nhf.no

.no crawl

First seen 2026-05-29 · Last seen 2026-05-31 · ok HTTP/1.1 200 770 ms crawled 2026-05-31

DK · 46.30.213.18 · AS51468 One.com A/S

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
FORSIDE - Norges Handikapforbund
Language
nb-NO
Generator
Redux 4.5.11
Canonical
https://nhf.no/

Open Graph

url
https://nhf.no/
title
FORSIDE - Norges Handikapforbund
locale
nb_NO
site name
Norges Handikapforbund

Technology

Server
Apache
CMS
WordPress
jQuery
3.7.1
Stack
PHP
Fonts
  • Google Fonts

Third-party hosts loaded (5)

  • fonts.googleapis.com×4
  • maxcdn.bootstrapcdn.com×2
  • fonts.gstatic.com×1
  • www.facebook.com×1
  • www.google.com×1

Social

Contact

Email
Phone

Registration

Registrar
One.com
Created
2019-11-28
Updated
2025-11-28
Name servers
  • ns01.one.com
  • ns02.one.com

DNS records live

NS
  • ns01.one.com
  • ns02.one.com
MX
  • 10 nhf-no.mail.protection.outlook.com
TXT
  • 5vUpHHut
Verified for
  • Google

Email authentication strong

SPF
v=spf1 include:mailgun.org include:eu.mailgun.org include:_spf.fastname.no ip4:5.153.104.213 include:spf.protection.outlook.com -all
strict (-all)
DMARC
v=DMARC1; p=quarantine
policy: quarantine
DKIM
Show 4 DKIM selectors
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6iKdqyHZdQeldcftsMJc7TcVv4G43DHigpsOPfQZhTNwg2lHP3Emr4EmVMnluO7jEnx+ZHuEqQOfN4…
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAx6NTDUBtqWbOe4WZ0KNhepCkypuuEBkmPzlfrZ+sDz78BqW4vVHuPCUhgo895Ooieb61xM8C1GeVLvZ2P2…
  • s2: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3vZJLZ05hyhNUDTKLUGDohNPGWsZbQr/v3I2X4eD6S7+AU1YP0CtVR1cuFiCxLAqnMJ3DqikrQ8QLvgAIT…
selectors probed

Certificate (current)

E7
from 2026-05-06 to 2026-08-04
Expires in 64 days

HTTP security headers

Header hygiene 35/100 Checked live page: https://nhf.no/

present
  • permissions-policy
findings
  • missing HSTS
  • missing Content Security Policy
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
Header values
permissions-policy
private-state-token-redemption=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com"), private-state-token-issuance=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com")

Links to (3)

Linked from (5)