elvia.no
HTML metadata
Technology
- CDN
- Cloudflare
Third-party hosts loaded (4)
- v.imgi.no×5
- unpkg.com×3
- elvia.my.site.com×1
- policy.app.cookieinformation.com×1
Registration
- Registrar
- Domeneshop AS
- Created
- 2022-08-10
- Updated
- 2025-07-13
- Name servers
-
- ns1-05.azure-dns.com
- ns2-05.azure-dns.net
- ns3-05.azure-dns.org
- ns4-05.azure-dns.info
DNS records live
- NS
-
- ns1-05.azure-dns.com
- ns2-05.azure-dns.net
- ns3-05.azure-dns.org
- ns4-05.azure-dns.info
- MX
-
- 0 elvia-no.mail.protection.outlook.com
- TXT
-
Show 5 TXT records
DomainVerification=50DKGBXF4Y8XRNQIZ3B1YBH7CRIZ5J0344XYSTE8QNSR6BQI1DI4UIR2RB0SMJJTnmy4rj55z6whlqckdbrh96zrd8tsh6l1_jpzuoa86sdmvpniu8t0on2rm0r99wdoautodesk-domain-verification=33UxIgL-Sbs9Xp_gmamJValidity-Domain-Verification=lgLgYnagf7nhNds0+Ix473fIXI8=
- Verified for
-
- Adobe
- Atlassian
- Microsoft 365
- Miro
- OneTrust
- Workplace
Email authentication strong
- SPF
-
v=spf1 ip4:168.245.127.232 ip4:168.245.41.96 ip4:64.28.25.166 ip4:64.28.25.167 ip4:185.7.220.1 ip4:188.95.241.170 include:spf.protection.outlook.com include:_spf.sndr.no include:spf.mailjet.com include:spf-003c6501.pphosted.com include:sendgrid.net include:_spf.intility.com include:spf.eu.exclaimer.net -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; pct=100; rua=mailto:IT-sikkerhetsvarsler@elvia.no,mailto:pen65lch@ag.eu.dmarcadvisor.com; ruf=mailto:IT-sikkerhetsvarsler@elvia.no;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuVI/83oBZsvJoydfDBKxdx1FaU6j92YfMiw9/iypv1Xvx4yAljJNNwRx+PCbX4POxuVuoBanJjFM75… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxoxD2Lj0nm9jDpXQvsld82bS+0OCkJJPayt8KOcGzt9oVYOj/jxWaCP7Q9qsaHn5hOlN2+Hdnx2N6j3FS9… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0Cn9wcJhQy3IXK41pJbhHp3RAT8RbAigoW14MlavpBAlxWtPHorCrlELXvJgAJKcJruwn1sXNA5nuQQ/QZ…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 68 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- short HSTS max-age
- missing Content Security Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=*, accelerometer=(), ambient-light-sensor=(), attribution-reporting=(), autoplay=(), battery=(), bluetooth=(), browsing-topics=(), camera=(), display-capture=(), document-domain=(), encrypted-media=(), execution-while-not-rendered=(), execution-while-out-of-viewport=(), fullscreen=(), gamepad=(), gyroscope=(), hid=(), identity-credentials-get(), idle-detection=(), local-fonts=(), magnetometer=(), microphone=(), midi=(), otp-credentials=(), payment=(), picture-in-picture=(), publickey-credentials-create=(), screen-wake-lock=(), serial=(), speaker-selection=(), storage-access=(), usb=(), web-share=(), window-management=(), xr-spatial-tracking=()- x-content-type-options
nosniff- strict-transport-security
max-age=5184000; includeSubDomains; preload- content-security-policy-report-only
default-src 'self' data: 'unsafe-inline' 'unsafe-eval' unpkg.com *.cookieinformation.com *.episerver.net *.itxuc.com *.googletagmanager.com *.imgi.no *.youtube.com siteimproveanalytics.com *.siteimproveanalytics.io *.doubleclick.net localhost:5000 *.snapchat.com *.google.com *.facebook.com js.monitor.azure.com *.facebook.net snap.licdn.com sc-static.net *.tiktok.com px.ads.linkedin.com *.cloudfront.net *.bing.com *.ads.linkedin.com *.services.visualstudio.com *.googlesyndication.com *.aptrinsic.com cdn.siteimprove.net adservice.google.com *.googleapis.com *.gstatic.com elvia.my.site.com elvia.my.salesforce-scrt.com elvia--test.sandbox.my.site.com elvia--test.sandbox.my.salesforce-scrt.com cookie-cdn.cookiepro.com fonts.vev.design;report-uri https://phoenix-csp-reporting.azurewebsites.net/cspreport