rtx.dk
HTML metadata
Technology
- Server
- Kestrel
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (2)
- consent.cookiebot.com×1
- www.googletagmanager.com×1
Social
Contact
- Address
- RTX A/S , Stroemmen 6, 9400 Noerresundby, Denmark
DNS records live
- NS
-
- ns01.one.com
- ns02.one.com
- MX
-
- 10 rtx-dk.mail.protection.outlook.com
- TXT
-
atlassian-sending-domain-verification=57e312c0-babd-4c6d-a6fe-e86e7c3efdadciscocidomainverification=5a2e672b6f6a13f5ddac569cab06f496d46eb0b0683efb4ed395d336590bbffa
- Verified for
-
- Apple
- Atlassian
- DocuSign
Email authentication strong
- SPF
-
v=spf1 include:spf1.emarketeer.com include:mailgun.org include:spf.protection.outlook.com include:servers.mcsv.net include:spf.mandrillapp.com include:amazonses.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:itdepartment@rtx.dk; adkim=r; aspf=r; pct=100policy: reject (enforced) - DKIM
-
- selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCiNd20ReZsvDUSzIHK71LkWlObPlaBVEcbeCfrAqaRNFxCdmEAilkeMFgzExZui1LCQsFrG4GB9MomKUEB7D… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed - selector2:
Certificate (current)
GlobalSign GCC R3 DV TLS CA 2020
Expires in 267 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'self' cdn.rtx.dk; script-src 'self' 'unsafe-inline' www.googletagmanager.com www.google-analytics.com www.clarity.ms scripts.clarity.ms consent.cookiebot.com consentcdn.cookiebot.com policy.app.cookieinformation.com cdn.rtx.dk via.ritzau.dk www.google.com ajax.aspnetcdn.com cdnjs.cloudflare.com ajax.aspnetcdn.com www.gstatic.com; style-src 'self' 'unsafe-inline' fonts.googleapis.com cdn.rtx.dk; font-src 'self' fonts.gstatic.com data: cdn.rtx.dk; img-src 'self' data: cdn.rtx.dk pagead2.googlesyndication.com www.google.com imgsct.cookiebot.com c.clarity.ms c.bing.com; connect-src 'self' dc.services.visualstudio.com policy.app.cookieinformation.com login.microsoftonline.com *.google-analytics.com pagead2.googlesyndication.com www.google.com consentcdn.cookiebot.com via.ritzau.dk vfzmmwgi.eua.stape.io j.clarity.ms o.clarity.ms; frame-src 'self' policy.app.cookieinformation.com www.googletagmanager.com login.microsoftonline.com via.ritzau.dk consentcdn.cookiebot.com vfzmmwgi.eu- strict-transport-security
max-age=5184000; includeSubDomains; preload