tallink.com
HTML metadata
Technology
- CDN
- Vercel
- CMS
- Next.js
Social
Registration
- Registrar
- EuroDNS S.A.
- Created
- 2001-08-11
- Expires
- 2026-08-11 82 days left
- Updated
- 2025-07-16
- Name servers
-
- sec1.rcode0.net
- sec2.rcode0.net
DNS records live
- NS
-
- sec1.rcode0.net
- sec2.rcode0.net
- MX
-
- 10 smtp1.tallink.com
- 10 smtp2.tallink.com
- Verified for
-
- Apple
- Atlassian
- Meta
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 mx ip4:91.195.246.56/31 ip4:91.195.246.58 include:spf.protection.outlook.com include:messages.tallink.com include:_spf.qualtrics.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc.report@tallink.compolicy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAspEyyNrDzjrHiEbFQD7GBCtZL2OJkl+8r6qYjz8WASMaj1xkhdlEwxC4kNvqk2KFd5GUf38LxWr9uL…
selectors probed - selector1:
Certificate (current)
R12
Expires in 78 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'none'; script-src 'self' 'unsafe-eval' 'unsafe-inline' http://*.crazyegg.com http://*.typeform.com https://*.adcell.com https://*.adform.net https://*.bing.com https://*.clarity.ms https://*.facebook.net https://*.fleet.zone https://*.google.com https://*.googleapis.com https://*.googletagmanager.com https://*.gstatic.com https://*.licdn.com https://*.noknok.ee https://*.tallink.com https://*.useinsider.com https://vercel.live; style-src 'self' 'unsafe-inline' https://*.fleet.zone https://*.googleapis.com https://*.googletagmanager.com https://*.linkedin.com https://*.tallink.com https://*.typeform.com https://*.useinsider.com; img-src 'self' blob: data: https://*.bing.com https://*.chatlayer.ai https://*.cision.com https://*.clarity.ms https://*.cloudinary.com https://*.demdex.net https://*.doubleclick.net https://*.everesttech.net https://*.facebook.com https://*.facebook.net https://*.google.com https://*.google.ee https://*.googleapis.com https://*.googletagmanager.com- strict-transport-security
max-age=63072000; includeSubDomains; preload
Links to (6)
- apple.com×2
- facebook.com×2
- google.com×2
- instagram.com×2
- linkedin.com×2
- youtube.com×2