venienergia.fi
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (6)
- www.gu-veni.de×2
- www.venienergy.com×2
- www.eneas.no×1
- www.eneas.se×1
- www.googletagmanager.com×1
- www.novaluz.es×1
Contact
- Phone
Registration
- Created
- 2017-12-11
- Name servers
-
- ns01.no.brand.one.com [ok]
- ns02.no.brand.one.com [ok]
DNS records live
- NS
-
- ns01.no.brand.one.com
- ns02.no.brand.one.com
- MX
-
- 10 venienergia-fi.mail.protection.outlook.com
- Verified for
-
- Anthropic
- GlobalSign
- Microsoft 365
- Miro
Email authentication strong
- SPF
-
v=spf1 ip4:62.92.61.35 include:_spf.online.superoffice.com include:spf.protection.outlook.com include:sendgrid.net -allstrict (-all) - DMARC
-
v=DMARC1;p=quarantine;rua=mailto:dmarc-reports@venienergia.fipolicy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtGKlp1fYWXPIGRIU47LS8fDG/VwSot3H0VpQdbHDRFu40p9ypK5V0fVkESIU6rDOEEy4PaqCheiNOa… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuOXKMyAUxqckciawXewMZ81vSGhjW3jJVKXkG1Ze5pJGC/MEiIBPsjq69Q3Pc+YudKn0A+mzv1Fih0FRZe… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDZRWsKfePBwFiIFmQRBceUWIHAdOJ9JS/xh9ik81DKHWDJfDMro477S9aTwOHbV9woGtfHBvThgNsM3YRDyhhqej…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 85 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- permissions-policy
publickey-credentials-get=(), xr-spatial-tracking=(), screen-wake-lock=(), cross-origin-isolated=(), web-share=(), picture-in-picture=(), keyboard-map=(), encrypted-media=(), display-capture=(), usb=(), serial=(), payment=(), midi=(), microphone=(), magnetometer=(), geolocation=(), camera=(), fullscreen=(), autoplay=(), accelerometer=()- x-content-type-options
nosniff- content-security-policy
script-src https://js.monitor.azure.com 'unsafe-inline' 'unsafe-eval' https://*.googletagmanager.com *.cookieinformation.com https://*.google-analytics.com https://veganalytics.eu.qlikcloud.com https://cdn.qlikcloud.com 'self'; frame-src *.youtube.com *.microsoftonline.com *.vimeo.com *.qlikcloud.com *.cookieinformation.com 'self'; connect-src https://dc.services.visualstudio.com https://js.monitor.azure.com https://sqs.us-east-1.amazonaws.com https://app.launchdarkly.com https://api.qlikdataengineering.com https://events.launchdarkly.com https://cdn.qlikcloud.com wss://qlikcloudproxy.azurewebsites.net https://login.microsoftonline.com/ https://localhost:9842 *.cookieinformation.com wss://qapapi.venienergy.com:* *.applicationinsights.azure.com https://qapapi.venienergy.com:* https://veganalytics.eu.qlikcloud.com wss://veganalytics.eu.qlikcloud.com https://*.google-analytics.com https://metering-api-d9fyd0dbehggfzgu.norwayeast-01.azurewebsites.net https://faro-collector-prod-eu-west-2.g- strict-transport-security
max-age=5184000; includeSubDomains; preload