bestwestern.dk
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (6)
- images.ctfassets.net×26
- www.bestwestern.dkda×3
- p.typekit.net×1
- script.crazyegg.com×1
- use.typekit.net×1
- www.googletagmanager.com×1
Social
Contact
- Address
- booking.service@bestwestern.com
DNS records live
- NS
-
- ns1.dnshost.net
- ns2.dnshost.net
- MX
-
- 0 bestwestern-dk.mail.protection.outlook.com
- Verified for
-
- 1Password
Email authentication weak
- SPF
-
v=spf1 include:spf.protection.outlook.com +a +mx include:spf-technical.com -allstrict (-all) - DMARC
- not published
- DKIM
-
- default:
v=DKIM1; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCmPXtAkZPp6HA0Pu3rmgBUtbTNwFLAofbPoCeLjQq2SLRsPNeyO8OSRHJV4bc+2rxyOz6oFz+NFKDW+O8W2nvrNqJrj…
selectors probed - default:
Certificate (current)
Thawte TLS RSA CA G1
Expires in 148 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- findings
-
- CSP uses wildcard sources
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-content-type-options
nosniff- content-security-policy
child-src 'self'; default-src 'self' https://*.bestwestern.se https://*.bestwestern.dk https://*.bestwestern.no https://*.google.com https://*.googleapis.com https://*.stripe.com https://sc-static.net https://tr.snapchat.com https://*.googletagmanager.com; frame-src 'self' https://*.captcha-delivery.com https://*.bwhhotelgroup.com https://*.bestwestern.se https://*.bestwestern.dk https://*.bestwestern.no https://*.crazyegg.com https://*.stripe.com https://*.google.com https://*.gstatic.com https://consentcdn.cookiebot.com https://*.googletagmanager.com https://www.facebook.com/ https://*.sj.se https://td.doubleclick.net/ https://tr.snapchat.com https://*.thehotelsnetwork.com https://dd.sca.sso.bwhhotelgroup.com; worker-src 'self' blob:; connect-src 'self' ws://localhost:* http://localhost:4000/graphql https://*.bestwestern.se/graphql https://*.bestwestern.com https://*.bestwestern.se https://*.bestwestern.dk https://*.bestwestern.no https://*.oktacdn.com https://*.bwhhotelgroup.com htt- strict-transport-security
max-age=31536000; includeSubDomains