eqtiming.com
HTML metadata
Technology
- jQuery
- 3.5.1
- Fonts
-
- Google Fonts
Third-party hosts loaded (3)
- fonts.googleapis.com×3
- fonts.gstatic.com×1
- www.google.com×1
Contact
- Phone
DNS records live
- NS
-
- ns01.no.brand.one.com
- ns02.no.brand.one.com
- MX
-
- 0 eqtiming-com.mail.protection.outlook.com
- TXT
-
bubdltfbaf6ug6rd4bkpjh10of
- Verified for
-
- GlobalSign
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 include:sendgrid.net include:spf.protection.outlook.com include:protection.outlook.com a:eidsiva.net a:100.44.eidsiva.net ip4:82.147.44.100 ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=nonepolicy: none (monitoring only) - DKIM
-
- selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPG50ALkV7SY8KETlmpXZ5K2IhRAsWLqUIuM3tI57xakPSUMju5L4o6xqO2/Yw/2hia3iL5eHBFJZqrQzXNs… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvNvqpB1S85mb8Kx7iiSFJaYQg7Jv9SVqcH5e+ErvmqnwdctDmjJugwbhu90hkR3SeTYAgTNkfb5AAW1zPa… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDD+nlPBH53s6K5CXJ9nOKUiSnb0P1C75fcTiY+Rt5YbcVSUJVdvXwedVJEN4pvEA3Sz3PAJt2lUs2ngnoQVdSMCw…
selectors probed - selector2:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 141 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- permissions-policy
camera=(), microphone=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.facebook.com ; img-src * data: 'self' data: ; style-src 'self' 'unsafe-inline' unpkg.com fonts.googleapis.com qscdn.azureedge.net cdnjs.cloudflare.com cdn.jsdelivr.net partstream.arinet.com *.fontawesome.com *.unpkg.com *.dibspayment.eu ; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.cdn-apple.com *.kustom.co *.gstatic.com cdnjs.cloudflare.com cdn.jsdelivr.net *.googletagmanager.com *.google.com *.google-analytics.com *.facebook.com *.facebook.net *.doubleclick.net *.google.no *.klarna.com *.klarnaevt.com services.arinet.com partstream.arinet.com *.fontawesome.com *.dibspayment.eu unpkg.com ; connect-src 'self' google.com *.google.no *.googlesyndication.com *.cdn-apple.com *.kustom.co adressesok.posten.no cdnjs.cloudflare.com cdn.jsdelivr.net *.googletagmanager.com *.google.com *.google-analytics.com *.doubleclick.net *.facebook.com *.klarna.com *.klarnaevt.com services.arinet.com *.dibspayment.eu unpkg.com ; font-src data: 'self' fonts.googleapis.com fonts.gst- strict-transport-security
max-age=31536000