vr.fi
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- CloudFront
- CMS
- Next.js
Third-party hosts loaded (1)
- images.ctfassets.net×17
Social
Registration
- Created
- 1990-12-31
- Name servers
-
- dns1.p08.nsone.net [ok]
- dns2.p08.nsone.net [ok]
- dns4.p08.nsone.net [ok]
- dns3.p08.nsone.net [ok]
DNS records live
- NS
-
- dns1.p08.nsone.net
- dns2.p08.nsone.net
- dns3.p08.nsone.net
- dns4.p08.nsone.net
- MX
-
- 10 mailservice-vr-fi.mail.protection.outlook.com
- TXT
-
Show 10 TXT records
hosting-site=vrmobilengvmware-cloud-verification-7c426996-f811-4698-8fb3-7ecc91a8667dlgSn7+6gr2TbKta584SMrMk/nCz51355qS07U9rL6hkSAj0JSQx5VfEGsP7oQuUidandF3sGNzPQuN+4tyM0Bg==38iCYX5REGc_e32N2YknsfouQJWq95hcQW/aRsKwCLIvfE14UnsXRBa377y7LcqX5xIgiRc5CuYosNf/KqbP2cm+TgmVFjyTRb5ORPYwWtxTw==ibmid= 9a1f72f5-5772-4af0-a0db-5408771123b46KORGlAZHBwdYB6WMoTA4plzBwXP0nEbkw4N1Q0BMQIoD0Pohx/0sTnaWr/1U8UCTA/0/eVi8Rvisd0wwxRKnQ==1nfwh0cywgkmrygfgds9r8thj21jwr8lc533ee4e7f4049e390ec5db3ad06f0a6intersight=50640e444ba891a2a7828cd4bbc8927d968d9fa9c5fdd76b8889d1d21685bcc4
- Verified for
-
- 1Password
- Apple
- Atlassian
- Dynamics 365
- Miro
- TeamViewer
Email authentication partial
- SPF
-
v=spf1 include:spf1.vr.fi include:spf2.vr.fi ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@vr.fi,mailto:dmarc@as6kjjgt.uriports.com; ruf=mailto:dmarc@vr.fi,mailto:dmarc@as6kjjgt.uriports.com; fo=1:d:spolicy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCbHVx2CQA1tBqNyjnCA1YlcPULFmYaQ+ZFU4An9hixKplCIHTcipCjtR/VQyYPU97vQZzWCl5Tg7ZY9aOOIk…
selectors probed - selector1:
Certificate (current)
Amazon RSA 2048 M01
Expires in 200 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://*.giosg.com https://*.giosgusercontent.com https://*.interactionbuilder.giosg.com; script-src 'self' 'unsafe-inline' https://*.googletagmanager.com https://api.eu1.exponea.com/js/exponea.min.js https://www.google-analytics.com https://snap.licdn.com/li.lms-analytics/insight.min.js https://snap.licdn.com/li.lms-analytics/insight.beta.min.js https://files.vr.fi https://api.tiles.mapbox.com https://connect.facebook.net https://api.mapbox.com https://www.gstatic.com https://www.google.com https://googletagmanager.com https://tagmanager.google.com https://www.googleanalytics.com https://www.googleoptimize.com https://bat.bing.com https://api.eu1.exponea.com https://*.convertexperiments.com https://*.giosg.com https://*.giosgusercontent.com https://*.interactionbuilder.giosg.com 'unsafe-eval'; style-src 'self' 'unsafe-inline' https://api.tiles.mapbox.com https://files.vr.fi https://www.gstatic.com https://googletagmanager.com https://www.googletagmanager.com https- strict-transport-security
max-age=63072000; includeSubdomains; preload