elopak.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- cdn.cookietractor.com×1
- www.googletagmanager.com×1
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 1999-04-09
- Expires
- 2027-04-09 325 days left
- Updated
- 2026-04-05
- Name servers
-
- dns1.cscdns.net
- dns2.cscdns.net
DNS records live
- NS
-
- dns1.cscdns.net
- dns2.cscdns.net
- MX
-
- 10 elopak-com.mail.protection.outlook.com
- TXT
-
Show 15 TXT records
miro-verification=da0713b14f052e6fe538dcee62b02080e026f91egoogle-site-verification=lz5RsU64worH-Gub3lRT7O5WyrYNi7EVrvakK9tFMSEggA6yGgKX9e60sq8VA3gEudHgAqef1rKKHOkWDMEYsQnV6iHgQdqFW6FR7B9b7GglCmqM8nG2KyL5gylyq+Nlw==paloaltonetworks-site-verification=f100b53f4e2683f373885b1d71542b196ef05a07e179b28eb4b8a0f58c9fb326MS=ms22160297MS=ms39666404MS=ms697828320j76xc3t61fnt7lf21z05cybtntx9qfzSfGHCW4N7KfmUGWwQ4tTccb0zjyW0vJKaECSfV4zqBNngq7Jbsetvz7MYUKCvMVsp2hdhTu6TEW0df6710Xp3mK1niGBga5htUQnRVQsEpD6dBN6xKg4NSVKSB2x090rd365mktkey=7iif8tofe6q6avzdcsosdqlmidocusign=66cf8f82-6f3e-4691-86f1-923c3fc023aeautodesk-domain-verification=4__9j8gJeA_fTMUDh3O-
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com a:prdmta01.prd.no a:smtp01.emea.sabacloud.com a:vgappsvr01.vgappcanada.com a:websmtp.railcarmgt.com ip4:178.21.131.158 include:_spf.psm.knowbe4.com include:_spf.nanolearning.com ip4:194.150.62.8 ip4:194.150.62.9 ip4:194.150.62.10 ip4:194.150.62.11 -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;pct=100;rua=mailto:postmaster@elopak.compolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDA9pHVqaC+XugN0xv+W9dwhphL0oN33TigNRjq8ikqWrzHugdHs8RnhmxldL6acegJFedIWxldkYfvNi4Sb9… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0rsyeUAQwSUhWhe5BVFyoTl5v+w0dJrLgCop3CvpDV7M1qLiStOqweeMZvadVY851s9DlNIItoCLCW…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 48 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
upgrade-insecure-requests; frame-ancestors 'self'; default-src 'self' https://player.vimeo.com https://www.youtube.com https://www.youtube-nocookie.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.googletagmanager.com https://www.google-analytics.com https://*.clarity.ms https://snap.licdn.com https://widget.datablocks.se https://cdn.cookietractor.com https://js.monitor.azure.com https://www.youtube.com; connect-src 'self' https://www.googletagmanager.com https://www.google-analytics.com https://app.cookietractor.com/ https://region1.google-analytics.com https://*.clarity.ms https://px.ads.linkedin.com/ https://widget.datablocks.se https://hub.mfn.se https://dc.services.visualstudio.com https://js.monitor.azure.com https://www.youtube.com;img-src 'self' data: https://www.googletagmanager.com https://px.ads.linkedin.com/ https://www.google-analytics.com https://*.clarity.ms https://widget.datablocks.se https://cdn.cookietractor.com https://www.youtube.com https://i.vimeo- strict-transport-security
max-age=63113904; includeSubDomains; preload