blomsterlandet.se
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Gatsby
- Analytics
-
- Google Analytics
- Google Tag Manager
Third-party hosts loaded (3)
- dc.services.visualstudio.com×2
- www.google-analytics.com×2
- www.googletagmanager.com×2
Social
DNS records live
- NS
-
- ns1.coreit.se
- ns2.coreit.se
- ns3.coreit.se
- MX
-
- 0 blomsterlandet-se.mail.protection.outlook.com
- TXT
-
Show 7 TXT records
_fazodfwq9iists6mwc80dhxdqhamedi_gtks5srf29vh2hnsw68y6ypfz44k4g0COREID=BLIS9n3mgy7txbn833wv18j9gwylxkb3pp77atlassian-sending-domain-verification=a1ff99ef-5240-4f31-8c81-698940a04adct8fephuuq6tq4ls050haqu0s1u_nzw51wqqkg9fuwtk6u4o8n36656z51k
- Verified for
-
- Apple
- Atlassian
- Meta
- Microsoft 365
- OpenAI
Email authentication strong
- SPF
-
v=spf1 mx include:_spf.anpdm.com include:mail.zendesk.com include:spf.protection.outlook.com include:_spf.atlassian.net include:sendgrid.net include:_spf.blomsterlandet.se ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:urhywi47@ag.eu.dmarcadvisor.com;policy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDXz3PGcUtTQnZ/4hpjMnn8BNDVWbEdBsRgtcSsgNklmkREP2J4Ml0S/sXICeHVJVNaM/MHaQ+d050Av7vDHL… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDRQ6gjiKF29doFVY8EHmluYAGudK5Oqr1/wm63fXZYa31sZFo3yb2z8w3P4d5ve8QrwdaeTSq/cqcvzP2wFx… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqKgNwohzEpcn3RJ844asECCheyPUuTacHZlxan5tNHErbDnMUshK/5XSgH5NBFF7EGUfVC8OsdmtkH1By4… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvJahJT12g76mCKw4MpC9JdPr8zxw7UeZs5yIuEH+FtJ/npEXifFUeuitzI0jJekdtFFtZoUGIfHJRl4lK/…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 39 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
connect-src 'self' pagead2.googlesyndication.com region1.google-analytics.com www.google.com collect.blomsterlandet.se consentcdn.cookiebot.com consent.cookiebot.com googleads.g.doubleclick.net adservice.google.com eu.klarnaevt.com js.live.kustom.co www.facebook.com/tr/ www.google-analytics.com translate.googleapis.com ct.pinterest.com https://ad.doubleclick.net www.googleadservices.com www.facebook.com acdn.adnxs.com ib.adnxs.com connect.facebook.net *.google-analytics.com *.adsrvr.org https://files.imbox.io/widget-v2/prod/widget.js.map *.tiktok.com *.clarity.ms *.tiktokw.us *.adsrvr.org; script-src 'self' 'unsafe-eval' 'unsafe-inline' connect.facebook.net t.contentsquare.net files.imbox.io/app/dist/initWidget.js apiv2.imbox.io https://files.imbox.io/widget-v2/prod/widget.js https://acdn.adnxs.com/dmp/up/pixie.js consent.cookiebot.com consentcdn.cookiebot.com https://cdnjs.cloudflare.com/ajax/libs/pdf.js/2.16.105/pdf.worker.min.js www.googletagmanager.com js.klarna.com https://s.pinim- strict-transport-security
max-age=5184000; preload