kemi.se
HTML metadata
Technology
- Stack
- Java
Third-party hosts loaded (1)
- siteimproveanalytics.com×1
Social
DNS records live
- NS
-
- ns1.loopia.se
- ns2.loopia.se
- MX
-
- 10 kemi-se.mail.protection.outlook.com
- TXT
-
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDDAQewbUJQCVnB+xZbg+Hms4D2lzozl/sShXQkvNKaYfdVKxiPgxwQP6U7eBBA67fx1pRgFRJrirWCuahg41YKRXhEZJaLaenzjuwb5eMYmR2d40c+vVVFjOBNsVCnC/lsVbGB7ecAvmb4kJvtMKn223LoPyARHZRticwDp+ES7QIDAQAB
- Verified for
-
- Apple
- Cisco
Email authentication strong
- SPF
-
v=spf1 include:spf.mailjet.com mx a ip4:192.121.89.1 ip4:192.121.89.16 ip4:37.221.229.139 include:_spf.anpdm.com a:smtp.tripnet.se include:mail.sitevision-cloud.net include:sendgrid.net include:spf.protection.outlook.com include:_spf.grade.se -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:2by1jgjjrb@rua.powerdmarc.com; ruf=mailto:2by1jgjjrb@ruf.powerdmarc.com;policy: reject (enforced) - DKIM
-
- selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDrAuph7V8lLAJ22okjkKDoKcV06Hn1aAuAODRp0znf3IszfqmYHLLryLK0x7TnvIffyobXMqnvnt+5u5iE8L…
selectors probed - selector2:
Certificate (current)
R12
Expires in 63 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- content-security-policy
default-src 'self' 'unsafe-eval' 'unsafe-inline' data: blob: via.tt.se translate.googleapis.com translate.google.com fonts.googleapis.com m1.analytics.sitevision-cloud.se i.ytimg.com gstatic.com www.gstatic.com fonts.gstatic.com kemi.matomo.cloud www.browsealoud.com plus.browsealoud.com plusqa.browsealoud.com *.mediaflow.com im16.inviewer.se mfstatic.com assets.mediaflowpro.com stats.mediaflowpro.com m1.analytics.sitevision-cloud.se speech-eu.speechstream.net speech.speechstream.net siteimproveanalytics.com *.siteimproveanalytics.io https://svanalytics.piwik.pro https://svanalytics.containers.piwik.pro *.entryscape.com data.kemi.se ssl.webserviceaward.com; frame-ancestors 'none'; frame-src 'self' kemi.intric.ai qna.kemi.se webapps.kemi.se youtube.com www.youtube.com www.youtube-nocookie.com youtube-nocookie.com google.com www.google.com html5-player.libsyn.com *.mediaflow.com im16.inviewer.se; report-uri /rest-api/CSP-reports/report- strict-transport-security
max-age=31536000; includeSubDomains; preload