ri.se
HTML metadata
Technology
- Server
- baffin-bay-inlet
- CMS
- Drupal
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Contact
DNS records live
- NS
-
- nx1.ri.se
- nx2.ri.se
- nx3.ri.se
- nx4.ri.se
- sunic.sunet.se
- MX
-
- 0 ri-se.mail.protection.outlook.com
- TXT
-
Show 10 TXT records
MS=ms21953153gad4o68ab7jlqg29nalm6fhn99dd16f808c91377f77e5bd36f2eea605fdropbox-domain-verification=65ih36gntj0dhibp-verify=dweb_r0da4tza0bmbvf3xgj513gbtOrt/zXfIEOWFsDEmpBAfm9ZQQV3X86hq7amMNcnEBYY=bw=cjxMZju34BwNPLEXJIrHmWttsdXizjI4AKF7eozljAqAfacebook-domain-verification=ke1q4t8audzw5sveoaqm7l6mp63v04pc9YE3loTjLB25yVJZPYdLAWQWzEy3/y+otO+cE7qFzD/mMBnVDtFdzmk0operjLpZrOS4/wjWFtiHiQttff8g==hpe-greenlake-domain-verification=5346456c7a754f576e484d46524d4a46486c576a4b4e397046393164544d7272
Email authentication strong
- SPF
-
v=spf1 include:spfa.ri.se a:mail10.luvit.se include:spf.protection.outlook.com include:servers.mcsv.net ip4:144.208.214.205 ip4:213.80.124.76/30 -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:hjnordl7@ag.eu.dmarcian.com; ruf=mailto:hjnordl7@fr.eu.dmarcian.com;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvtOMjpzkTznMtg/9RD7sVrnn8QqKqP446z4Kt1i6QmbsHTbE+d+JNTdn8gW7ql8NzjEHaoq4Qb/6n0… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwK05dUcl+hv3pEkGsDmD5xW8gE/60n9eka1NX2WpyJRm0aubmTbOXUAeD+GrGrOIy4Sf7sZpYImRoa… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed - selector1:
Certificate (current)
E8
Expires in 34 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.hotjar.com *.googletagmanager.com *.google.com *.google-analytics.com cdnjs.cloudflare.com mfstatic.com *.jsdelivr.net *.facebook.com *.gstatic.com *.licdn.com *.facebook.net *.cookiebot.com *.unpkg.com unpkg.com static.ws.apsis.one *.ws.apsis.one *.aspis.one static.ws.apsis.one *.contentsquare.net; object-src 'self' *.google.com *.youtube.com *.facebook.com *.vimeo.com; style-src 'self' 'unsafe-inline' cdnjs.cloudflare.com *.jsdelivr.net hello.myfonts.net mfstatic.com; img-src * 'self' data: *.google.com *.youtube.com *.facebook.com *.vimeo.com *.vimeocdn.com *.ri.se *.jsdelivr.net *.googletagmanager.com *.google-analytics.com *.google.se *.linkedin.com *.gstatic.com *.amazonaws.com; media-src 'self' blob: data: *.mediaflow.com; frame-src 'self' data: *.google.com *.youtube.com *.facebook.com *.vimeo.com vimeo.com *.vimeo.com *.vimeocdn.com *.ri.se *.jsdelivr.net *.hotjar.com *.libsyn.com *.acast.com *.cooki- strict-transport-security
max-age=15552000; includeSubDomains, max-age=14515200