holmgrensbil.se
HTML metadata
Technology
- CMS
- Gatsby
- Stack
- ASP.NET
- Analytics
-
- Google Analytics
- Google Tag Manager
Third-party hosts loaded (3)
- www.googletagmanager.com×2
- app.talkie.se×1
- www.google-analytics.com×1
Social
DNS records live
- NS
-
- dns01.dipcon.com
- dns02.ports.se
- dns03.ports.se
- dns04.ports.net
- MX
-
- 0 holmgrensbil-se.mail.protection.outlook.com
- TXT
-
Show 8 TXT records
DomainVerification=607QUQSIXU61ENQEJ9DTPRDELIGJ04BXE0KKT4VRVVE31NTTGHS6BSPW4LCMSUJXMS=0712F6BB46E28C906F49C898E677BA6920989AD6DomainVerification=1CCFTHR1MRNQGR58F7E32P59KU774SBXEYABEREDFPXBH8F41MN3AT090ZMWCRJ5W40VZCEIXBA6PTYO5ZX4IKGISHF4A4YJV0911IGB1v4js26s4at7874aqqs0qi6udt_bmhu88e9xh27wr04ob2lywir0855luuPztEQZwunmDLvf78S4P8lTQXJ1GTx+nYDMNMO1gUwvXPErLc1nZfcp59NdvVFFFJv5rvEM+c0wylkKNz6yw0jQ==70poulisgmkl60i696r42bp1tp
- Verified for
-
- Apple
- GlobalSign
- Meta
- Microsoft 365
- Workplace
Email authentication strong
- SPF
-
v=spf1 include:spf-westeu.emailsignatures365.com include:sendgrid.net include:spf.mandrillapp.com include:spf.flowmailer.net include:spf.protection.outlook.com include:virtualmail.webpower.eu ip4:81.216.59.150 ip4:84.19.149.64/27 ip4:84.19.143.0/27 ip4:149.72.159.59 -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc-rua@holmgrensbil.se; ruf=mailto:dmarc-ruf@holmgrensbil.se; pct=100;policy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCsbQeEmbBPyIZe6ZUmqa5s2HDswXYsU4PDl3vNa8k/GH0USeom6DBa3pC656BRNhaBARocaKjfEgXZOVvWN1… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAw1JG3U9RXwJVg6c1mZVKHG4+nnKvvTBLh5inNYEMMdJ5SnUw6FQ7KbjqGbPN1a9DXnCXiGMXB+w+5s3f3z… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC+JpZ9Uw9t7k9JsDOYRzY1tgLxvkuUEYOJNBgpNKbVGMhYZ6xq9k/jr/8VmXDzh5EdhUebutC9KC2ry96eO0yEkf…
selectors probed - selector2:
Certificate (current)
RapidSSL TLS RSA CA G1
Expires in 149 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SameOrigin- x-content-type-options
nosniff- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.googletagmanager.com https://app.talkie.se https://*.hotjar.com https://cdn.holmgrensbil.se https://cdn.socket.io https://bat.bing.com https://sfxway.com https://*.serviceform.com https://*.cookiebot.com https://connect.facebook.net https://js.widget.talkie.se https://*.clarity.ms https://snap.licdn.com https://*.quantserve.com https://*.quantcount.com https://googleads.g.doubleclick.net;object-src 'self';style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://*.serviceform.com https://cdn.holmgrensbil.se;img-src 'self' https://*.holmgrensbil.se data: https://*.bing.com https://www.google.se https://chat-widget-icon.assets.talkie.se https://www.facebook.com https://connect.facebook.net https://imgsct.cookiebot.com https://*.clarity.ms https://px.ads.linkedin.com https://header-logo.assets.talkie.se https://avatar.assets.talkie.se https://maps.googleapis.com https://*.googleusercontent.com https://api.eontyre.com