hunkemoller.se
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Gatsby
- Analytics
-
- Cloudflare Insights
Third-party hosts loaded (17)
- eu-images.contentstack.com×21
- s7g10.scene7.com×4
- www.hunkemoller.be×2
- www.hunkemoller.ch×2
- www.hunkemoller.com×2
- l4ki4e4ayr.kameleoon.io×1
- static.cloudflareinsights.com×1
- www.hunkemoller.at×1
- www.hunkemoller.co.uk×1
- www.hunkemoller.de×1
- www.hunkemoller.dk×1
- www.hunkemoller.es×1
- www.hunkemoller.fr×1
- www.hunkemoller.lu×1
- www.hunkemoller.nl×1
- www.hunkemoller.no×1
- www.hunkemoller.pl×1
Social
DNS records live
- NS
-
- ns01.brandshelter.com
- ns02.brandshelter.net
- MX
-
- 10 fallback.ctacloud.net
- 5 mail.ctacloud.net
- TXT
-
Show 5 TXT records
_4ectktyjyt61y0cwtn3k1sqxizifmwofyqd30jgd50y3h18j3qvqzwnyj434ksdxccsrqt6cg46tltlh8mz7vj0ptk0g1ws_ktolocr96doghrrhsq4aotwe2mh00hi_7s37pumiqdjrzggbwiwejdmnip0hjg4
- Verified for
-
- Meta
Email authentication strong
- SPF
-
v=spf1 a include:is.msdp1.com ip4:83.149.67.68 ip4:213.227.138.96/28 -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:f3f849e95aa4043@rep.dmarcanalyzer.com; ruf=mailto:f3f849e95aa4043@for.dmarcanalyzer.com; sp=quarantine; fo=1;policy: reject (enforced) · sp=quarantine - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtbOCg+AbaCJqw7eXkWHPz5K1ee10OaPt0WKxiGQkzfOrEZ/fRWKO2M74H/4S6CRC8YwQ7bIziQWnnfwiV3… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwqjyATcU6fHA0CEd2qF16og8TPuY4HhEHEO54m22P5WownTW1yVyhvCMak27/Ku8jDIlTdgPXr7JS4ZW5q…
selectors probed - s1:
Certificate (current)
R13
Expires in 36 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- cross-origin-opener-policy
- findings
-
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
connect-src *.hunkemoller.at *.hunkemoller.de *.kameleoon.io *.kameleoon.com *.kameleoon.eu *.kameleoon.net *.experimentation.dev api.cquotient.com p.cquotient.com *.c360a.salesforce.com *.sovendus.com *.contentstack.com *.contentstack.io *.googletagmanager.com *.pinterest.com bat.bing.com bat.bing.net *.noibu.com wss://*.noibu.com ams.creativecdn.com *.getflowbox.com cdn.flbx.io *.snapchat.com *.google.com google.com *.google.ad *.google.al *.google.am *.google.at *.google.az *.google.ba *.google.be *.google.bg *.google.by *.google.ch *.google.cz *.google.de *.google.dk *.google.ee *.google.es *.google.fi *.google.fr *.google.ge *.google.gg *.google.gr *.google.hr *.google.hu *.google.ie *.google.im *.google.is *.google.it *.google.je *.google.li *.google.lt *.google.lu *.google.lv *.google.md *.google.me *.google.mk *.google.mt *.google.nl *.google.no *.google.pl *.google.pt *.google.ro *.google.rs *.google.se *.google.si *.google.sk *.google.sm *.google.com.ua *.google.com.tr *.goog- strict-transport-security
max-age=31536000; includeSubDomains- cross-origin-opener-policy
same-origin-allow-popups