renova.se
HTML metadata
Technology
- Server
- Microsoft-IIS
- CMS
- Gatsby
- ASP.NET
- 4.0.30319
- Stack
- ASP.NET
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (4)
- consent.cookiebot.com×1
- dl.episerver.net×1
- www.facebook.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- a.dns.tele2.net
- b.dns.tele2.net
- c.dns.tele2.net
- ns1.renova.se
- ns2.renova.se
- MX
-
- 10 renova-se.mail.protection.outlook.com
- 15 smtpo365.renova.se
- TXT
-
xQFu5vUM+tGg1JMDxqqNqCF22I3hE7VSfxB+mB5yBe0LSu96gUmq6ERrrDOBoytnhf/Bl4+NreM8qZBgWHh03Q==pv294kbj4hq6j261p2zrj0txcm2rc83w40.127.132.204
- Verified for
-
- Apple
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 a:smtpo365.renova.se ip4:62.88.135.4 ip4:62.88.135.3 ip4:213.50.243.152 ip4:213.50.243.153 include:spf.protection.outlook.com a:budo70.adriahost.com include:topdesk.net -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc-rua@renova.se; ruf=mailto:dmarc-ruf@renova.se; fo=s; pct=1;policy: none (monitoring only) · pct=1 - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAutQ0SByWmpGQZLHXGBZHZZCrIVJmRTyl4hFvGU7HAmLYQnTWtSeJSzfzrgBHg0vJdzmQxDVDhc+5B75DCc… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDUE9PF3l2mlSmvPOvwNPHkTJUif8feR+WhV7jYzIN0VVDrx+m4HJ/HqfVtd+WAPbts5HtREwa5nOkzhxLmZaSbn0…
selectors probed - s1:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 220 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self'; default-src 'self'; script-src 'unsafe-inline' 'unsafe-eval' 'self' blob: https://dl.episerver.net/ https://connect.facebook.net/ https://mfstatic.com/ https://*.cookiebot.com/ https://mfstatic.com/js/mediaflowplayer.min.js https://statistik-appar.goteborg.se/matomo.js https://static.mediaflowpro.com/ https://i16.inviewer.se/ https://www.googletagmanager.com https://*.doubleclick.net; style-src 'unsafe-inline' 'self' https://static.mediaflowpro.com/ https://dl.episerver.net/ https://mfstatic.com; object-src 'none'; base-uri 'self'; connect-src 'self' https://*.cookiebot.com/ https://api.mediaflow.com/ https://m.mediaflow.com https://mfstatic.com https://im16.inviewer.se/ https://statistik-appar.goteborg.se https://v1.mediaflow.com https://v2.mediaflow.com https://stats.mediaflowpro.com https://v6.mediaflow.com/ https://*.doubleclick.net https://www.google.com https://v4.mediaflow.com https://stats.mediaflow.com https://www.facebook.com/privacy_sandbox/topics/re- strict-transport-security
max-age=600