication CA EV R36
Expires in 35 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
origin-when-cross-origin- x-frame-options
sameorigin- permissions-policy
accelerometer=(self), autoplay=(self), camera=(self), encrypted-media=(self), fullscreen=(self), geolocation=(self), gyroscope=(self), magnetometer=(self), microphone=(self), midi=(self), payment=(self), usb=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'report-sample' 'self' 'unsafe-inline' 'unsafe-eval' https://www.googletagmanager.com https://tagmanager.google.com https://col1.wiqhit.com https://connect.facebook.net https://consent.cookiebot.com https://consentcdn.cookiebot.com/consentconfig/b6905c32-0d98-431c-a98e-81d828f2364d/state.js https://googleads.g.doubleclick.net https://script.hotjar.com https://scripts.clarity.ms/0.8.57/clarity.js https://snap.licdn.com/li.lms-analytics/insight.min.js https://static.hotjar.com/c/hotjar-1200594.js https://www.clarity.ms/tag/ikpnjxmodp https://www.google.com/recaptcha/enterprise.js https://www.googletagmanager.com/gtag/js https://www.gstatic.com/recaptcha/ https://www.youtube.com/iframe_api https://www.youtube.com/s/; script-src-attr 'unsafe-inline'; style-src 'report-sample' 'self' 'unsafe-inline'; object-src 'none'; base-uri 'self'; connect-src 'self' https://b.clarity.ms https://n.clarity.ms https://yoast.com https://consentcdn.cookiebot.com https://*.hotj- strict-transport-security
max-age=2592000