reqs.se
HTML metadata
Technology
- Server
- nginx
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- dns1.cscdns.net
- dns2.cscdns.net
- MX
-
- 0 reqs-se.mail.protection.outlook.com
- TXT
-
Show 4 TXT records
1d4lsk96mk047skf6rbs31ocr34l0s5uagehkoi1h194c1i5v6p4s621k0sqmo7djhqk09h4unp6ctsending_domain911842=d57f0cabe6a8838f360ac2e4c29a7e231ee341b1c936cd4d94adf5ae079f706a
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 ip4:5.150.254.164 ip4:5.150.254.185 ip4:98.128.231.148 include:_spf.online.superoffice.com include:spf.protection.outlook.com include:spf.gansend.com include:em6968.ibinder.com a -allstrict (-all) - DMARC
-
v=DMARC1; p=nonepolicy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCmhsUqfknv1kd0tm+tL5shRukIRJyD3JYYsZBCPSglfTuB4MPDcmfRqytGgtae3tAH+QBf6xD+WCwlzYUL4v… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoVXqhwpPOAxjd3tplMkWB3aV5Lh6r1abea8lNcxSKYkonSRjpIwxISSSp25BNa+W0xvYdv5nN620uZ6sUF… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq5FUnUF6ssleihtmiJ4rUn7nw47OKbTRctUNYNgiFAHUrHYtxnYIkiz6UKe3paFORd3Pw3W0JvBr2y7Qg1…
selectors probed - selector1:
Certificate (current)
E8
Expires in 65 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
camera=(), microphone=(), geolocation=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'self' data: 'unsafe-inline' 'unsafe-eval' via.placeholder.com *.linkedin.com *.posthog.com *.licdn.com *.google.com *.gstatic.com *.googleapis.com *.google-analytics.com *.msecnd.net *.youtube.com *.vimeo.com *.amazonaws.com *.vimeocdn.com *.cdn.net *.facebook.net *.facebook.com *.umbraco.org *.umbraco.com *.googletagmanager.com *.pardot.com *.reachmee.com *.e-space.se jumoo.co.uk *.clarity.ms *.google.se *.b-cdn.net *.ibinder.com *.akamaihd.net *.wistia.com *.hotjar.com *.pingdom.net *.doubleclick.net *.ytimg.com *.mynewsdesk.com *.leadoo.com *.bing.com *.segment.com *.github.com *.teamwalnut.com *.cognitoforms.com *.cookiebot.com *.googleadservices.com about: blob:; connect-src 'self' ws://*.com ws://*.se *.bing.net *.posthog.com *.akamaihd.net *.wistia.com *.litix.io *.google-analytics.com *.visualstudio.com *.pingdom.net *.umbraco.org *.umbraco.com *.doubleclick.net *.leadoo.com *.oribi.io *.bing.com *.google.com *.clarity.ms *.hotjar.io *.hotjar.com *.googlesyndicatio- strict-transport-security
max-age=31536000