hig.se
HTML metadata
Technology
- JS framework
- React
- Stack
- Java
Third-party hosts loaded (1)
- cdn-eu.readspeaker.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns2.hig.se
- ns3.hig.se
- sunic.sunet.se
- MX
-
- 0 hig-se.mail.protection.outlook.com
- TXT
-
Show 4 TXT records
jamf-site-verification=dZXK8tg_uv06OyWPV-Gxcw9c35cb0b410945ed8398831e82475a5dmentimeter-dee486c0-6303-4858-9543-95273ebf984fautodesk-domain-verification=Rnhuh9aNAdhdmElhat37
- Verified for
-
- Adobe
- Apple
- HARICA
- Microsoft 365
- Zoom
Email authentication strong
- SPF
-
v=spf1 ip4:130.243.0.136 ip4:130.239.8.142 ip4:212.85.68.72 ip4:213.157.70.68 ip4:213.157.70.73 include:all._spf.plma.se include:spf.protection.outlook.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; pct=100; rua=mailto:ejsw8muq@ag.dmarcian-eu.com,mailto:7c53c737@in.mailhardener.com,mailto:mailreport@hig.se; ruf=mailto:ejsw8muq@ag.dmarcian-eu.com,mailto:7c53c737@in.mailhardener.com,mailto:mailreport@hig.sepolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDEVHlHcCatS3myCsXPNpvqw/qDb6y+kN2Vlg/SNmln4qDa2Q3dbFoEh9wvp4BfLSwZndLuYjSBlhRDiF2ahE…
selectors probed - selector1:
Certificate (current)
R13
Expires in 44 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer- x-frame-options
SAMEORIGIN- content-security-policy
default-src 'self' https://*.hig.se; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://mfstatic.com/js/mediaflowplayer.min.js https://*.hig.se https://*.ednia.se/ https://*.ednia.se https://validation.sitevision.se/w3c-validator/check https://sunet.artologik.net https://*.readspeaker.com https://svanalytics.containers.piwik.pro https://svanalytics.piwik.pro https://*.siteimproveanalytics.com https://siteimproveanalytics.com https://*.hotjar.com https://*.siteimprove.net https://ssl.imbox.se/cd1/initWidget.js https://*.imbox.se https://*.imbox.io https://www.google.com/recaptcha/api.js https://www.gstatic.com https://*.confirmit.com https://*.userneeds.com https://*.rek.ai https://*.facebook.com https://*.facebook.net https://*.rekai.se https://*.sitevision-cloud.se https://*.cloudfront.net https://vod-cache.kaltura.nordu.net https://api.kltr.nordu.net https://api.kaltura.nordu.net https://sdk.amazonaws.com; style-src 'self' 'unsafe-inline' https://mfstatic.com/css/mediaflowplayer- strict-transport-security
max-age=31536000