hivolda.no
HTML metadata
Technology
- CDN
- Fastly
- CMS
- Drupal
- Analytics
-
- Google Analytics
- Google Tag Manager
- Hotjar
- Ads
-
- Meta Pixel
- Cookie consent
-
- Usercentrics
- Fonts
-
- Google Fonts
Third-party hosts loaded (12)
- fonts.googleapis.com×3
- api.mazemap.com×2
- connect.facebook.net×1
- fonts.gstatic.com×1
- google.com×1
- script.hotjar.com×1
- static.hotjar.com×1
- vars.hotjar.com×1
- vc.hotjar.io×1
- web.cmp.usercentrics.eu×1
- www.google-analytics.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- nn.uninett.no
- ns.uninett.no
- MX
-
- 10 hivolda-no.mail.protection.outlook.com
- TXT
-
WWQQWRDs0nAPmzzuTU9C1SYvh4/Lf36zKvmhwBFZ0IhDjCfITgRzO+6oH86765NpWEDEczkeQ//XbPqaTfch1A==IUBm3XHo8Idv0kudXxuerbazOckdsnbLqBVUXnpyr8U3pYLcpqONgyUlDhLoUb3spx746eJAMklzn9lHgVaFLg==
- Verified for
-
- Adobe
- Apple
- HARICA
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 ip4:158.38.125.104 ip4:158.38.126.110 ip4:158.38.126.107 ip4:158.38.126.126 ip4:158.38.125.47 ip4:158.38.126.101 ip4:158.38.75.176 ip4:158.38.146.128/25 ip4:109.105.110.209 ip4:158.38.126.130 ip4:158.38.125.42 ip4:52.232.27.151 a:mail.nb.no include:spf.flowmailer.net include:spf-eu.exlibrisgroup.com include:spf.uio.no include:spf.protection.outlook.com include:_spf.uninett.no include:_spf.nanolearning.com a:nanolearning.com ip4:52.143.59.192 ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@inbound.flowmailer.net; ruf=mailto:dmarc@inbound.flowmailer.net; fo=1policy: none (monitoring only) - DKIM
-
Show 5 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnVfhidWBJwyoh6DQKKWfBUrB3dEExOxFdPjzcQ3ajm4DEbxV8SsRF6+Fgt9aj8a9sUvW4YSV/sf4CJ… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDBAtx6doalYgVrGAYHHQ/IGbbY/nVG8XiAD478My2tvkuCEOniRzb24Pg08/DHP8k2kHfrxiNCYLmfWqTUYl… - mail:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQChmtSCWsJ6mFhrqn0wbq+ZrirF0BpjOUG5jPAGK3gudeNk39w9JslH7RzlVy9nTm3765rCuZHICtWaKZRigR… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA25P6jjzBXXz7MhL/Kdm3RgLFp8gHWCA3LwA1cm+FKM5c3Fmgf6sKReheG8OO30cfF7eBULgov9MV6l0GTA… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQD3HeMQhUHrdMUm6DNCWlt/9Q5O6SeUAcZyCa7wyeRtO/5D0U2B4rcogRiaDLrDC+jBlQbn/zIuCAELYRTNZRfmkT…
selectors probed - selector1:
Certificate (current)
R13
Expires in 80 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' https:; connect-src 'self' https://api.mapbox.com/ https://a.tiles.mapbox.com/ http://a.tiles.mapbox.com/ https://b.tiles.mapbox.com/ https://events.mapbox.com/ https://api.mazemap.com/ https://tiles.mazemap.com/ https://search.mazemap.com/ https://api.gobistories.com/ https://res.cloudinary.com/gobi-technologies-as/image/upload/ https://res.cloudinary.com/gobi-technologies-as/video/upload/ https://*.google-analytics.com/ https://*.analytics.google.com/ https://*.googletagmanager.com/ https://*.google.com/ https://*.g.doubleclick.net/ https://region1.google-analytics.com/g/* https://www.googletagmanager.com/gtag/js https://stats.g.doubleclick.net/ https://*.googlesyndication.com/ https://*.hotjar.io/ https://*.hotjar.com/ wss://*.hotjar.com/ https://*.snapchat.com/ https://www.facebook.com/ https://contentassistant.eu.siteimprove.com/cms/ https://id.eu.siteimprove.com/connect/authorize/ https://*.ingest.sentry.io/api/ https://www.chatbase.co/api/ https://*.usercentri- strict-transport-security
max-age=31557600