plandata.dk
HTML metadata
DNS records live
- NS
-
- lakas.ns.cloudflare.com
- rosemary.ns.cloudflare.com
- TXT
-
Show 5 TXT records
oNxDhIr53w/cdCgvx2b7R+ZqiQPeNcaaHX5zq5iJzrY=4UWPEa+2BdiCHsd38moXvU0xg6qs9m/pUxxrzHucCoQ=Lkbjmo2osE/JRX7hRdPzkCxbyly/OsNl6LVBaUMGHcE=UNJYg8pBjF8Bw9jCncLrVYdtNz2XwQqx2n7Fp1lT1tM=eNp1w0S/cUqfGaGH4SfJ0mSwgH158gUj4GDlk8U9we8=
- Verified for
-
- GlobalSign
Email authentication no MX
- SPF
-
v=spf1 -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;sp=reject;rua=mailto:tcod1eh2@ag.eu.dmarcadvisor.compolicy: reject (enforced) · sp=reject - DKIM
- no key found at common selectors
Certificate (current)
YR2
Expires in 85 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin- x-frame-options
SAMEORIGIN- permissions-policy
fullscreen=(*), accelerometer=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()- x-content-type-options
NOSNIFF- content-security-policy
default-src 'self' https://* data: blob:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://* data: blob:; style-src 'self' 'unsafe-inline' https://* data: blob:; frame-src 'self' https://*; img-src 'self' https://* data: blob: ;media-src 'self' https://* data: blob: ;font-src 'self' https://* data: blob:;frame-ancestors 'self';- strict-transport-security
max-age=31536000
Links to (3)
- sologvindinfo.dk×1
- plst.dk×1
- digst.dk×1
Linked from (1)
- risoe.dk×1
plandata.dk