nyteknikeducation.se
HTML metadata
Technology
- Server
- LiteSpeed
- CMS
- WordPress 6.9.4
- PHP
- 8.1.34 end of life
- jQuery
- 3.7.1
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
- Social widgets
-
- LinkedIn Widget
Third-party hosts loaded (7)
- www.googletagmanager.com×3
- cdn.brevo.com×2
- accounts.google.com×1
- cdn.by.wonderpush.com×1
- fonts.googleapis.com×1
- platform.linkedin.com×1
- www.facebook.com×1
Contact
- Phone
- Address
- Birkagatan 16C, 11339, Stockholm, Sweden
DNS records live
- NS
-
- ns1.bdm.microsoftonline.com
- ns2.bdm.microsoftonline.com
- ns3.bdm.microsoftonline.com
- ns4.bdm.microsoftonline.com
- MX
-
- 0 nyteknikeducation-se.mail.protection.outlook.com
- TXT
-
mscid=q4QIt7R/KWOxvXVJcxVlAUSEQxEnVyB8c+bHaAd+7Gr9C/yGd8hmAG/BMon7GWN92GWZI6jnfonREiwF72Rufg==
- Verified for
-
- Brevo
Email authentication partial
- SPF
-
v=spf1 include:spf.protection.outlook.com include:spf.brevo.com include:relay.mailchannels.net -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:rua@dmarc.brevo.compolicy: none (monitoring only) - DKIM
-
Show 6 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv+1X0GUNxnHO3SHVhPdvztDqAATOWFwVOBZO5kWlf9jIXpn/dePrdFjZLZQFF6Yz8Wqc8XFlKh5uN5… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAx9zJVnQS8F7czWvi5sy6Sr2nEEAyV6oUdFWXNFR6TStMmSz4wJiwpAA5UOiARv84SlIgqNDrzET5rr… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2ut0uGlzYpKbaLKK+ztwt4ZxpGliH7OqELCcxXDMs19Yxus2aAMQ5QZfw8MC98XAkGoeca1kig2y9xAFUY… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDHA6Ooc6SyJ6Mulrotr+OCUk6rB84U4Qa2Td/qsm16y+i5AE1Qgfw81kWaj6U6G88KnIxIQcDuQG6q94Q+x7G9aY…
selectors probed - selector1:
Certificate (current)
R12
Expires in 33 days
HTTP security headers
- present
-
- content-security-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
script-src 'self' data: blob: 'unsafe-inline' 'unsafe-eval' https://www.paypalobjects.com/ https://s3.amazonaws.com/ https://*.stripe.com/ https://*.list-manage.com/ https://stats.wp.com/ https://*.linkedin.com/ https://chimpstatic.com/ https://sibautomation.com/ https://conversations-widget.sendinblue.com/ https://conversations-widget.brevo.com/ https://*.vimeocdn.com/ https://cdn.brevo.com/ https://player.vimeo.com/ https://cdn.by.wonderpush.com/; img-src 'self' data: blob: https://www.paypalobjects.com/ https://pixel.wp.com/ https://www.google.se/; object-src 'self' data: blob: https://*.paypal.com/ https://*.stripe.com/ https://*.linkedin.com/ https://embed.acast.com/ https://*.acast.com/ https://open.spotify.com/ https://sibautomation.com/ https://conversations-widget.brevo.com/ https://player.cvm3.se/ https://accounts.google.com/; frame-src 'self' data: blob: https://*.paypal.com/ https://*.stripe.com/ https://*.linkedin.com/ https://embed.acast.com/ https://*.acast.com/ https://