vastervik.se

.se crawl

First seen 2026-06-02 · Last seen 2026-06-02 · ok HTTP/1.1 200 570 ms crawled 2026-06-02

SE · 217.114.94.2 · AS30811 Optimizely AB

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Västerviks kommun - Västerviks kommun
Description
Välkommen till Västerviks kommuns officiella webbplats vastervik.se. Här hittar du information om kommunens tjänster och verksamhet.
Language
sv
Generator
EPiServer

Technology

CDN
Cloudflare

Social

Contact

Email
Phone

DNS records live

NS
  • dns5.telia.com
  • dns6.telia.com
  • ns1.vastervik.se
  • origo.nmugroup.com
  • unit.nmugroup.com
MX
Show 6 MX records
  • 10 se.mx1.mailanyone.net
  • 20 se.mx2.mx25.net
  • 30 se.mx3.mailanyone.net
  • 40 se.mx4.mx25.net
  • 50 vastervik-se.mx1.staysecuregroup.com
  • 60 vastervik-se.mx2.staysecuregroup.net
TXT
  • ImKU0dlwrZEQRkFck9tKfqupaHSyZgQe7tmGjCX8tJTjDYh/6iuBHEWt1LpjZKh5v1k/Y2bk1ZKTBMbUDVgQdw==
Verified for
  • Apple
  • Google
  • Microsoft 365

Email authentication partial

SPF
v=spf1 include:_spfa.vastervik.se include:_spfb.vastervik.se ~all
softfail (~all)
DMARC
v=DMARC1; p=none; rua=mailto:dmarcreports@vastervik.se; ruf=mailto:dmarcreports@vastervik.se;
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificates

Loading certificate

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.vastervik.se/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
deny
x-content-type-options
nosniff
content-security-policy
default-src 'none' ; script-src 'self' 'unsafe-inline' js.monitor.azure.com analytics.vastervik.se www.browsealoud.com static.rekai.se cdn.siteimprove.net www.googletagmanager.com docs.netpublicator.com mfstatic.com connect.facebook.net web103.reachmee.com files.imbox.io apiv2.imbox.io; style-src 'self' 'unsafe-inline' fonts.googleapis.com episerver.net mfstatic.com; img-src 'self' data: *.mediaflowpro.com *.mediaflow.com episerver.net *.inviewer.se static.xx.fbcdn.net www.facebook.com www.browsealoud.com; connect-src 'self' data: dc.services.visualstudio.com analytics.vastervik.se www.browsealoud.com plus.browsealoud.com speech-eu.speechstream.net static.rekai.se predict.rekai.se m.mediaflow.com mfstatic.com view.rekai.se google-analytics.com v6.mediaflow.com stats.mediaflow.com www.facebook.com region1.google-analytics.com; font-src 'self' fonts.gstatic.com episerver.net mfstatic.com; object-src 'none' ; media-src 'self' blob: *.mediaflow.com *.mediaflowpro.com mfstatic.com *.inviewe
strict-transport-security
max-age=31536000;

Links to (6)

Linked from (1)