pizzabakeren.no

.no crawl

First seen 2026-05-28 · Last seen 2026-05-31 · ok HTTP/1.1 200 481 ms crawled 2026-05-30

US · 172.67.75.38 · AS13335 Cloudflare, Inc.

Reputation 89/100 weak security headers dmarc monitor-only

Classifying

HTML metadata

Title
Pizzabakeren - Pizzabakeri, takeaway og levering, Norge.
Description
Pizza til folket! Bestill pizza fra Pizzabakeren. Smaker mer enn den koster. Nybakte bunner hver dag. Takeaway og levering. Bli PB-venn eller PB-bedrift i dag!
Language
no-no

Technology

CDN
Cloudflare
jQuery
3.2.1 known XSS (<3.5)
Analytics
  • Google Tag Manager
Cookie consent
  • Cookiebot

Third-party hosts loaded (6)

  • static.pizzabakeren.com×36
  • consent.cookiebot.com×1
  • maps.googleapis.com×1
  • stats.hosting.guru×1
  • www.google.com×1
  • www.googletagmanager.com×1

Social

DNS records live

NS
  • david.ns.cloudflare.com
  • ines.ns.cloudflare.com
MX
  • 0 pizzabakeren-no.mail.protection.outlook.com
Verified for
  • Google
  • Meta
  • Microsoft 365

Email authentication partial

SPF
v=spf1 include:spf.protection.outlook.com a:mail.datakreftverk.no ip4:80.239.24.19 ip4:80.239.24.18 include:_spf.cpanel.guru include:_spf.createsend.com -all
strict (-all)
DMARC
v=DMARC1; p=none;
policy: none (monitoring only)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQClXC9T8lrIwwsx16F8K2n5zFf3ieHmVwdb/t7dqpT35trXWkP22KpYtcp717kdpbfSAye0O/3kUZuf1v0GWM…
selectors probed

Certificate (current)

WE1
from 2026-05-23 to 2026-08-21
Expires in 81 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://pizzabakeren.no/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
default-src * 'unsafe-inline' 'unsafe-eval' data: blob:; img-src * data: blob: https://tmtarget.com; script-src * 'unsafe-inline' 'unsafe-eval' https://tmtarget.com; connect-src * https://tmtarget.com;

Links to (5)

Linked from (5)