suntarbetsliv.se
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress 6.9.4
- PHP
- 8.3.31 security-only
- jQuery
- 2.2.4 known XSS (<3.5)
- Analytics
-
- Cloudflare Insights
Third-party hosts loaded (3)
- code.jquery.com×3
- cdnjs.cloudflare.com×2
- static.cloudflareinsights.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- eleanor.ns.cloudflare.com
- marvin.ns.cloudflare.com
- MX
-
- 10 suntarbetsliv-se.mail.protection.outlook.com
- TXT
-
crmservice-email-verification=004060ff5186d6c81f4cf1df2a6bd37afa2bed11crmservice-email-verification=dab8a78f298c006a8001c6e5fea49733092d65cdTest
- Verified for
-
- Atlassian
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:_spf.ungapped.email include:sendgrid.net include:spf.crmservice.fi ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:b260c8602b9541a0955874fbcdd9d12e@dmarc-reports.cloudflare.net,mailto:it.systemadministrator@suntarbetsliv.se,mailto:dmarc_agg@vali.email;policy: quarantine - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDKZ7G9dn5LjMh7V42PpqvuoNT2FLdLkpXq3TNyzRSrATC1xfkh9RaOrxOIC9La4LZ0LvSD3oWbJTrhKsXY87… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3omwD21kl96Blcvspm79KdSCGUQeicT8TRNqjRG427M+gcH97vQXeBzVbfXX2cvFbvohqOjRz+Whj1… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAu+LZcLwjTbuTaMcyHdbk1yPGprOUoBDbxpjKdYTh4sIw9hUCCymjQrqXWHM0529YPaDXz1LKOs6Cdm7eRK… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC+67VZFXxVZKdDXYXhgsQAlXpQxnG4DrgCvXvTHlyXHFpGtRGZBEZQmfykiKf8sQpt4bB8iqJppZ8dgPH+fmoP2V…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 33 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-content-type-options
nosniff- content-security-policy
default-src * 'unsafe-inline' 'unsafe-eval' data: blob:; frame-ancestors 'self' https://*.stratsys.com;- strict-transport-security
max-age=31536000
Links to (14)
- youtube.com×1
- vision.se×1
- vardforbundet.se×1
- sverigeslarare.se×1
- sobona.se×1
- slf.se×1
- skr.se×1
- saco.se×1
- linkedin.com×1
- ledarna.se×1
- kommunal.se×1
- instagram.com×1
- facebook.com×1
- akademssr.se×1