winbooksconnect.be
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- AmazonS3
DNS records live
- NS
-
- ns-1256.awsdns-29.org
- ns-1863.awsdns-40.co.uk
- ns-40.awsdns-05.com
- ns-978.awsdns-58.net
- MX
-
- 0 mx.sendgrid.net
- TXT
-
hibp-verify=dweb_axvl5vjqop26xdtui9ff05vv
Email authentication partial
- SPF
-
v=spf1 include:sendgrid.net -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:winbooks-d@dmarc.report-uri.com; ruf=mailto:winbooks-d@dmarc.report-uri.com;policy: none (monitoring only) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvbzY3GUV4cWZ/SFxPuxWDcBVNTuuavKal5GnjuIsmu6hQ5syFOmEeN6eircZipkxlJ7e1CNrGOgcNtG+6F… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCXBnvkVRpFBZCmeCkoVKqAb9kibqCmHVH+/q0bITA3ZAeLL3RjaoxeMtOTEPV2B2SpzcmoCucMWFODAMftWKhHCi… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - s1:
Certificate (current)
Amazon RSA 2048 M04
Expires in 152 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
default-src 'self'; trusted-types angular angular#bundler goog#html default dompurify; require-trusted-types-for 'script'; font-src 'self' https://use.typekit.net/ https://fonts.gstatic.com/ data:; style-src 'self' https://fonts.googleapis.com/ 'unsafe-inline'; script-src https://app.winbooksconnect.be/ https://use.typekit.net/ https://www.googletagmanager.com/; connect-src 'self' wss://ws.winbooksconnect.be/ https://api.winbooksconnect.be/ https://api.mydigitalaccountant.be/ https://assets.winbooksconnect.be/ https://performance.typekit.net/ https://www.google-analytics.com/; img-src 'self' https://assets.winbooksconnect.be/ https://p.typekit.net/ https://api.winbooksconnect.be/ data: blob:; frame-ancestors 'none'; object-src 'none'; worker-src 'none'; manifest-src 'none'; media-src 'none'; child-src 'none'; frame-src 'none'; base-uri 'self'; form-action 'self'; upgrade-insecure-requests; report-uri https://winbooks.report-uri.com/r/d/csp/enforce- strict-transport-security
max-age=63072000; includeSubdomains; preload