sodertaljesjukhus.se
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Next.js
Social
Contact
- Phone
DNS records live
- NS
-
- ens1.sll.se
- ens2.sll.se
- Verified for
-
- Microsoft 365
Email authentication no MX
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
WE1
Expires in 78 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(),autoplay=(),camera=(),display-capture=(),encrypted-media=(),fullscreen=(self "https://play.mediaflowpro.com" "https://mfstatic.com" "https://play2.qbrick.com"),gamepad=("*"),geolocation=(),gyroscope=(),magnetometer=(),microphone=(),midi=(),payment=(),picture-in-picture=(self "https://play.mediaflowpro.com" "https://mfstatic.com" "https://play2.qbrick.com"),publickey-credentials-get=(),sync-xhr=(self),usb=(),screen-wake-lock=(),xr-spatial-tracking=()- x-content-type-options
nosniff- content-security-policy
default-src 'none'; script-src 'self' 'nonce-G3aU8sSI4hQwM9OJ4nAl4fFmsLXJoYLjvjojMWVQvRg=' 'strict-dynamic' 'unsafe-inline' 'wasm-unsafe-eval' siteimproveanalytics.com az416426.vo.msecnd.net *.arcgis.com; connect-src 'self' 'nonce-G3aU8sSI4hQwM9OJ4nAl4fFmsLXJoYLjvjojMWVQvRg=' https://dev.visualwebsiteoptimizer.com *.qbrick.com wss://notification.qbrick.com *.mediaflow.com mfstatic.com https://cdn.developer.sas.com publikhsf-regionstockholm.saasnow.com *.dna.ip-only.net *.arcgis.com *.arcgisonline.com dc.services.visualstudio.com az416426.vo.msecnd.net *.dna.contentdelivery.net *.dna.qbrick.com; style-src 'self' 'unsafe-inline' code.jquery.com https://cdn.developer.sas.com *.arcgis.com ssl.webserviceaward.com play2.qbrick.com; img-src 'self' blob: data: mfstatic.com *.mediaflow.com *.mediaflowpro.com *.global.siteimproveanalytics.io https://dev.visualwebsiteoptimizer.com *.dna.ip-only.net *.inviewer.se cdn.developer.sas.com *.arcgis.com ssl.webserviceaward.com play2.qbrick.com *.dna.con- strict-transport-security
max-age=31536000; includeSubDomains; preload
Links to (4)
Linked from (1)
- otimo.se×1