5things to fix
!No IPv6 (AAAA) record.▸
Add an AAAA record with your server's IPv6 address, or switch on IPv6 at your host or CDN (on Cloudflare it's on by default for proxied records).
!DNSSEC not enabled - enable it to prevent DNS spoofing.▸
Turn on DNSSEC at your DNS host, then publish the DS record at your registrar to complete the chain of trust.
Read the guide →!No HSTS header - add Strict-Transport-Security.▸
Send Strict-Transport-Security: max-age=31536000; includeSubDomains on every response, at your server or CDN edge.
Read the guide →!No Content-Security-Policy header.▸
Add a Content-Security-Policy. Start in Content-Security-Policy-Report-Only mode, refine it, then enforce.
Read the guide →!Missing X-Content-Type-Options: nosniff.▸
Add the header X-Content-Type-Options: nosniff to stop browsers MIME-sniffing responses.
Read the guide →DNS records
A37.48.112.241
AAAAnone
Nameserversns.cheetah-webhosting.nl.
ns.cheetah-webhosting.com.
MX0 mx01.xinno.nl.
1 mx02.xinno.nl.
SOAns.cheetah-webhosting.nl. beheer.borishoekmeijer.nl. 2026042501 10800 3600 604800 10800
Mail authentication
SPFv=spf1 a mx include:spf.xinno2.net a:mail.udinkschepel include:spf.cheeta.hosting ip4:213.125.233.82 ip4:213.125.233.83 ip4:37.48.112.241 ip4:141.138.168.0/21 ip6:2a03:3c00:a001::/48 ip6:2a03:3c00:a002::/48 include:spf.mailcamp.nl ~allPass
DMARCpolicy: p=quarantinePass
DKIMnot detected on common selectors-
DNSSEC
ZoneOff
IP intelligence
Primary IP37.48.112.241
Reverse DNSmy.cheeta.hosting.
TLS certificate
CertificateLet's Encrypt · expires 2026-11-24 (85d)Valid
HTTP security headers
HTTPS redirectYes
HSTSNo
CSPNo
X-Content-TypeNo
X-Frame-OptionsNo
Referrer-PolicyNo
Permissions-PolicyNo
ServerLiteSpeed
Add this badge to your site
<a href="https://nattvakt.com/report/udinkschepel.nl"><img src="https://nattvakt.com/badge/udinkschepel.nl.svg" alt="Domain health"></a>