ernstsexpress.se

.se crawl

First seen 2026-06-05 · Last seen 2026-06-05 · ok HTTP/1.1 200 936 ms crawled 2026-06-05

SE · 93.188.2.53 · AS39570 Loopia AB

Reputation 87/100 weak security headers no dmarc policy

Classifying

HTML metadata

Title
Startsida - Ernsts Express AB - Det gröna åkeriet
Language
sv-SE
Generator
Elementor 4.1.1; features: additional_custom_breakpoints; settings: css_print_method-external, google_font-enabled, font_display-auto
Canonical
https://ernstsexpress.se/
Feeds
last post 192 days ago

Open Graph

url
https://ernstsexpress.se/
title
Startsida - Ernsts Express AB - Det gröna åkeriet
locale
sv_SE
site name
Ernsts Express AB - Det gröna åkeriet
description
Vi servar svensk basindustri med hållbara vägtransporter.

Technology

Server
nginx
CMS
WordPress
PHP
8.3.30 security-only
jQuery
3.7.1
Fonts
  • Google Fonts

Third-party hosts loaded (2)

  • fonts.googleapis.com×2
  • gmpg.org×1

Contact

Email
Phone

DNS records live

NS
  • ns1.loopia.se
  • ns2.loopia.se
MX
  • 1 ernstsexpress-se.mail.protection.outlook.com
TXT
  • spf2.0/mfrom,pra a mx include:spf.gansend.com ~all
Verified for
  • Microsoft 365

Email authentication weak

SPF
v=spf1 a mx ip4:195.198.228.41 ip4:195.198.228.42 ip4:195.198.228.43 ip4:195.198.228.44 ip4:195.198.228.45 ip4:195.198.228.46 include:spf.protection.outlook.com include:spf.gansend.com ~all
softfail (~all)
DMARC
not published
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0a0DfEFLG5Fp/KHEeSIOfjfWTZ0s4cIerZKXS5uQQz+Fy3aNxD6h9GQajc0EJjnLbUtzCqlVEpU7of…
selectors probed

Certificate (current)

YR1
from 2026-06-01 to 2026-08-30
Expires in 86 days

HTTP security headers

Header hygiene 35/100 Checked live page: https://ernstsexpress.se/

present
  • permissions-policy
findings
  • missing HSTS
  • missing Content Security Policy
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
Header values
permissions-policy
private-state-token-redemption=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com"), private-state-token-issuance=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com")

Links to (2)

Linked from (1)