kapowcasino.dk

.dk crawl

First seen 2026-05-19 · Last seen 2026-05-27 · ok HTTP/1.1 200 905 ms crawled 2026-05-27

DK · 86.58.244.185 · AS47292 Sentia Denmark A/S

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
KapowCasino - Sjovt, simpelt og sikkert online casino!
Description
KapowCasino er hele Danmarks online casino. Opret dig i dag og få 100 Spins til Gates of Olympus på din første overførsel og hyg dig med over 5.000 online spilleautomater. Vilkår gælder.
Language
da-DK
Canonical
https://www.kapowcasino.dk/

Open Graph

url
https://www.kapowcasino.dk/
title
KapowCasino - Sjovt, simpelt og sikkert online casino!
author
KapowCasino.dk
locale
da-DK
site name
KapowCasino.dk
description
KapowCasino er hele Danmarks online casino. Opret dig i dag og få 100 Spins til Gates of Olympus på din første overførsel og hyg dig med over 5.000 online spilleautomater. Vilkår gælder.

Technology

Cookie consent
  • Cookiebot
Fonts
  • Google Fonts

Third-party hosts loaded (3)

  • consent.cookiebot.com×2
  • fonts.googleapis.com×1
  • fonts.gstatic.com×1

Contact

Email

DNS records live

NS
  • authns1.ngdc.net
  • authns2.ngdc.net
MX
  • 0 kapowcasino-dk.mail.protection.outlook.com
Verified for
  • GlobalSign
  • Google
  • Microsoft 365

Email authentication weak

SPF
v=spf1 include:spf.protection.outlook.com mx -all
strict (-all)
DMARC
not published
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxhC3dWRnaY+yGt56FrIUjBdEWnWpHtnqdyHTbwhpWZsu9zZ/93TkKCzf5h+dAjjOeCMnl5d0Eosbu8…
selectors probed

Certificate (current)

GlobalSign GCC R6 AlphaSSL CA 2025
from 2026-01-07 to 2027-02-08
Expires in 252 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.kapowcasino.dk/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-opener-policy
  • cross-origin-embedder-policy
  • cross-origin-resource-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • weak content type protection
Header values
referrer-policy
no-referrer
x-frame-options
SAMEORIGIN
permissions-policy
camera=(), display-capture=(), fullscreen=(self), geolocation=(), microphone=()
x-content-type-options
nosniff, nosniff
content-security-policy
base-uri 'none'; font-src 'self' https: data:; form-action 'self'; frame-ancestors 'self'; img-src 'self' data: blob: https: http://10.21.67.61:1718 http://10.21.67.61:1728 http://10.21.67.61:1729 http://10.21.67.110:1071 http://10.21.67.200:1071 http://10.21.67.200:1072 http://10.21.67.200:1073 http://10.21.67.200:3073 http://10.21.67.200:3074 https://10.21.67.200:1073 https://10.21.67.200:3073 https://10.21.67.200:3074 http://10.21.67.110:1073 http://10.21.67.110:1074; object-src 'none'; script-src-attr 'none'; style-src 'self' https: 'unsafe-inline' 'strict-dynamic'; script-src 'self' https: 'unsafe-inline' https://consent.cookiebot.com https://*.cookiebot.com https://www.googletagmanager.com https://www.google-analytics.com; connect-src 'self' https: https://www.google-analytics.com https://stats.g.doubleclick.net;
strict-transport-security
max-age=15552000; includeSubDomains;, max-age=31536000; includeSubDomains
cross-origin-opener-policy
same-origin
cross-origin-embedder-policy
unsafe-none
cross-origin-resource-policy
same-origin

Links to (2)

Linked from (2)