freedomtravel.se

.se crawl

First seen 2026-05-30 · Last seen 2026-06-01 · ok HTTP/1.1 200 2789 ms crawled 2026-05-31

US · 104.21.21.137 · AS13335 Cloudflare, Inc.

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
Resemagasin med massor av resmål | FREEDOMtravel
Language
sv-SE
Generator
WordPress 6.9.4
Canonical
https://www.freedomtravel.se/
Translations
  • en ×2
  • sv ×2
Feeds

Open Graph

url
https://www.freedomtravel.se/
title
Resemagasin med massor av resmål | FREEDOMtravel
locale
sv_SE
site name
FREEDOMtravel - Sveriges mesta resemagasin
updated time
2026-05-21T07:05:28+02:00

Technology

CDN
Cloudflare
CMS
WordPress 6.9.4
PHP
8.3.31 security-only
jQuery
3.7.1
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts

Third-party hosts loaded (6)

  • stats.wp.com×3
  • fonts.googleapis.com×2
  • maps.googleapis.com×2
  • unpkg.com×2
  • www.facebook.com×1
  • www.googletagmanager.com×1

Social

Contact

Phone

DNS records live

NS
  • bonnie.ns.cloudflare.com
  • luke.ns.cloudflare.com
MX
  • 10 mx1.pub.mailpod9-cph3.one.com
  • 10 mx2.pub.mailpod9-cph3.one.com
  • 10 mx3.pub.mailpod9-cph3.one.com
  • 10 mx4.pub.mailpod9-cph3.one.com
TXT
  • mandrill_verify.7us29P-bVMnoIyjYMxyzmg
  • adsy-site-verification=fjr982ryoiiui4932pr231

Email authentication strong

SPF
v=spf1 include:spf.mandrillapp.com include:_custspf.one.com ?all
neutral (?all)
DMARC
v=DMARC1; p=quarantine; rua=mailto:rua@freedomtravel.se; ruf=mailto:ruf@freedomtravel.se
policy: quarantine
DKIM
no key found at common selectors

Certificate (current)

WE1
from 2026-05-04 to 2026-08-02
Expires in 61 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://www.freedomtravel.se/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
script-src 'self' data: blob: 'unsafe-inline' 'unsafe-eval' https://s0.wp.com/ https://platform-api.sharethis.com/ https://checkout.dibspayment.eu/ https://widgets.wp.com/ https://capi-automation.s3.us-east-2.amazonaws.com/ https://www.googletagmanager.com/ http://cloudflare.com http://challenges.cloudflare.com http://*.cloudflare.com; img-src 'self' data: blob: https://platform-cdn.sharethis.com/ http://*.gravatar.com https://*.gravatar.com; object-src 'self' data: blob: https://checkout.dibspayment.eu/ https://wordpress.com/widgets/ https://freedomxplore.com/ https://*.freedomxplore.com/; frame-src 'self' data: blob: https://checkout.dibspayment.eu/ https://wordpress.com/widgets/ https://freedomxplore.com/ https://*.freedomxplore.com/;

Links to (9)

Linked from (2)