vanreusel.eu
HTML metadata
Technology
- Server
- Apache
- CMS
- WordPress
- PHP
- 8.2.30 security-only
- jQuery
- 3.7.1
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
- Font Awesome
- Google Fonts
Third-party hosts loaded (8)
- cdnjs.cloudflare.com×5
- use.fontawesome.com×3
- www.googletagmanager.com×2
- cdn-cookieyes.com×1
- fonts.googleapis.com×1
- fonts.gstatic.com×1
- use.typekit.net×1
- www.google.com×1
Contact
- Phone
DNS records dead
- NS
-
- ns1.vanroey.be
- ns2.vanroey.be
- ns3.vanroey.be
- MX
-
- 5 vanreusel-eu.mail.protection.outlook.com
- TXT
-
domain-verification:a1f9d97940d030be5e5cde18c6f9053306c892da
Email authentication strong
- SPF
-
v=spf1 a mx include:spf.protection.outlook.com ip4:77.241.85.86 ip4:217.21.190.8 a:gw4138.fortimail.com include:_spf.relay.mailprotect.be include:servers.mcsv.net -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc_agg@vali.email;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzDRCe67yqlFxB2W1wk3AuAesjxKloWZi5JB2KfD3Do+6wwCChs8vJbcfvjPLsrP6guSCKbZw8ERy4z… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed - selector1:
Certificate (current)
R12
Expires in 55 days
HTTP security headers
- present
-
- content-security-policy
- permissions-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- missing frame protection
- missing content type protection
- missing Referrer Policy
Header values
- permissions-policy
private-state-token-redemption=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com"), private-state-token-issuance=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com")- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https: blob:; style-src 'self' 'unsafe-inline' https:; img-src 'self' https: data:; font-src 'self' https: data:; connect-src 'self' https: data:; media-src 'self' https:; object-src 'none'; frame-src 'self' https:; frame-ancestors 'self'; form-action 'self'; upgrade-insecure-requests;