vismaonline.com

.com crawl

First seen 2026-05-30 · Last seen 2026-06-02 · ok HTTP/1.1 200 239 ms crawled 2026-05-31

US · 104.18.38.185 · AS13335 Cloudflare, Inc.

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
Visma Online
Language
en

Technology

CDN
Cloudflare

Registration

Registrar
Name SRS AB
Created
2006-05-17
Expires
2027-05-17 346 days left
Updated
2026-04-18
Name servers
  • norman.ns.cloudflare.com
  • saanvi.ns.cloudflare.com

DNS records live

NS
  • norman.ns.cloudflare.com
  • saanvi.ns.cloudflare.com
MX
  • 10 mx.sendgrid.net
TXT
  • 2z9vsz7pk9tjnytp5chghk8t7x7wjgng
  • 48784008bdcf4a3c8c47bed693735ec1
  • r127q3scu5sr1a9t4vs8jtp19c
Verified for
  • Google

Email authentication strong

SPF
v=spf1 include:sendgrid.net -all
strict (-all)
DMARC
v=DMARC1; p=reject; rua=mailto:ingawkoj@rua.excedo.services;
policy: reject (enforced)
DKIM
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA9OCpNzWng4X3nWYqVSMDL8KcWmVXeUhxZlHwC0gvBsHPdkUGwAkOSEuKEL3q0u6HAWL0OkJwjx/xIUx4+i…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDJoCjP4s+7yldvXkjRqE8KWjydFjkx8cJk9+HmF+lWz5Ad31dyMqh7xR1LFJ96+UamMR9PlzZ/XJmhmXWrp2lbPv…
  • smtpapi: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed

Certificate (current)

WE1
from 2026-05-11 to 2026-08-09
Expires in 66 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://www.vismaonline.com/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
default-src 'self' https://*.vismaonline.com https://zvpknzcr6znl.statuspage.io; base-uri 'self'; form-action 'self'; frame-ancestors 'self' https://*.vismaonline.com; frame-src 'self' https://*.vismaonline.com blob: data:; object-src 'self' data:; script-src 'self' 'unsafe-inline' https://zvpknzcr6znl.statuspage.io https://*.vismaonline.com https://dc.services.visualstudio.com https://*.survicate.com https://*.survicate-cdn.com; style-src 'self' 'unsafe-inline' https://*.vismaonline.com https://*.survicate.com https://*.survicate-cdn.com; font-src 'self' https://*.survicate.com https://*.survicate-cdn.com; img-src 'self' data: https://*.vismaonline.com https://*.visma.com https://*.survicate.com https://*.survicate-cdn.com https://images.unsplash.com; connect-src 'self' https://zvpknzcr6znl.statuspage.io https://dc.services.visualstudio.com https://*.vismaonline.com https://*.visma.net https://*.visma.com https://*.survicate.com https://*.survicate-cdn.com https://production-responden

Linked from (2)