alimak.com
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Analytics
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (5)
- images.ohmyhosting.se×22
- fonts.googleapis.com×1
- fonts.gstatic.com×1
- www.google-analytics.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Abion AB
- Created
- 1996-04-03
- Expires
- 2027-04-04 319 days left
- Updated
- 2026-03-31
- Name servers
-
- dns01.dipcon.com
- dns02.ports.se
- dns03.ports.se
- dns04.ports.net
DNS records live
- NS
-
- dns01.dipcon.com
- dns02.ports.se
- dns03.ports.se
- dns04.ports.net
- MX
-
- 0 alimak-com.mail.protection.outlook.com
- TXT
-
Show 7 TXT records
709hy67cqkpjmzsgy5wsgl2y91w21fg4201905031509505u6z5l8ddavas27d9c0odvur2m8hiq235av2mxui3g83qs5y5fpardot642473=dcebe60f396bdd7ff805c5e92303529f0ab7a06039428ef581263ce7924155ad_pzbyxmxt68wnk1nzk4x04p2kezh11uu0ed1fe018a4b8fa0fab31644c789cdb04b0f532276MS=ms21662892_86b42t9tjwebczw4ntpjxxh7kzuma8k
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:_spf.q4press.com include:8464480.spf06.hubspotemail.net -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:nmea7ng1@rua.eu.dmarcmanager.app;policy: quarantine - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvO4AMflkaRPoJvaHV6yCd5l0OntMzPcN9qhpF7ILZ+cJcafrJpSOjnthaoxTNi/tew3DAycx+TFXYh… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAy00PXufY6g9iwzz3dfKtjs3K6qjnN4r82KynUCBhM8a0iwCEZuBhl2wCWyXKU6l/wvM6U0F3Q0XqOC… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2YmumSLcwOViFBQf5xMcYWgryOXx44PnSZzVUYOuHQXiMYUO27BIMQ8KbN/qSw8F1oZ6AObOIbUZexkC0H… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuj6MrZp2aIb3B+AkMbCxVvd8SITzZLSQlg1XaRUPXyeBnQZgs36xmb8V0SJt4z767Y+B316h4iCD1ufGG7…
selectors probed - selector1:
Certificate (current)
RapidSSL TLS RSA CA G1
Expires in 161 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
deny- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; default-src 'self' 'unsafe-inline' *.googleapis.com *.googletagmanager.com *.google-analytics.com *.google.com *.linkedin.com *.cookiebot.com consent.cookiebot.com cdn.ohmyhosting.se *.ohmyhosting.se *.googleapis.com *.hsforms.com *.amazonaws.com *.cookiebot.com; script-src 'self' 'unsafe-eval' 'unsafe-inline' 'strict-dynamic' 'nonce-7ttm4FPapsq77BjzNBNxHaB3Zhw=' http: https: *.youtube.com youtube.com *.google.com *.linkedin.com *.hsforms.com *.amazonaws.com *.cookiebot.com; font-src 'self' data: http: https:; style-src 'self' https://fonts.googleapis.com http: https: 'unsafe-inline'; img-src https: data:; frame-src 'self' youtube.com www.youtube.com vimeo.com www.vimeo.com *.hsforms.com *.google.com *.linkedin.com *.amazonaws.com *.cookiebot.com; frame-ancestors 'none';