koda.dk
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Next.js
Third-party hosts loaded (1)
- cdn.sanity.io×6
Social
Contact
- Phone
DNS records live
- NS
-
- matteo.ns.cloudflare.com
- priscilla.ns.cloudflare.com
- MX
-
- 0 koda-dk.y-v1.mx.microsoft
- TXT
-
Show 10 TXT records
openai-domain-verification=dv-6z9gzFAiYptj2wNwUte8MPn9vpe=d716a64b_globalsign-domain-verification=ITAl2oWka1BeedIdwUbvVMvUKF72OeXioAejRnyEWa_globalsign-domain-verification=_RYx3G2JUrZmxBfE0d1VIqUUohnEii40C6Fgu52A2M_globalsign-domain-verification=zWLAZ3ThE8fbm6nBV9L6Hr2uqx-lvjWT7YT1tJTv5ganthropic-domain-verification-j1hy5b=AOkkYQFC8f0UEEO6Atdu65Maiapple-domain-verification=iadgn97vIRP6QPiYb8d3c8sasodrh891iugktlildsgoogle-site-verification=Zm-AljKh67tzibSuMJdFDCcLGVfxJAHSBggHg1ktCRIms-domain-verification=fbc4bc97-2b78-46af-8fab-79db2f57fc91
Email authentication strong
- SPF
-
v=spf1 a ip4:176.62.206.42 ip4:80.88.144.146 ip4:86.58.179.34 ip4:45.87.1.185 ip4:86.58.179.58 ip4:176.62.206.40 ip4:80.88.144.144 ip4:152.115.101.236 ip4:217.116.216.4 include:spf-esec.heimdalsecurity.com include:_spf.anpdm.com include:spf.onlinelegat.dk include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; sp=reject; rua=mailto:dmarc_agg@vali.email;policy: reject (enforced) · sp=reject - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC9yE+K96A22G1PYkNap3LwYXoPKsd7x0cuFWjaXJub7hqOg7gST6tZvO1JqSKzGCPQNWuehcnHAW9NEnky6X…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 63 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://*.epay.eu; script-src 'self' 'nonce-ZDI0NTU1NTctYjA3Ny00ZTFhLWEyNmUtNjBkMGRkNTcxN2M4' 'unsafe-eval' https://koda.dk https://*.koda.dk https://www.googletagmanager.com https://consentcdn.cookiebot.com https://consent.cookiebot.com https://connect.facebook.net https://px.ads.linkedin.com https://www.facebook.com https://www.google.com https://www.google.dk https://www.googleadservices.com https://payments.epay.eu https://*.epay.eu; style-src 'self' blob: data: 'unsafe-inline' https://www.googletagmanager.com fonts.googleapis.com https://*.epay.eu; img-src 'self' data: blob: pagead2.googlesyndication.com https://cdn.sanity.io https://imgsct.cookiebot.com https://www.googletagmanager.com https://fonts.gstatic.com https://px.ads.linkedin.com https://www.facebook.com https://www.google.com https://www.google.dk https://www.googleadservices.com https://googleads.g.doubleclick.net https://*.epay.eu; font-src 'self' fonts.gstatic.com https://*.epay.eu; object-src 'non- strict-transport-security
max-age=31536000; includeSubDomains