vipvoorelkaar.nl

.nl crawl

First seen 2026-06-03 · Last seen 2026-06-04 · ok HTTP/1.1 200 975 ms crawled 2026-06-03

US · 172.67.187.220 · AS13335 Cloudflare, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
VIPvoorElkaar
Description
Op zoek naar passend vrijwilligerswerk of juist hulp nodig? Op VIPgilzerijen.nl vind je elkaar gemakkelijk en veilig. Plaats ook je vraag en aanbod!
Language
nl

Open Graph

ttl
1550584
url
https://www.vipvoorelkaar.nl/
title
Homepage
locale
nl_NL
site name
VIPvoorElkaar

Technology

CDN
Cloudflare
Analytics
  • Google Tag Manager

Third-party hosts loaded (2)

  • cdn.onesignal.com×1
  • www.googletagmanager.com×1

Social

DNS records live

NS
  • kellen.ns.cloudflare.com
  • nataly.ns.cloudflare.com
MX
  • 11 primary.yourfilter.nl
  • 21 fallback.yourfilter.nl
TXT
  • mandrill_verify.koyeZPuxZOUawRzTnKcxJg

Email authentication strong

SPF
v=spf1 a include:_spf.yourfilter.nl ip6:2001:67c:28fc:195::/64 ip4:195.20.8.0/24 include:spf.spamservice.nl include:eatserver.nl mx -all
strict (-all)
DMARC
v=DMARC1; p=reject;
policy: reject (enforced)
DKIM
  • default: v=DKIM1; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAroOcypyXgqK/pkc/UQ0yUCVw2syfg+9oXX8w6UFtSglMGfHPmRgGRq2WVnLFyvpxyIFSktsQtIo4zuFSoPzf4…
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed

Certificate (current)

WE1
from 2026-04-11 to 2026-07-10
Expires in 36 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.vipvoorelkaar.nl/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
accelerometer=(), camera=(), document-domain=(), fullscreen=(self), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), midi=(), payment=(), usb=(), sync-xhr=(self)
x-content-type-options
nosniff
content-security-policy
default-src 'self' data: ; script-src 'self' 'report-sample' 'unsafe-eval' 'unsafe-inline' *.cloudfront.net *.google-analytics.com ssl.google-analytics.com www.google.com www.googleadservices.com www.googleoptimize.com *.googletagmanager.com www.gstatic.com tagmanager.google.com maps.googleapis.com *.doubleclick.net connect.facebook.net *.landbot.io webchat.digitalcx.com *.hotjar.com cdnjs.cloudflare.com stackpath.bootstrapcdn.com cdn.jsdelivr.net code.jquery.com onesignal.com cdn.onesignal.com ads.creative-serving.com googleads.g.doubleclick.net *.monsido.com js-agent.newrelic.com bam.eu01.nr-data.net nonce-fc16e49c ; style-src 'self' 'report-sample' blob: 'unsafe-inline' *.cloudfront.net fonts.googleapis.com cdn.jsdelivr.net onesignal.com cdn-images.mailchimp.com translate.googleapis.com *.landbot.io nonce-fc16e49c ; img-src 'self' data: blob: ssl.gstatic.com www.gstatic.com *.google-analytics.com *.google.com *.google.nl *.google.de *.google.be *.g.doubleclick.net maps.gstatic.com *
strict-transport-security
max-age=63072000; includeSubDomains preload

Links to (8)

Linked from (1)