senabeikeland.no
HTML metadata
Technology
- CMS
- Next.js
Social
DNS records live
- NS
-
- ns1.hyp.net
- ns2.hyp.net
- ns3.hyp.net
- MX
-
- 10 senabeikeland-no.mail.protection.outlook.com
- TXT
-
836642843ED2947727218FB28CDF0AF27D8D3AA497550855167D3FC29E62DB01ca3-aa637116be7c444baa7130868baffb41msfpkey=7fyemhj3juga10xygchyy98jt
- Verified for
-
- Apple
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 mx ip4:185.73.27.245 ip4:79.160.252.120/29 ip4:185.7.61.111 ip4:178.21.132.11 ip4:178.21.132.106 ip4:185.91.65.148 ip4:185.91.65.157 ip4:77.241.98.173 include:_spf.online.superoffice.com include:spf.smtp2go.com include:mailgun.org include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc@magnar-eikeland.no; ruf=mailto:dmarc@magnar-eikeland.no; fo=1policy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCVDKPnXt6uT2RUR7E6oxRZN2RjYQs+2rweJFp5y43m3HeQoSXvEXkc/g3P3uMlN+fXl6hKK4UvDNZCTKjUyv… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDzGkkSzLb+UMeiQy+UXUS73abD4dcuXO/Y5T+ex8zATmwhcNe5iLaAgpFBqrYaUGfYb+Q/tzg2c7Cr5cRUL3…
selectors probed - selector1:
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 75 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
camera=(), microphone=(), geolocation=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-eval'; media-src 'self' cdn.sanity.io; frame-ancestors 'self' localhost:3000 https://senabeikeland.no; frame-src 'self' *.youtube-nocookie.com *.youtube.com player.vimeo.com www.google.com; font-src 'self' fonts.gstatic.com *.hotjar.com; img-src 'self' data: maps.googleapis.com maps.gstatic.com www.facebook.com *.hotjar.com ssl.google-analytics.com stats.g.doubleclick.net avatars.githubusercontent.com cdn.sanity.io; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.hotjar.com; script-src-elem 'self' 'unsafe-inline' cdn.jsdelivr.net connect.facebook.net maps.googleapis.com player.vimeo.com s.ytimg.com www.youtube.com ssl.google-analytics.com static.hotjar.com www.googletagmanager.com www.google.com www.gstatic.com; style-src 'self' 'unsafe-inline' *.hotjar.com; style-src-elem 'self' 'unsafe-inline' fonts.googleapis.com; connect-src 'self' txz1g84y.api.sanity.io 78h20af6.api.sanity.io *.algolia.net *.algolianet.com *.algolia.io www.facebook.com www.google.com *- strict-transport-security
max-age=63072000; includeSubDomains; preload
Links to (4)
- sanity.io×1
- office.com×1
- linkedin.com×1
- instagram.com×1