sydtrafik.dk
HTML metadata
Technology
Third-party hosts loaded (5)
- static.moliri.dk×16
- cdn.moliri.dk×5
- cdnjs.cloudflare.com×2
- cookiecontrol.bleau.dk×2
- cdn.jsdelivr.net×1
Social
DNS records live
- NS
-
- dns1.cscdns.net
- dns2.cscdns.net
- MX
-
- 0 sydtrafik-dk.mail.protection.outlook.com
- TXT
-
Show 5 TXT records
_vuuykmh1uyc8k1g04ni3ck03o97v4u1_5akvfcgynmi3ylh3znzbkvwibdyjigv_xwhc309oyi1oruz7bss00d12multcqj_bm0kh7vuv9cru6nrg6jiwk4e2bd0vv4jzqBFGhSCOmS2vMf3V9OJ2caZpTIEumCOb9pbva9qDFRnFirZXZQX2kHpbB1EEOrrGqS0mUlT1/terOrGWzR8g==
- Verified for
-
- GlobalSign
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 mx ip4:87.54.30.162 ip4:91.221.142.0/23 ip4:94.137.135.229 ip4:193.104.43.183 ip4:87.54.58.106 ip4:80.63.104.65 ip4:87.54.30.174 ip4:13.69.85.119 ip4:176.22.240.12 include:spf.protection.outlook.com include:spf.unit-it.dk include:mailmailmail.net include:dedicated.mysmtp.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc@sydtrafik.dk; ruf=mailto:dmarc@sydtrafik.dk; fo=1policy: quarantine - DKIM
-
- default:
v=DKIM1;k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDOMLam6Vl8kWmFqEMyb7/DhAEqIpyiIkQBiy/zEXziRs7yWDW0xZnhA0RhByIYV3+ty7M/RhzYYdDyBQRR02Zu… - selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDYoIOcnnTQP0dWMPmNpHYtMQ/2N2sac/JSWrqS1x+Wuy5oZm/6o/dH6VPsiPlqOX79KYYCa1lkGUGDjk0gVC…
selectors probed - default:
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 76 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- permissions-policy
accelerometer=(self), camera=(self), geolocation=(self), gyroscope=(self), magnetometer=(self), microphone=(self), payment=(self), usb=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'self' fonts.gstatic.com fonts.googleapis.com static.moliri.dk *.azure.com *.google-analytics.com *.doubleclick.net data: www.gstatic.com statservicefunctions.azurewebsites.net hearingportalfilestorage.blob.core.windows.net cookiecontrol.bleau.dk *.devtunnels.ms api-eu1.cludo.com *.moliri.dk dawa.aws.dk cdn.jsdelivr.net cdnjs.cloudflare.com moliricdn.azurewebsites.net publictransportapi-prod.azurewebsites.net publictransportapi-prod-pipeline-staging.azurewebsites.net localhost:7277;style-src 'self' 'unsafe-inline' fonts.googleapis.com cdhsign.dk cdnjs.cloudflare.com unpkg.com static.moliri.dk customer.cludo.com *.gstatic.com npmcdn.com moliricdn.azurewebsites.net app.marketingplatform.com;script-src 'self' 'unsafe-inline' *.moliri.dk *.bleau.dk *.cludo.com *.gstatic.com *.monsido.com moliricdn.azurewebsites.net *.azure.com cdn.jsdelivr.net cookiecontrol.bleau.dk *.devtunnels.ms *.siteimproveanalytics.com dawa.aws.dk moliricdn.azurewebsites.net ajax.googleapis.com app.market- strict-transport-security
max-age=31536000; includeSubDomains; preload