yonder.nl
HTML metadata
Technology
- Social widgets
-
- Vimeo Embed
Third-party hosts loaded (1)
- player.vimeo.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1.surfnet.nl
- ns1.zurich.surf.net
- ns2.surfnet.nl
- ns3.surfnet.nl
- MX
-
- 0 yonder-nl.mail.protection.outlook.com
- TXT
-
Show 7 TXT records
rNB5i5IQNLGPRzY7coPfTHd2MdP3sXY442ucLsFLLEs8Vm9tfPxP6ZVd3s8K3HTQv=DKIM1; p=LGxz5NGig9NJ6uDLt7tv8BmICg0iaiZHrAyVMgL0JcraGSWL0hkDcoWoWGRd7G1HOaxo5mC9vIbrftLq1KgmE5oAlY4HNYtICIBR5SHhnzrLOuLOlNBSgOva0A7Rk7Q9b2305e5f0a2326d65464149e497e06ca96d74c9bf960d2f524cda158fa34a6d4W4xHxeyQXtAwsIT4CZo3P00RC0RcsvxCY0j4tiXcQ7Po8083020RLqozcpTZJ7tWe0abfb67e3dc17805cdd38474645735b48980d3592c1cb50cc5a02653f67857
- Verified for
-
- Adobe
- HARICA
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 ip4:83.137.145.0/24 ip4:89.188.15.0/24 ip6:2a01:1b0:7999:402::/64 ip4:136.144.129.212/32 ip4:185.138.80.120/32 a:post.educus.nl include:spf.protection.outlook.com include:sendgrid.net include:spf.signhost.com include:clients.summit.nl -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:rua@report.rect.to;ruf=mailto:di6leuvu@ag.eu.dmarcadvisor.com;fo=1policy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnA5CC67zxG28Lz0m5PBxaHQBg8OqQXHIzYFdp0oT8GVaAtW327GrJL53mT0WK6/4Fy7RLadmgP5RUz… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAue2GPMklzVxnK8+uBOKDNxhcfryZn277ToBRsbWWcSv+U6F/GT2M4lZ1ZKacu40D2P9s6c75oZ5Ocg… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArbHO6jVWGFddfqz3kdFOOHGEcZTQz49YDSdRI4cyngYqdD8s6oWro7ApxHEQDq6WLX6TykCC0BAv2A0k2l… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyiXwHd8T3pBGYOJzAjfYQi39QM11RmVz3qnYmuOFU7zGN9wNqjgd4jPfkTqmv0nE/qiIQ1FVom7E+6uTPS…
selectors probed - selector1:
Certificate (current)
GEANT TLS RSA 1
Expires in 100 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(), browsing-topics=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()- x-content-type-options
nosniff- content-security-policy
default-src * data: mediastream: blob: filesystem: about: ws: wss: 'unsafe-eval' 'wasm-unsafe-eval' 'unsafe-inline' 'self'; script-src * data: blob: 'unsafe-inline' 'unsafe-eval'; connect-src * data: blob: 'unsafe-inline'; img-src data: * blob: 'unsafe-inline' 'self'; frame-src * data: blob: ; style-src 'unsafe-inline' * data: blob: 'self'; font-src * data: blob: 'unsafe-inline'; media-src 'self'- strict-transport-security
max-age=0; preload