wildewesten.be
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- ns1.register.be
- ns2.register.be
- ns3.register.be
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAk552x7785IOxnZZ1OR+epk5rYZxMvSi6z2UNTIa7N5wrLAhHQ/e7W7qieijp7zGvDoWJ/SjiEiCjZM+Qq37wJDV9BBWB10kFxT8QQQj8w31yziqj4bMNYCQWuS9kY6unAWppUaJiJDFV0OVOg8Y/yUO5dyK6ixPXAKdZ+CrvMt+K6xKVPeL9mRCiWwW6VYzxcSSC57WY+hU81KXPK52w//aK4Vc2PuL8cslyK+gNp5kVyHhHfqpJ1cYbo/t8nWVlzPijVDLhKZ4gVgOClD4cI922H6CmMAZ36CI7ViKT4qJCZ+pvmyN/92o8fRdeFxbpv255A5lmYNcyT4dtj7MKCwIDAQAB
- Verified for
-
Email authentication partial
- SPF
-
v=spf1 include:_spf.createsend.com include:_spf.google.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=nonepolicy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
R12
Expires in 52 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer, strict-origin-when-cross-origin- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://cdn.plyr.io; block-all-mixed-content; connect-src 'self' https://cdn.plyr.io https://vimeo.com https://noembed.com https://www.google-analytics.com/ https://stats.g.doubleclick.net/ https://connect.facebook.net/ https://region1.analytics.google.com/ https://region1.google-analytics.com/; font-src 'self'; frame-src 'self' https://www.youtube.com https://www.youtube-nocookie.com/ https://player.vimeo.com https://open.spotify.com/ https://tally.so https://www.google.com; img-src 'self' https://placeholder.inventis.be https://*.ytimg.com data: https://i.vimeocdn.com/ https://www.googletagmanager.com/ https://www.google-analytics.com/ https://www.google.be/ https://www.google.com/ https://*.facebook.com/; script-src 'self' 'strict-dynamic' 'unsafe-inline' 'unsafe-eval' https://www.youtube.com/iframe_api https://*.ytimg.com https://www.googletagmanager.com/gtm.js https://www.google-analytics.com/analytics.js https://script.hotjar.com/ https://connect.facebook.net/- strict-transport-security
max-age=2592000