volkswagen-insurance.be
HTML metadata
Technology
- Stack
- Java
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- kit.fontawesome.com×1
- www.googletagmanager.com×1
DNS records live
- NS
-
- dns1.comlaude-dns.com
- dns2.comlaude-dns.net
- dns3.comlaude-dns.co.uk
- dns4.comlaude-dns.eu
- MX
-
- 0 smtp1.pvgroup.be
- 0 smtp2.pvgroup.be
- TXT
-
Show 4 TXT records
12l54pqm9i84l0kfgnmu94rhcavh0kvjgktmbpsst9b013abubsar62kc93732dqfllu5mnkmt9tv498qpsvcsd4u0doe2l8p3digf0f
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:pvgroup.be ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:aony01id@ag.eu.dmarcadvisor.com; ruf=mailto:aony01id@fr.eu.dmarcadvisor.com; sp=reject; fo=1;policy: reject (enforced) · sp=reject - DKIM
- no key found at common selectors
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 170 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- findings
-
- missing Content Security Policy
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- strict-transport-security
max-age=31536000; includeSubDomains- content-security-policy-report-only
script-src 'self' 'unsafe-inline' 'unsafe-eval' *.google.com *.sharethis.com *.rawgit.com *.jquery.com *.facebook.net *.usercentrics.eu *.cookiebot.eu *.cookiebot.com *.g.doubleclick.net *.fontawesome.com *.googleapis.com *.linkedin.com *.hotjar.com wasm-eval *.google-analytics.com *.googleoptimize.com *.googletagmanager.com *.gstatic.com; script-src-elem 'self' 'unsafe-inline' *.googleapis.com *.google.com *.sharethis.com *.rawgit.com *.cloudflare.com *.jquery.com *.facebook.net *.cookiebot.com *.g.doubleclick.net *.fontawesome.com *.bootstrapcdn.com *.wisoyekivo.com *.linkedin.com *.vimeo.com *.skedify.io *.plugin.skedify.io *.hotjar.com *.google-analytics.com *.googleoptimize.com *.googletagmanager.com *.gstatic.com *.pagespeed-mod.com; script-src-attr 'unsafe-inline'; style-src 'self' 'unsafe-inline' *.googleapis.com *.fontawesome.com *.sharethis.com *.gstatic.com *.pvgroup.be; style-src-elem 'self' 'unsafe-inline' *.jquery.com *.googleapis.com *.bootstrapcdn.com *.skedify.io pv.sk