lobas.no
HTML metadata
Technology
- CDN
- Azure Front Door
- CMS
- Gatsby
- jQuery
- 3.0.0 known XSS (<3.5)
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (10)
- eu.static.dynamics365commerce.ms×46
- images-eu-prod.cms.commerce.dynamics.com×18
- fonts.googleapis.com×2
- js.monitor.azure.com×2
- scu871lzqe216191151-rs.su.retail.dynamics.com×2
- cdnjs.cloudflare.com×1
- fonts.gstatic.com×1
- kit.fontawesome.com×1
- mfpembedcdnweu.azureedge.net×1
- www.googletagmanager.com×1
Contact
Registration
- Registrar
- GROUP.ONE NORWAY AS
- Created
- 1999-11-14
- Updated
- 2025-11-26
- Name servers
-
- ns01.proisp.no
- ns02.proisp.no
DNS records live
- NS
-
- ns01.proisp.no
- ns02.proisp.no
- MX
-
- 10 lobas-no.mail.protection.outlook.com
- TXT
-
LDR72hFUuUWZZFLO/os5ODsxRkC4zSEku3Ge2QESh99wJdGutShAlybzQao/lv8hXQntSisxbBSyk5jmPAl0aQ==include:spfcloud.letsignit.com -all
- Verified for
-
- Brevo
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 include:_spf.proisp.no ip4:62.24.36.86 ip4:51.144.125.166 ip4:62.24.62.125 include:securemail.online.avur.no include:spf.messaging.microsoft.com include:spf.protection.outlook.com include:spfcloud.letsignit.com include:spf.sendinblue.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; fo=1; rua=mailto:ma@lobas.no,mailto:rua@dmarc.brevo.compolicy: none (monitoring only) - DKIM
-
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyW8CSRncnuEU2J1AqhQY+3jFDxuPhuJiBLdOw0kIylRYmFyXZvXPYcjf9NZgCWZMMt+BAAHy/xjHxT… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed - default:
Certificate (current)
E8
Expires in 72 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
child-src https://*.adyen.com https://paymentacceptsample.cloud.dynamics.com https://oc-cdn-ocprod.azureedge.net https://www.clarity.ms https://www.google.com https://maps.google.com blob: https://customervoice.microsoft.com/ https://*.b2clogin.com https://*.dynamics.com https://*.paperturn-view.com https://*.paperturn.com https://*.sibautomation.com https://*.brevo.com https://sibautomation.com https://*.cookiebot.com https://*.pushowl.com https://*.doubleclick.net https://*.chatbase.co 'self';connect-src https://*.adyen.com https://clarity.microsoft.com https://login.microsoftonline.com https://oc-cdn-ocprod.azureedge.net https://powerva.microsoft.com https://directline.botframework.com wss://directline.botframework.com https://ka-p.fontawesome.com/ https://*.google-analytics.com/ https://lob.as/ https://lobas-prod.dynamics365commerce.ms/* https://*.google.com https://maps.google.com https://unpkg.com/three@0.132.2/examples/js/libs/draco/gltf/draco_wasm_wrapper.js https://unpkg.com/t- strict-transport-security
max-age=31536000; includeSubDomains