fleetforsakring.se
HTML metadata
Technology
- CMS
- Gatsby
- Cookie consent
-
- OneTrust
Third-party hosts loaded (2)
- v.imgi.no×10
- cdn.cookielaw.org×1
Contact
- Phone
DNS records live
- NS
-
- ns1-01.azure-dns.com
- ns2-01.azure-dns.net
- ns3-01.azure-dns.org
- ns4-01.azure-dns.info
- TXT
-
_0ivdwhy0bzgrxlq8surur83m78r6r2b6ztdm0kl90l3v89gqhmqsx89ygq2w3zg9d0qpq40rv8w7qs7q9zx1llgtfmxsgfy
Email authentication no MX
- SPF
-
v=spf1 -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 261 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
origin- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self'; default-src 'self' blob: 'unsafe-inline' 'unsafe-eval' *.hsforms.net *.google-analytics.com *.euro.confirmit.com *.googlesyndication.com *.azure.com bat.bing.net brandedop-epitoolingep-staging.azureedge.net brandedop-epitoolingep-prod.azureedge.net bq.vertikalhelse.no *.amazonaws.com web-sdk-eu.aptrinsic.com esp-eu.aptrinsic.com *.hotjar.com *.vergic.com *.hotjar.io dhm5hy2vn8l0l.cloudfront.net *.hsforms.com bravi-itest-cdn.azureedge.net bravi-stest-cdn.azureedge.net bravi-atest-cdn.azureedge.net bravi-cdn.azureedge.net brandedop-epiep-DEV.azureedge.net *.crownpeak.com *.bing.com *.googleadservices.com *.crownpeak.net *.linkedin.com *.licdn.com *.bravi.if.eu connect.facebook.net *.ytimg.com ytimg.com www.gstatic.com *.googletagservices.com *.appspot.com *.doubleclick.net google.com *.google.com google.se *.google.se google.no *.google.no google.lv *.google.lv google.fi *.google.fi google.dk *.google.dk doubleclick.net appspot.com www.facebook.com *.mookie1.com s- strict-transport-security
max-age=31536000; includeSubDomains
Links to (1)
- if.se×1
fleetforsakring.se