akkafrakt.se
HTML metadata
Technology
- Server
- LiteSpeed
- CMS
- WordPress 6.9.4
- PHP
- 8.2.31 security-only
- jQuery
- 3.7.1
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- gmpg.org×1
- widget.trustpilot.com×1
- www.googletagmanager.com×1
Social
Contact
DNS records live
- NS
-
- ns1.defendo.se
- ns2.defendo.se
- MX
-
- 10 se.mx1.mailanyone.net
- 20 se.mx2.mx25.net
- 30 se.mx3.mailanyone.net
- 40 se.mx4.mx25.net
- TXT
-
Show 4 TXT records
e7gdk0a1nqi6klqppaqrl52hq8lime-domain-verification=41F1D78BFA101927m3vSbvZIgHlk7mNB9k0NRHzyFKRlkbWnBn1dUK54RuFOfEiU741bXa/O/596kQM6GKQbj4Vv8uTR+JtV86amw==0a16fc02a5a83ae63b4b659d1f9b3beb
- Verified for
-
- GlobalSign
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 include:spf.mailanyone.net ip4:85.197.152.45 -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:4d8b8e74540b.a@dmarcinput.com,mailto:defendo.admin@akkafrakt.se; ruf=mailto:4d8b8e74540b.f@dmarcinput.com,mailto:defendo.admin@akkafrakt.se; fo=1policy: none (monitoring only) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDNK9dzEW/U20qXya1qI6Na8D96p5oA/hN0V9V6vnDEEFvpvxQdv0k+laf03/qxnSOSkzNa2RG2UFc2I3Xo25… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCn3sYKsKtXdlPjUyPjxBhDJda7hADkuIXfOvhBQ1SkBYwrgj3CCFLuGUg+blRe+zJYdR/+glww+F6cj9EsQN… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAukNTc1k+u8O+r8M+D+N8Vc1hSGLBnssh9h2mlThOIl1s7b4XWThDrkITYhmzEWpj12epZnJVbtqb4k6tDt… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA8oHfMcFwlOUgn/IBCzpb7l/LwkKXrpYSUi6rCb/ZZEg/zj66uTKYosFRrGI0J9BNIBdJQOh60IUpKJOvna…
selectors probed - selector1:
Certificate (current)
R12
Expires in 33 days
HTTP security headers
- present
-
- content-security-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
script-src 'self' data: blob: 'unsafe-inline' 'unsafe-eval' https://code.jquery.com/ https://dibspayment.eu/ https://*.dibspayment.eu/ https://sekei.resurs.com/; img-src 'self' data: blob: https://code.jquery.com/ https://dibspayment.eu/ https://*.dibspayment.eu/ https://*.resurs.com/; object-src 'self' data: blob: https://dibspayment.eu/ https://*.dibspayment.eu/ https://sekei.resurs.com/; frame-src 'self' data: blob: https://dibspayment.eu/ https://*.dibspayment.eu/ https://sekei.resurs.com/;