gjensidige.se
HTML metadata
Technology
- CDN
- Azure Front Door
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (5)
- cdn.gjensidige.no×16
- builders-asset-server.gjensidige.io×4
- app.usercentrics.eu×2
- tags.tiqcdn.com×2
- api.usercentrics.eu×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1.hyp.net
- ns2.hyp.net
- ns3.hyp.net
- MX
-
- 10 gjensidige-se.mail.protection.outlook.com
- TXT
-
Show 5 TXT records
fQecwbda8W4+8jy3gkPyENPjV0l8c5IOTjENVU5muernz4ZtlAMn7g2py/YSQhUtNFBYdBZsdh7VSL+Hs7Ll/w==_xqv1wjxxmg6unc170tl92tzic7iqykczbB4NAzrSBWZuyLuGjYqC5/RbarpjeECxL3KYPTcqqwX7MyZI+p4HsdE80Q1Gsbe6Hbj3rEGv5u8BLwWcx2SLA==_7kwgy8imh8jfg5esi6wrs8qn6k0p1wxmentimeter-9172f1e2-6800-40e5-8376-9d34810c581b
- Verified for
-
- Atlassian
- Figma
- Microsoft
- Microsoft 365
- Miro
- Slack
Email authentication strong
- SPF
-
v=spf1 ip4:139.105.113.128 ip4:139.116.71.0/25 ip4:212.18.128.128/25 ip4:146.192.49.128/25 ip6:2a02:9c8:0:1001::/64 ip4:185.30.224.128/25 ip4:139.112.193.5 ip4:139.112.193.4 ip4:139.113.45.128/28 include:_spf.questback.com include:spf.protection.outlook.com include:spf-a.telia.com include:spf-b.telia.com include:spf.bas.no include:spf.tucaas.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; pct=100; rua=mailto:n5ug6rur@ag.eu.dmarcian.com; ruf=mailto:n5ug6rur@fr.eu.dmarcian.com;policy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDMRvxFb8waDIg+oJEqfRRutJrZM9qn7MpaU7qkBPORj1STc/B+WGUoAGch3hktPksvLLg8LsbORN0/QQY41A… - s1:
v=DKIM1; k=rsa; h=sha256; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0kw5ueWJNdKJ33lpHbhcGJbud3clgiAmYs0wzhvyQBwQqS2xlB9fgTl9oEbzuR3XMN7O…
selectors probed - selector1:
Certificate (current)
Buypass Class 3 CA 2
Expires in 92 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-embedder-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
geolocation=(), microphone=(), camera=(),fullscreen=(self),payment=(),accelerometer=(),gyroscope=(),magnetometer=(),autoplay=(),picture-in-picture=(),sync-xhr=(),usb=(),serial=(),bluetooth=(),xr-spatial-tracking=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline' blob: *.hotjar.com *.hotjar.io *.azureedge.net *.callguide.telia.com *.teliacompany.com *.signicat.com *.dep-x.com *.roykvarslerdagen.no *.sikkerhetsbutikken.no *.doubleclick.net *.facebook.com *.facebook.net *.google.com *.google.no *.googleadservices.com *.googletagmanager.com *.siteimprove.com *.usercentrics.eu https://adsby.bidtheatre.com https://app.usercentrics.eu https://applet.danid.dk https://bankid.no https://bat.bing.com https://cdn.gjensidige.no https://cjteradata.com https://connect.facebook.net https://csfe.bankid.no https://danid.dk https://faro-collector.gjensidige.io https://gjensidige.piwik.pro https://gjensidigecol.cjteradata.com https://gjensidigecol2.cjteradata.com https://googleads.g.doubleclick.net https://id.signicat.com https://my.tealiumiq.com https://preprod.signicat.com https://rules.quantcount.com https://script.hotjar.com https://secure.quantserve.com https://signicat.com https://signicat.- strict-transport-security
max-age=31536000; includeSubDomains; preload- cross-origin-opener-policy
same-origin- cross-origin-embedder-policy
unsafe-none- cross-origin-resource-policy
cross-origin