boxer.se
HTML metadata
Technology
- Fonts
-
- Google Fonts
Third-party hosts loaded (3)
- images.ctfassets.net×7
- fonts.googleapis.com×1
- fonts.gstatic.com×1
DNS records live
- NS
-
- c.dns.tele2.net
- orebro.dns.swip.net
- ystad.dns.swip.net
- MX
-
- 10 boxer-se.mail.protection.outlook.com
- TXT
-
80966440937b403cbbef36ab72701359
- Verified for
-
- Meta
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 ip4:195.84.7.212 ip4:195.84.7.215 ip4:83.241.180.150 ip4:193.235.3.42 ip4:89.150.195.185 ip4:89.150.196.228 ip4:193.12.60.32/27 ip4:90.130.90.36 ip4:90.130.90.37 ip4:90.130.90.40 ip4:90.130.90.41 a:outbound33.service-now.com a:mailout.comhem.com include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:67b5d5f149927@ag.eu.dmarcly.com; ruf=mailto:67b5d5f149927@fo.eu.dmarcly.com; sp=reject; fo=0;policy: reject (enforced) · sp=reject - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwKU1adOjqnmVl4mZV/jG56gAJGcEeOhIUhlNJzGWskROIi9+e9/U0pHUEHl5LR5XeenDp4tdNEVQeG… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5WhLRmAH560TzzomceLLHQCtV+8kZ74TaPat92hBW6k1CMELP7bzmUWbooerNXEQKDLupVEljmFbY0…
selectors probed - selector1:
Certificate (current)
Sectigo Public Server Authentication CA OV R36
Expires in 235 days
HTTP security headers
- present
-
- content-security-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
script-src 'self' https://cdn.boxer.se *.googletagmanager.com *.cookielaw.org *.aservice.cloud *.facebook.net *.kindlycdn.com *.google-analytics.com *.googleadservices.com *.doubleclick.net *.googlesyndication.com cdn.cookielaw.org https://cdn.comviq.se https://at.go.boxer.se 'unsafe-inline' 'unsafe-eval';
Links to (1)
- tele2.se×1