norskgjeld.no
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Next.js
- Analytics
-
- Plausible
Third-party hosts loaded (1)
- plausible.io×1
Contact
- Phone
- Address
- Postboks 1343 Vika,
DNS records live
- NS
-
- alexis.ns.cloudflare.com
- kehlani.ns.cloudflare.com
- MX
-
- 0 norskgjeld-no.mail.protection.outlook.com
- TXT
-
LyylrVMWJCHDP5oXT9HKB16BTm+7x4MUfiglcAEQTb5/ETyvpVZDnIKRhdQV0ROJ6VvZjjrmCCIVAcRpVqx+8A==LiCmOYCwQnGGPVcIRrmgtacuJ61ZWl0EaeQekV/v0y4GaHY8P8N3oB1WenOKw0J0zVktErbHimFBXslFtsrfCQ==
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 ip4:217.144.77.32/29 ip4:217.144.77.142 ip4:92.62.33.11 ip4:92.62.33.12 ip4:92.62.33.13 ip6:2a02:2c8:1:400::3311 ip6:2a02:2c8:1:400::3312 ip6:2a02:2c8:1:400::3313 include:_spf.plugg.no include:_spf.online.superoffice.com include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCR2cqzthtZE5+rSVEc0lAC2j08eFDXjJc0b8Je1QuvN9ynAP53Opdgxxxy62Q2TjEsUb/wBBrSoqVp/JqZOP…
selectors probed - selector1:
Certificate (current)
E7
Expires in 72 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
accelerometer=(),ambient-light-sensor=(),autoplay=(),battery=(),camera=(),cross-origin-isolated=(),display-capture=(),document-domain=(),encrypted-media=(),execution-while-not-rendered=(),execution-while-out-of-viewport=(),fullscreen=(self),geolocation=(),gyroscope=(),keyboard-map=(),magnetometer=(),microphone=(),midi=(),navigation-override=(),payment=(),picture-in-picture=(),publickey-credentials-get=(),screen-wake-lock=(),sync-xhr=(),usb=(),web-share=(),xr-spatial-tracking=(),notifications=(),push=(),vibrate=(),speaker=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://www.norskgjeld.no https://norskgjeld.no https://fonts.googleapis.com; style-src 'self' 'unsafe-inline' https://www.norskgjeld.no https://norskgjeld.no https://fonts.googleapis.com https://cdn.jsdelivr.net/npm/bootstrap@5.3.3/dist/css/bootstrap.min.css; font-src 'self' https://www.norskgjeld.no https://norskgjeld.no https://fonts.gstatic.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.norskgjeld.no https://norskgjeld.no https://ajax.googleapis.com/ajax/libs/jquery/3.5.1/jquery.min.js https://maxcdn.bootstrapcdn.com/bootstrap/3.4.1/js/bootstrap.min.js https://unpkg.com/htmx.org@2.0.3/dist/htmx.min.js https://cdn.jsdelivr.net/npm/bootstrap@5.3.3/dist/js/bootstrap.bundle.min.js https://plausible.io; frame-src 'self' https://www.youtube.com; connect-src 'self' https://ws.norskgjeld.no https://www.ws.norskgjeld.no https://oidc.difi.no https://access.norskgjeld.no https://api.norskgjeld.no https://eoyd9u3x.api.sanity.io wss://eoyd9u3x.api.sanity.io- strict-transport-security
max-age=15768000