varakonserthus.se
HTML metadata
Technology
- CDN
- Vercel
- CMS
- Next.js
- JS framework
- Next.js
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- forms.markethype.io×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- dns1.fastbit.se
- dns2.fastbit.se
- MX
-
- 10 se.mx1.mailanyone.net
- 20 se.mx2.mx25.net
- 30 se.mx3.mailanyone.net
- 40 se.mx4.mx25.net
- TXT
-
jLhJXsCk+ZoXV7iP/3K+eMzdUzjqlYNrJDAR1W0EMeQhDcpp420WRE4427UoCvY4ktwd/MVn6P58CDr4D7Vpew==v=msv1 t=EF211D68-A798-4DAB-84FC-F317D0E2FE02
- Verified for
-
- GlobalSign
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 a ip4:83.223.9.181 ip4:212.247.61.91 ip4:217.78.31.177 ip4:176.57.89.81 a:mail.nordicpeak.com include:spf.mailanyone.net include:_spf.anpdm.com include:sendgrid.net include:spf.protection.outlook.com include:spf.mailjet.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@vara.se, mailto:erpmskup@ag.dmarcian-eu.com; ruf=mailto:dmarc@vara.se; aspf=rpolicy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 44 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
origin- x-frame-options
SAMEORIGIN- permissions-policy
microphone=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' fonts.gstatic.com data: *.api.sanity.io; img-src 'self' data: cdn.sanity.io www.googletagmanager.com varakonserthus.se maps.googleapis.com maps.gstatic.com *.google-analytics.com *.facebook.com *.google.se *.google.com *.linkedin.com i.vimeocdn.com i.ytimg.com; style-src 'self' 'unsafe-inline' policy.app.cookieinformation.com fonts.googleapis.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' policy.app.cookieinformation.com maps.googleapis.com youtube.com www.youtube.com *.vimeo.com www.googletagmanager.com *.google-analytics.com *.facebook.net *.licdn.com *.googleadservices.com *.google.com forms.markethype.io; frame-src biljetter.varakonserthus.se policy.app.cookieinformation.com *.spotify.com *.vimeo.com youtube.com www.youtube.com; frame-ancestors 'self' *.youtube.com localhost:3333 varakonserthus.sanity.studio studio.varakonserthus.se 22110-vara-konserthus-studio.vercel.app 22110-vara-konserthus-studio-git-develop-hoy-multimedia.vercel.app dev-studio.varakon- strict-transport-security
max-age=63072000; includeSubDomains