hyresgastforeningen.se
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Gatsby
- ASP.NET
- 4.0.30319
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (5)
- static.rekai.se×2
- dl.episerver.net×1
- policy.app.cookieinformation.com×1
- translate.google.com×1
- www.googletagmanager.com×1
Contact
- Phone
DNS records live
- NS
-
- dns01.dipcon.com
- dns02.ports.se
- dns03.ports.se
- dns04.ports.net
- MX
-
- 0 hyresgastforeningen-se.mail.protection.outlook.com
- TXT
-
Show 7 TXT records
tkljopn95rkustrg435dt0umrfpexip-ms-tenant-domain-verification=69b8c273-ccb9-4422-a0f4-cbd6489181b3p261qg8l26jgam39dkn5eltnk5GWnzuX/iIo1yiLbY/p/sLzsxsMh+Ad7Rple+RQdZ33ZIkmuA6GmkSRZgEOQG0hQE30HXwr3GSnvYiP7MdTfi9w==amazonses:N8MR0crxmwQ4DE26UconU9DGAt37GYvaMRkd0yiX4yI=e4bh3m1a5ia491fq0gjhqorsavk937trge7d2d45pnjdt8m2ijmh
- Verified for
-
- Apple
- Cisco
- Dynamics 365
- Meta
- Microsoft
Email authentication strong
- SPF
-
v=spf1 ip4:20.240.55.14 include:_spf.messagecenter.se include:amazonses.com include:spf.hyresgastforeningen.se include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;rua=mailto:dmarc_agg@vali.email;sp=none;fo=1;policy: reject (enforced) · sp=none - DKIM
-
- selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCpDK8YHCYqwt2CQ3oLi8acwALL/OCpv/skHj966gF79Qvgv7nVZJl2y3tGx3/5RomheGJuSrTkSut/td2jKr… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyR/wKO103insXQet+h+bORPMI2iyjsoWCoMH4ZXOA+vcShpxA47NSuPTdJE11qatzh9xWXhl2+rgQxh7YA… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvR3nVYyH94Vp/uTyPEv+2lyP3iBmBQA5dE+6IWI4QkO5hc+xrDVt2EdEBoizss/Rb2kGsra9ukrT8VgwpL…
selectors probed - selector2:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 308 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'none'; script-src 'self' 'unsafe-inline' *.rekai.se *.reachmee.com *.cookieinformation.com *.episerver.net *.googletagmanager.com *.google-analytics.com *.sj.se *.visualwebsiteoptimizer.com *.tidio.co *.msecnd.net *.googleapis.com *.google.com *.azure.com *.hotjar.com *.bing.com *.facebook.net *.tiktok.com sc-static.net *.doubleclick.net *.snapchat.com 'unsafe-eval'; style-src 'self' 'unsafe-inline' *.episerver.net *.gstatic.com *.rekai.se; font-src 'self' *.tidio.co; img-src 'self' data: *.episerver.net *.gstatic.com *.google-analytics.com *.googletagmanager.com *.ytimg.com *.visualwebsiteoptimizer.com *.hyresgastforeningen.se *.google.com *.googleapis.com *.google.se *.tt.se *.doubleclick.net *.facebook.com *.bing.com *.amazonaws.com *.cloudflare.com *.tiktokw.us; media-src 'self' *.tidio.co; connect-src 'self' *.cookieinformation.com *.google-analytics.com *.visualstudio.com *.rekai.se *.googleapis.com *.analytics.google.com *.doubleclick.net *.google.com *.hotjar.com *- strict-transport-security
max-age=63072000