streetperformance.se
HTML metadata
Technology
- Server
- nginx
- jQuery
- 1.12.0 known XSS (<3.5)
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (8)
- cdn.starwebserver.se×82
- cdn.jsdelivr.net×2
- fonts.googleapis.com×2
- www.googletagmanager.com×2
- www.youtube.com×2
- ajax.googleapis.com×1
- app.weply.chat×1
- www.facebook.com×1
Social
Contact
DNS records live
- NS
-
- dns0.starwebb.se
- dns1.starwebb.se
- MX
-
- 1 aspmx.l.google.com
- 10 aspmx2.googlemail.com
- 10 aspmx3.googlemail.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- Verified for
-
- Meta
Email authentication partial
- SPF
-
v=spf1 a mx include:starwebserver.se include:_spf.specter.se include:spf.gansend.com ip4:52.28.88.208 ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=nonepolicy: none (monitoring only) - DKIM
-
- s1:
v=DKIM1;k=rsa;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwlhJH3jMBEPxp0nsuRkAN7R4YURVcDrp+CfJHwA4EHkf2dtbqfHsOktdrB4vyCpX0vbGb0L3r/Zlben1… - s2:
v=DKIM1;k=rsa;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAgq6yMFvmG46jBuzAwBZM685nDBgB3JD4xymXIp98F0JCekDjznCJz2zZrOUt2qkwn142oJV3zz84Bpxq…
selectors probed - s1:
Certificate (current)
R12
Expires in 36 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- weak frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
ALLOW-FROM https://streetperformance.se https://d2racingsport.se https://streetperformance-butik.se https://creatix.se https://streetperformance.starwebserver.se- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self' https://streetperformance.se https://d2racingsport.se https://streetperformance-butik.se https://creatix.se https://streetperformance.starwebserver.se