kriminalvarden.se
HTML metadata
Technology
- Server
- Microsoft-IIS
Third-party hosts loaded (1)
- cdn1.readspeaker.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1.p201.dns.oraclecloud.net
- ns2.p201.dns.oraclecloud.net
- ns3.p201.dns.oraclecloud.net
- ns4.p201.dns.oraclecloud.net
- MX
-
- 10 mailgw.kriminalvarden.se
- TXT
-
Show 7 TXT records
LxmGsbS+IpRIfkqEdztZtzDDfnawf3WywWYACcJQ6VU=MS=79C7E67F83A0FB3E12A3DD7E13B3143A4EE7CC4CETKMdUqzVBnKZ5DFTO7xEGua1iWuwm9Uyl99a3yCdJQ=cyk3le7q/U1CRdC2Y0WkkWDd0o2Ve58hVq95gl+PIkA=xSGZU1wBAs7toKlccX3n7ijgyw1B4N39xG5pu1iew7Q=bTSV3EPn1H9sU8Tk4LPVIFOCNrDTfcfPuUFQvo6Znyg=O7HK21LvcNFrqvF1K9c6pEVTehrtcj9PL2fAWjd68cE=
- Verified for
-
- Apple
- GlobalSign
Email authentication strong
- SPF
-
v=spf1 ip4:145.235.0.42 mx a -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc_rapport@kriminalvarden.se; ruf=mailto:dmarc_rapport@kriminalvarden.se; fo=0policy: quarantine - DKIM
- no key found at common selectors
Certificate (current)
GlobalSign Extended Validation CA - SHA256 - G3
Expires in 26 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- cross-origin-opener-policy
- cross-origin-embedder-policy
- cross-origin-resource-policy
- findings
-
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self' data: blob: *.kvv.se *.kriminalvarden.se; script-src 'self' 'nonce-d7a5afa1-c29e-44c9-ad3c-8848bd7701a0' *.readspeaker.com maps.googleapis.com cdn.matomo.cloud kriminalvarden.matomo.cloud *.screen9.com www.gstatic.com qcnl.tv google.com www.google.com www.youtube.com; style-src 'self' 'nonce-d7a5afa1-c29e-44c9-ad3c-8848bd7701a0' *.kriminalvarden.se *.readspeaker.com *.screen9.com kriminalvarden.matomo.cloud; img-src 'self' data: *.screen9.com *.openstreetmap.org kriminalvarden.matomo.cloud *.kvv.se cdn.varbi.com; connect-src 'self' *.screen9.com *.readspeaker.com kriminalvarden.matomo.cloud qcnl.tv www.google.com; media-src 'self' blob: *.screen9.com; frame-src 'self' *.spotify.com www.google.com www.youtube.com *.screen9.com; report-uri https://www.kriminalvarden.se/api/reporting/; report-to csp-endpoint;- strict-transport-security
max-age=31536000; includeSubDomains, max-age=31536000- cross-origin-opener-policy
same-origin- cross-origin-embedder-policy
unsafe-none- cross-origin-resource-policy
same-origin