eskilstunalogistik.se
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- dreambroker.com×2
- cdn.cookietractor.com×1
- www.googletagmanager.com×1
Contact
DNS records live
- NS
-
- a.portsdns.se
- b.portsdns.net
- MX
-
- 10 se.mx1.mailanyone.net
- 20 se.mx2.mx25.net
- 30 se.mx3.mailanyone.net
- 40 se.mx4.mx25.net
- TXT
-
Show 7 TXT records
zmdhphz79h457qfr1ynwdrk1g0mtvmwhy1hvww48jl6hnwp00m9r4wbj56ldr7p7qe/Qhqk5lEIyT4wwFmLSZD/lnsBw7hCYs1TH/w8msQ1U2jx8ZqoKhi/Cwh3pL4ujgEAbktkuAzQ/OLa7ycdFgA==c25q6p9cbsn8wvc32gpd696g9sq47hyn_e0eyb1566s441c560te41r9zfeiakum_1s6pbosm8hxkrr822s2fbjoq5xr3rutWFajom8mZSXB2WL6uzSbbcS7gafgf82UjhMBFUgTgGl+LgtseN7w+KWvAvfbr14y4fg3HecKY7lqInRXLAS2Pw==
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:_spf.staysecuregroup.com include:spf.protection.outlook.com include:all._spf.plma.se -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:ru4wp572@rua.eu.dmarcmanager.app;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4fNvGvw0UEH6Asaecu9UJ6UN5uQ1GygggXYmzrZ2sARxYv+YI1g/Z/BT2nuV0++X/E08ZhI5ahcu8r…
selectors probed - selector1:
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 164 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
Header values
- x-frame-options
sameorigin- permissions-policy
accelerometer=(), autoplay=(), camera=(), display-capture=(), document-domain=(self), encrypted-media=(), fullscreen=*, geolocation=(), gyroscope=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=(), publickey-credentials-get=(), sync-xhr=(self), usb=(), screen-wake-lock=(), web-share=(), xr-spatial-tracking=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; font-src 'self' *.gstatic.com *.typekit.net *.bootstrapcdn.com; style-src 'self' *.googleapis.com 'unsafe-inline' *.typekit.net; script-src 'unsafe-inline' 'self' *.google-analytics.com *.googleapis.com *.esem.se 'unsafe-eval' *.googletagmanager.com *.cookietractor.com; img-src 'self' data: *.google-analytics.com *.googleapis.com *.ytimg.com *.vimeocdn.com *.cision.com *.gstatic.com; connect-src 'self' *.google-analytics.com noembed.com *.googleapis.com; frame-src 'self' *.youtube.com *.vimeo.com *.dreambroker.com dreambroker.com *.google.com; worker-src 'self' blob:; manifest-src 'self'; media-src 'self'- strict-transport-security
max-age=31535999; includeSubDomains