umea.se
HTML metadata
Technology
- CMS
- WordPress
- Stack
- Java
Third-party hosts loaded (1)
- insipio.com×1
Contact
- Phone
- Address
- Umeå kommunSkolgatan 31ALänk till annan webbplats, öppnas i nytt fönster.901 84 Umeå090-16 10 00E-post umea.kommun@umea.seFrågor, felanmälan och synpunkter
DNS records live
- NS
-
- dns1.net.umea.se
- ns3.umea.se
- ns4.umea.se
- ns5.umea.se
- secdns2.net.umea.se
- MX
-
- 3 umea-se.mail.protection.outlook.com
- TXT
-
Show 5 TXT records
_ddvzzvftspuxm5ipsp4mlul3oclcfc06FIsnxod792HC6xX+Wjulv4KvdCT8AY+HDxJ1xLA8eXKM6Ge1ghcxjyB5adn9LZX/KMwXVU6on/ioLasQjbCpg==_yraipr6tij708a0zl3siegceka4497zwsbnd1w4wjzs6fdcdrz5wz98mg4rcclw_jbmels12to1b4ybxmf72eyeks7b2qpg
- Verified for
-
- Adobe
- Apple
- Meta
Email authentication strong
- SPF
-
v=spf1 include:_spf.umea.se ip4:91.123.56.128 include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:ojkvntm0@ag.eu.dmarcadvisor.com;policy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCa2yUqIoPLw5wVIbg1piUnEhuLE4+Vfiwqu1OC5jbX+99gDTbmq7Nv5D0wPzjOIDNGtiLnFCTQ9VzPAHBCH7… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxV0mC+lvUNsCOF+Rs5LbrkhEWHJd1qedjqZP1PE1C5tSnNq8zCtzkCxWkZeS6zf0OFC8IGeJ4jJ4Zg… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAs2G2WFG6y3iP63KTMAWOW+LWlYqtJxxi7KzmZsqNTyKaiqcoRQEFu9mUlJiVDlW1QQDEUbH61sTdvIT192… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCYPXglEOq/42w85o6PeOI0w+cdxBCzSAFW2mDw3acv8/PqBOqwT39SBcH9gUK0OI/J7sBtrqjpSPsRW0oyLq/nSO…
selectors probed - selector1:
Certificate (current)
R13
Expires in 68 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-content-type-options
nosniff- content-security-policy
default-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://insipio.com https://cdn.vizzit.se https://tag.vizzit.se https://chat.umea.se https://unpkg.com/ https://umea.mynewsdesk.com/ https://player.vimeo.com/ https://maps.google.com/ https://maps.googleapis.com/; style-src 'self' 'unsafe-inline' https://chat.umea.se https://insipio.com https://*.vizzit.se https://fonts.googleapis.com/; img-src 'self' data: https://insipio.com https://alltomvasterbotten.se https://cdn.varbi.com https://*.vizzit.se https://admin.ungdomsappen.se https://maps.gstatic.com/ https://maps.google.com/ https://www.w3.org/; connect-src 'self' https://spoxy8.insipio.com https://www.vizzit.se https://ume-app-aichat-prod.azurewebsites.net https://api.friendlycaptcha.com/ https://fritid-api.umea.se/ https://*.vizzit.se https://maps.googleapis.com/; font-src 'self' https://chat.umea.se https://fonts.gstatic.com/; media-src 'self' https://spoxy8.insipio.com; frame-src 'self' https://*.umea.se- strict-transport-security
max-age=31536000; includeSubDomains; preload