landskronafoto.org

.org crawl

First seen 2026-04-19 · Last seen 2026-05-13 · ok HTTP/1.1 200 14093 ms crawled 2026-05-13

SE · 46.16.236.7 · AS44136 ODERLAND Webbhotell AB

Reputation 87/100 weak security headers no dmarc policy

Classifying

HTML metadata

Title
Landskrona Foto | The Home of Photography in Scandinavia
Language
sv-SE
Generator
WPML ver:4.9.2.1 stt:1,52;
Canonical
https://www.landskronafoto.org/
Translations
  • en
  • sv
Feeds

Open Graph

url
https://www.landskronafoto.org/
title
Landskrona Foto | The Home of Photography in Scandinavia
locale
sv_SE
site name
Landskrona Foto

Technology

Server
LiteSpeed
CMS
WordPress
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts

Third-party hosts loaded (4)

  • fonts.googleapis.com×2
  • stackpath.bootstrapcdn.com×2
  • www.facebook.com×1
  • www.googletagmanager.com×1

Social

Contact

Email
Phone

Registration

Registrar
Key-Systems GmbH
Created
2014-03-11
Expires
2027-03-11 294 days left
Updated
2026-02-17
Name servers
  • ns1.wk.se
  • ns2.wk.se

DNS records live

NS
  • ns1.wk.se
  • ns2.wk.se
MX
  • 10 mx1.wk.se
  • 10 mx2.wk.se

Email authentication weak

SPF
not published
DMARC
not published
DKIM
  • default: v=DKIM1; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCd9AiHJ9dGH8e4i1JiDseSa8NfHliKfi2XWSId7FaCOdjqdM+DmTBd211Q99gd4t2PHpHm6lK3o764JoFAWEK0Ec1nX…
selectors probed

Certificate (current)

R13
from 2026-05-10 to 2026-08-08
Expires in 80 days

HTTP security headers

Header hygiene 45/100 Checked live page: https://www.landskronafoto.org/

present
  • content-security-policy
  • permissions-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
Header values
permissions-policy
private-state-token-redemption=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com"), private-state-token-issuance=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com")
content-security-policy
script-src 'self' data: blob: 'unsafe-inline' 'unsafe-eval' https://hb.wpmucdn.com/ https://app.captainform.com/; img-src 'self' data: blob: https://smushcdn.com/ https://*.smushcdn.com/; object-src 'self' data: blob: https://app.captainform.com/; frame-src 'self' data: blob: https://app.captainform.com/;

Links to (8)

Linked from (1)