aava.fi
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- jQuery
- 3.7.1
Third-party hosts loaded (3)
- static.addtoany.com×2
- policy.app.cookieinformation.com×1
- www.google.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- dns1.louhi.net
- dns2.louhi.net
- dns3.louhi.fi
- MX
-
- 0 aava-fi.mail.protection.outlook.com
- TXT
-
Show 4 TXT records
XI0AU3EQ0S0Y4TUKS05Z5WOQNXXT20ZE656SHZ2Bpardot968623=a6e41d269bb43a32ef048f43ae1a5564baac5a5734689339c7426febe0c0aae9kv6hgg3qt8jm156q5kr47qpyw1x1jqn3U72F50WJQY2E758X9GO7K22QZ5D9YN9JP1ITSCV2
- Verified for
-
- Anthropic
- Apple
- Atlassian
- Microsoft 365
- Miro
- OpenAI
Email authentication strong
- SPF
-
v=spf1 include:_spf.aava_fi._d.easydmarc.pro include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1;p=quarantine;rua=mailto:e1948203c1@rua.easydmarc.eu,mailto:dmarc@aava.fi;ruf=mailto:e1948203c1@ruf.easydmarc.eu,mailto:dmarc@aava.fi;fo=1policy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtjbEugKlLf88eTfXu22Tb4PrEqqP5dnPtM9slyeEp8DqXQWegnd5+A6pKJZbvFQVFQHIYiD7LATzAm… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAu+/s7wRT2FaHUMZuoYIBYdfljTqhEjt07VotjEem1n/4eM5m6Ewgg6vxfc5SXr0HN+kRa6h3lbqDgq…
selectors probed - selector1:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 126 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
deny- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' https://*.google-analytics.com/ https://*.addtoany.com https://*.talentadore.com https://occhat.elisa.fi https://embed.typeform.com https://*.leadoo.com https://i.scdn.co/ https://aava.my.site.com/; script-src 'self' 'unsafe-eval' 'unsafe-inline' https://*.pingdom.net/ https://*.pinimg.com/ https://static.ads-twitter.com/uwt.js https://*.pardot.com http://*.hotjar.com https://*.hotjar.com http://*.hotjar.io https://*.hotjar.io wss://*.hotjar.com https://connect.facebook.net https://js.stripe.com https://*.google-analytics.com/ https://*.googleoptimize.com https://tagmanager.google.com https://*.googletagmanager.com https://www.googleadservices.com https://www.google.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://*.pinimg.com https://policy.app.cookieinformation.com https://px.ads.linkedin.com https://s2.adform.net https://snap.licdn.com https://track.adform.net https://ninchat.com https://ninchat.s3.amazonaws.c- strict-transport-security
max-age=15552000; includeSubDomains
Links to (6)
- youtube.com×1
- pikkujatti.fi×1
- linkedin.com×1
- google.com×1
- facebook.com×1
- apple.com×1
aava.fi