svenskadownforeningen.se
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress 5.9.11 legacy (latest 7.0)
- jQuery
- 3.4.1 known XSS (<3.5)
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (5)
- cdnjs.cloudflare.com×2
- www.facebook.com×2
- www.googletagmanager.com×2
- s.w.org×1
- use.typekit.net×1
Contact
DNS records live
- NS
-
- ns1.loopia.se
- ns2.loopia.se
- MX
-
- 10 svenskadownforeningen-se.mail.protection.outlook.com
- TXT
-
include:144082744.spf02.hubspotemail.net
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:spf.fouredge.se -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; pct=100; rua=mailto:dmarc@itccloud.se; ruf=mailto:dmarc@itccloud.se; fo=1policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDI2DT+rDzVvXUNInDt9TaW4VCyGSNXWj2KPadtdIPrnh/sDibTrxZMpm9vxjHZNb4uDaQ2FsKne70lXj+Qi/…
selectors probed - selector1:
Certificate (current)
R13
Expires in 79 days
HTTP security headers
- present
-
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- missing HSTS
- missing Content Security Policy
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff, nosniff, nosniff- content-security-policy-report-only
default-src 'self' 'unsafe-inline' 'unsafe-eval' data: ; script-src 'self' 'unsafe-inline' 'unsafe-eval' cdnjs.cloudflare.com connect.facebook.net google-analytics.com www.google-analytics.com ssl.google-analytics.com stats.g.doubleclick.net www.googletagmanager.com googletagmanager.com tagmanager.google.com; style-src 'self' 'unsafe-inline' data: use.typekit.net static.typekit.com p.typekit.net p.typekit.com www.googletagmanager.com tagmanager.google.com; img-src 'self' data: secure.gravatar.com www.gravatar.com data: blob: google-analytics.com www.google-analytics.com ssl.google-analytics.com www.google.com i.ytimg.com www.googletagmanager.com; connect-src 'self' www.google-analytics.com stats.g.doubleclick.net ampcid.google.com analytics.google.com about: www.googletagmanager.com; font-src 'self' data: use.typekit.net static.typekit.com data:; frame-src 'self' www.youtube.com www.googletagmanager.com; child-src 'self' www.youtube.com www.googletagmanager.com; report-uri https://www.
Links to (1)
- voky.com×1