retuna.se
HTML metadata
Technology
Third-party hosts loaded (2)
- cdnjs.cloudflare.com×2
- cdn.cookietractor.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1.abedns.se
- ns2.abedns.se
- ns3.abedns.net
- ns4.abedns.net
- MX
-
- 10 se.mx1.mailanyone.net
- 20 se.mx2.mx25.net
- 30 se.mx3.mailanyone.net
- 40 se.mx4.mx25.net
- TXT
-
Show 4 TXT records
cykcns2bkl8jnf5kj2bpyw7f2mysx68yPRYmZmNolN6RFWDKcSUE8rjFDcJhTIzHlctmeCaSFjvFlDIfSA5kvugl8Vuxvk99LFfhjJTI6mXjfiFWAoEInQ==6cc159jj2zlq3p6swz8d61sgt4dx3ndzyEdAhQrtgWlqLTgJOHi3Mop1XoGQKF8TEqgpzHjYgNQm11YVdhsHFj6pTZ4u1lXM+6CkWnseOmYPEZlqTyy3KQ==
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:_spf.staysecuregroup.com include:spf.protection.outlook.com include:_spf.jupiter.salesmanago.pl -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:ru4wp572@rua.eu.dmarcmanager.apppolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzTpNArbgg2nZ3cbE6LDgYvYZyDtWBN9n3Q2WlUA/ALLDbcYkMJZyd6t4+fnyzAtThzaS9hqI5hf5NC…
selectors probed - selector1:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 146 days
HTTP security headers
- present
-
- content-security-policy
- x-content-type-options
- permissions-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
Header values
- permissions-policy
accelerometer=(), autoplay=(), camera=(), display-capture=(), encrypted-media=(), fullscreen=*, geolocation=(), gyroscope=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=(), publickey-credentials-get=(), sync-xhr=(self), usb=(), screen-wake-lock=(), web-share=(), xr-spatial-tracking=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; font-src 'self' *.gstatic.com *.typekit.net *.bootstrapcdn.com; style-src 'self' *.googleapis.com 'unsafe-inline' *.typekit.net *.cloudflare.com *.esem.se; script-src 'unsafe-inline' 'self' *.google-analytics.com *.googleapis.com *.retuna.se *.esem.se 'unsafe-eval' *.googletagmanager.com *.cloudflare.com *.cookietractor.com; img-src 'self' data: *.google-analytics.com *.googleapis.com *.ytimg.com *.vimeocdn.com *.cision.com *.gstatic.com *.google.se *.google.com; connect-src 'self' *.google-analytics.com noembed.com *.googleapis.com *.google.com *.doubleclick.net *.esem.se *.cookietractor.com; frame-src 'self' *.youtube.com *.vimeo.com *.google.com; worker-src 'self' blob:; manifest-src 'self'; media-src 'self'
Links to (4)
- eem.se×1
- facebook.com×1
- instagram.com×1
- linkedin.com×1