sokoshyvaolooulu.fi
HTML metadata
Technology
- CDN
- Amazon CloudFront
- CMS
- Next.js
Third-party hosts loaded (1)
- cdn.s-cloud.fi×12
Social
Registration
- Created
- 2022-05-19
- Name servers
-
- ns-865.awsdns-44.net [ok]
- ns-1088.awsdns-08.org [ok]
- ns-41.awsdns-05.com [ok]
- ns-1949.awsdns-51.co.uk [ok]
DNS records live
- NS
-
- ns-1088.awsdns-08.org
- ns-1949.awsdns-51.co.uk
- ns-41.awsdns-05.com
- ns-865.awsdns-44.net
Email authentication no MX
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
Amazon RSA 2048 M01
Expires in 144 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- cross-origin-opener-policy
- cross-origin-embedder-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'nonce-ZGM0MjRjN2ItYjYwMi00ODA0LTlkODUtYjdlZjYxMWJkMzQ3' 'strict-dynamic' 'unsafe-eval'; script-src-attr 'none'; style-src 'self' 'unsafe-inline' *.typekit.net https://fonts.googleapis.com https://googletagmanager.com https://ninchat.com https://tagmanager.google.com https://www.juicer.io; img-src 'self' blob: data: https://*.facebook.com https://*.facebook.net https://*.g.doubleclick.net https://*.google-analytics.com https://*.google.com https://*.googletagmanager.com https://*.s-cloud.fi https://*.usercentrics.eu https://ad.doubleclick.net https://ade.googlesyndication.com https://adservice.google.com https://assets.juicer.io https://google.com https://google.fi https://googleads.g.doubleclick.net https://googletagmanager.com https://i.ytimg.com https://ninchat.com https://pagead2.googlesyndication.com https://ssl.gstatic.com https://www.google.com https://www.google.fi https://www.googleadservices.com https://www.googletagmanager.com https://ww- strict-transport-security
max-age=15552000; includeSubDomains- cross-origin-opener-policy
same-origin- cross-origin-embedder-policy
unsafe-none- cross-origin-resource-policy
same-origin
Links to (6)
- s-ryhma.fi×1
- s-kanava.fi×1
- phorest.com×1
- instagram.com×1
- facebook.com×1
- arina.fi×1
Linked from (1)
- arina.fi×1
sokoshyvaolooulu.fi