hvilanutbildning.se

.se crawl

First seen 2026-05-27 · Last seen 2026-05-30 · ok HTTP/1.1 200 1976 ms crawled 2026-05-30

SE · 185.189.50.236 · AS206170 Yelles AB

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Start - Hvilan Utbildning
Description
Sveriges grönaste skola. Hvilan Utbildning erbjuder ett brett utbud av vuxenutbildningar genom yrkeshögskolan, yrkesvux och arbetsmarknadsutbildningar.
Language
sv-SE
Generator
WordPress 7.0
Canonical
https://www.hvilanutbildning.se/
Feeds

Open Graph

url
https://www.hvilanutbildning.se/
title
Start - Hvilan Utbildning
locale
sv_SE
site name
Hvilan Utbildning
description
Sveriges grönaste skola. Hvilan Utbildning erbjuder ett brett utbud av vuxenutbildningar genom yrkeshögskolan, yrkesvux och arbetsmarknadsutbildningar.

Technology

Server
LiteSpeed
CMS
WordPress 7.0
jQuery
3.4.1 known XSS (<3.5)
Analytics
  • Google Tag Manager
Cookie consent
  • Cookiebot
Fonts
  • Adobe Fonts

Third-party hosts loaded (6)

  • ajax.googleapis.com×2
  • maxcdn.bootstrapcdn.com×2
  • consent.cookiebot.com×1
  • gmpg.org×1
  • use.typekit.net×1
  • www.googletagmanager.com×1

Social

Contact

Phone

DNS records live

NS
  • dns1.oderland.com
  • dns2.oderland.com
  • dns3.oderland.com
MX
  • 0 hvilanutbildning-se.mail.protection.outlook.com

Email authentication partial

SPF
v=spf1 ip4:91.201.60.135 include:spf.protection.outlook.com -all
strict (-all)
DMARC
v=DMARC1; p=none;
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

E7
from 2026-05-14 to 2026-08-12
Expires in 72 days

HTTP security headers

Header hygiene 95/100 Checked live page: https://www.hvilanutbildning.se/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
geolocation=(), microphone=(), camera=()
x-content-type-options
nosniff
content-security-policy
default-src 'self' https: data: blob:; base-uri 'self'; object-src 'none'; frame-ancestors 'self'; form-action 'self'; connect-src 'self' https:; script-src 'self' https: 'unsafe-inline' 'unsafe-eval'; style-src 'self' https: 'unsafe-inline'; img-src 'self' https: data: blob:; font-src 'self' https: data:; frame-src 'self' https:; upgrade-insecure-requests
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (7)

Linked from (2)