thonhotels.no
HTML metadata
Technology
Third-party hosts loaded (5)
- dam.thon.com×10
- www.thonhotels.com×6
- cdn.dashjs.org×1
- policy.app.cookieinformation.com×1
- www.google.com×1
Social
DNS records live
- NS
-
- ns1.netnames.net
- ns2.netnames.net
- ns5.netnames.net
- ns6.netnames.net
- MX
-
- 10 thonhotels-no.mail.protection.outlook.com
- TXT
-
_5ymmokzqejss5hb9t0va6xv3tyd37i5Oif9mjqAH/POUL1NA8RnA0W42ECnRRmNPVB8wz1yCKMudVi67At3vBgLtEvHvKoVcN0Ovjd89s6pgT1744h6RQ==
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:spf1.olavthon.no include:spf2.olavthon.no include:spf.protection.outlook.com include:_spf.signicat.cloud include:_spf.papirfly.no ip4:34.132.184.222 ip4:34.69.44.134 ip4:35.222.49.21 ip4:35.192.181.145 ip4:149.72.34.240 ip4:205.220.170.197 ip4:205.220.182.197 -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:aptuvbir@ag.eu.dmarcadvisor.com; ruf=mailto:aptuvbir@fr.eu.dmarcadvisor.com; fo=0:1:d:s; pct=100; adkim=r; aspf=spolicy: quarantine - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDfJcai+GUhIoU+DgoLvXM5A09iMMtYT6UODgQ3uZcP4daLTgMScZnCLUwB46toY2xMtwrAG9FS+NTnAr3bbz… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0ky7rKmk0m7J6imFoaONrmoJ4WJ1TK/6xGqjq8Ekq3WThA1S9lyZG1WW+1WaRtJ3lBZ1af5rSJ8UAy… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqsOIqhurWrVCOlXPmdYDJ+6iG2NvhyPpsPpVLSTJ0uTbW8CtjBAxHZqW2KF8JYQ3Nr4oJKiAi0LJ4cy87n… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC3NJq9LS1oQGj/UV7mIRmfdQ6N7oKJiueyeuVt1XZRlRJGnl2U25JknCrVdS9SzoDZogWEgHHHov8pB2tUbpvicS…
selectors probed - selector1:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 179 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy-report-only
- x-frame-options
- permissions-policy
- findings
-
- missing Content Security Policy
- missing content type protection
- missing Referrer Policy
Header values
- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(),autoplay=(),camera=(),display-capture=(),encrypted-media=(),fullscreen=(),geolocation=(),gyroscope=(),hid=(),idle-detection=(),local-fonts=(),magnetometer=(),microphone=(),midi=(),payment=(self "https://apple.com" "https://pay.google.com"),picture-in-picture=(),publickey-credentials-get=(),screen-wake-lock=(),serial=(),usb=(),web-share=(),xr-spatial-tracking=()- strict-transport-security
max-age=31536000; includeSubDomains; preload- content-security-policy-report-only
script-src 'nonce-/yY+VB648fdeYZT4bSHyM9zpeU8bC9RfFAXvixzEKPE=' 'unsafe-eval' 'strict-dynamic' https:; frame-ancestors 'self'; report-uri https://www.thonhotels.no/api/ContentSecurityViolation/; report-to csp-endpoint; object-src 'self'; base-uri 'self'