redhead.se
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Shopify
Third-party hosts loaded (2)
- cdn.shopify.com×2
- monorail-edge.shopifysvc.com×1
Social
DNS records live
- NS
-
- ns1.swedishexportmedia.com
- ns2.swedishexportmedia.com
- ns3.swedishexportmedia.com
- MX
-
- 1 smtp.google.com
- 15 pwt243uob5vb55moesndtvcv7ruldd2wkphamwoh2ysnhmtanlbq.mx-verification.google.com
- TXT
-
tiktok-developers-site-verification=afrOjEdflvhDOuGfnGS3CniBJ3g72XpT
Email authentication weak
- SPF
- not published
- DMARC
- not published
- DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuHVLOJ+6wDi22hS8dLyrmabqE9EUv5BM5VIeoCkk8bAkKMy3/WXhJfTyj0hoknZLDpZoqadjr2B95FPDZ8… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDCx1Yk83wDHhcjLMaVCjlWD8BtL5atYqIWDtVEUejx/S8gayjxjwRqHE+f7n1t1rR2QsZ4enFM72RkNUxL1gz4BK…
selectors probed - s1:
Certificate (current)
YE2
Expires in 84 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- short HSTS max-age
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
block-all-mixed-content; frame-ancestors 'none'; upgrade-insecure-requests;- strict-transport-security
max-age=7889238