businessregiongoteborg.se
HTML metadata
Technology
- Server
- LiteSpeed
- CMS
- Drupal
Third-party hosts loaded (1)
- bot.leadoo.com×1
Social
Contact
DNS records live
- NS
-
- a.portsdns.se
- b.portsdns.net
- Verified for
-
Email authentication no MX
- SPF
-
v=spf1 mx ip4:91.201.60.51 ip4:91.201.63.28 ip4:151.177.115.89 include:_vsp.oderland.com -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 28 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.businessregiongoteborg.se *.cookiebot.com businessregion.via-em.com bot.leadoo.com; script-src 'self' 'unsafe-inline' malsup.github.io *.businessregiongoteborg.se *.cookiebot.com app.emarketeer.com *.sleeknote.com www.google.com www.googletagmanager.com www.googleadservices.com googleads.g.doubleclick.net connect.facebook.net snap.licdn.com cdn.jsdelivr.net outlook.office365.com *.microsoft.com *.mediaflow.com businessregion.via-em.com bot.leadoo.com; style-src 'self' 'unsafe-inline' *.businessregiongoteborg.se *.cookiebot.com *.microsoft.com *.mediaflow.com businessregion.via-em.com bot.leadoo.com res.leadoo.com app.emarketeer.com; img-src 'self' 'unsafe-inline' data: *.cookiebot.com *.cision.com *.inviewer.se www.facebook.com *.sleeknote.com www.google.com www.google.se googleads.g.doubleclick.net www.googleadservices.com px.ads.linkedin.com businessregion.via-em.com assets.emarketeer.com res.leadoo.com bot.leadoo.com; media-src 'self' traffic.libsyn.com content.- strict-transport-security
max-age=31536000; includeSubDomains