skapa.se

.se crawl

First seen 2026-05-30 · Last seen 2026-05-30 · ok HTTP/1.1 200 240 ms crawled 2026-05-31

SE · 217.28.206.31 · AS34385 Tripnet AB

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
Skapa - Development, Content and Communication
Description
Skapa is a full-service digital agency, dedicated to content marketing, SEO, full stack system development and web development.
Language
en-US
Generator
WordPress 7.0
Canonical
https://skapa.se/

Open Graph

url
https://skapa.se/
title
Start
locale
en_US
site name
Skapa
description
Skapa is a full-service digital agency, dedicated to content marketing, SEO, full stack system development and web development.

Technology

Server
nginx
CMS
WordPress 7.0
PHP
8.3.30 security-only
jQuery
3.7.1
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts

Third-party hosts loaded (6)

  • cdnjs.cloudflare.com×3
  • fonts.googleapis.com×3
  • cdn.jsdelivr.net×2
  • www.googletagmanager.com×2
  • fonts.gstatic.com×1
  • gmpg.org×1

Social

Contact

Email
Phone

DNS records live

NS
  • ns1.tripnet.se
  • ns2.tripnet.se
  • ns3.tripnet.se
  • ns4.tripnet.se
MX
Show 6 MX records
  • 1 aspmx.l.google.com
  • 10 aspmx2.googlemail.com
  • 11 aspmx3.googlemail.com
  • 20 skapa-se.mail.protection.outlook.com
  • 5 alt1.aspmx.l.google.com
  • 6 alt2.aspmx.l.google.com
TXT
  • l75fdbqpxqq13fr644stbf985b4rmd0v
  • 2017082913021202qyalsvkpm6hewlh26ao5j37ro9xkxwfcozk46a12n8z0v8yr
Verified for
  • Microsoft 365

Email authentication strong

SPF
v=spf1 include:_spf.google.com include:spf.protection.outlook.com ip4:217.28.204.8 ip4:217.28.202.8 ~all
softfail (~all)
DMARC
v=DMARC1; p=quarantine; rua=mailto:dmarcreports@skapa.se; aspf=s;
policy: quarantine
DKIM
  • google: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3mnkIGZ2QKSVPTD6b+iO0bnD26bP8ka6uDhsAKanYZCi1DzZsoSgN6DcFznhMjNwG0c1ojPZLNlW8u…
selectors probed

Certificate (current)

E7
from 2026-05-19 to 2026-08-17
Expires in 77 days

HTTP security headers

Header hygiene 45/100 Checked live page: https://skapa.se/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' https://cdn.jsdelivr.net/npm/slick-carousel@1.8.1/slick/slick.min.js; img-src 'self' data: ; object-src 'self' data: https://www.google.com/maps/ https://www.google.com/; frame-src 'self' data: https://www.google.com/maps/ https://www.google.com/;

Links to (2)

Linked from (2)