blended.se
HTML metadata
Technology
- Server
- LiteSpeed
- CMS
- WordPress
- PHP
- 8.2.31 security-only
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- gmpg.org×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- kara.ns.cloudflare.com
- ray.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 aspmx2.googlemail.com
- 10 aspmx3.googlemail.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 +a +mx +ip4:46.16.236.27 +ip4:192.185.4.159 include:_spf.google.com include:mailgun.org include:_vsp.oderland.com include:spf.mailjet.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc-reports@blended.se; pct=100; sp=rejectpolicy: reject (enforced) · sp=reject - DKIM
-
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA9R0KeiqkGjdqTDvOebsvhcBNVB98i27KZIlf3/TxgG9tbsY8oQ7JAb73BmYmaUQblDGbKTp/iazb8L… - google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCYFTW9Av7qgXZ8FdBaVK1tDs3YDACR1R2NQ/LOCpfvVtAyxXHuZCCD0nNaamRvSZTkwTLimtvM0SeIHUKQWF… - s1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbj/Wl0or6YiWOtcnpKJU2SFzQo2gMuSGGwrtCwrmxirMgS6oX4pzW7Cw94cbrsZLM21H+wbonJdhxE9snPtrLHYah8H8…
selectors probed - default:
Certificate (current)
R13
Expires in 48 days
HTTP security headers
- present
-
- content-security-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
script-src 'self' data: blob: 'unsafe-inline' 'unsafe-eval' https://s3.amazonaws.com/ https://*.list-manage.com/ https://*.fontawesome.com/ https://www.chatbase.co; img-src 'self' data: blob: https://*.gravatar.com/; object-src 'self' data: blob: ; frame-src 'self' data: blob: ; form-action 'self' data: blob: ;
Links to (20)
- ventab.se×1
- vastsvenskahandelskammaren.se×1
- undertakskillarna.com×1
- swimtec.se×1
- swealas.se×1
- rzg.se×1
- qmatic.com×1
- optilon.com×1
- olda.com×1
- nssonab.se×1
- nordicpump.se×1
- lonetjanst.se×1
- linkedin.com×1
- installationsbolaget.se×1
- ictech.se×1
- greencarrier.com×1
- dpower.se×1
- brfmasthugget.se×1
- boatmangbg.com×1
- autic.se×1