websupport.se
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Iubenda
Third-party hosts loaded (9)
- maps.googleapis.com×3
- cdn.iubenda.com×2
- www.googletagmanager.com×2
- www.websupport.cz×2
- www.websupport.hu×2
- www.websupport.sk×2
- cdn.hub-prod.team.blue×1
- eu.acsbapp.com×1
- srv.isy-teamblue.services×1
Social
DNS records live
- NS
-
- ns1.websupport.sk
- ns2.websupport.sk
- ns3.websupport.sk
- MX
-
- 5 mail.loopia.se
- TXT
-
la-verification=u208324
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 ip4:93.188.1.208/29 ip6:2a02:250:0:10::/64 ip4:109.235.175.0/24 ip6:2a00:1968:0:9::/64 include:kundspf.loopia.se include:mail.loopia.ladesk.com include:_spf.m101.websupport.se -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:mailauth-reports@loopiahosting.se;policy: quarantine - DKIM
-
- mail:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq+6ErJl3xuN5pI6M4c8a+4+bYlqivO5mqG+ZFk9PqHTsbZ4g7y/GDQ8wh6yP7HQz/QXKp3SVFqwTHm… - dkim:
v=DKIM1;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0jUuUFHhQDRzmYERjIfCFZtmPZH56x39SM0ApkoYsQB/paPCxYF2ZY/C6B2njTDLIJQ1muTLaohUktVb7QzBmO…
selectors probed - mail:
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 265 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- content-security-policy
default-src https:; script-src 'self' 'report-sample' 'unsafe-inline' 'unsafe-eval' websupport.cz *.websupport.cz websupport.sk *.websupport.sk websupport.se *.websupport.se websupport.hu *.websupport.hu team.blue *.team.blue *.fw-cdn.com *.freshchat.com *.freshworks.com *.freshdesk.com *.iubenda.com *.redditstatic.com tracker.metricool.com cookiebot.com *.cookiebot.com googleapis.com *.googleapis.com trustpilot.com *.trustpilot.com googletagmanager.com *.googletagmanager.com *.google-analytics.com googleads.g.doubleclick.net *.googlesyndication.com *.google.sk google.sk *.googleadservices.com analytics.tiktok.com stats.g.doubleclick.net connect.facebook.net snap.licdn.com cdn.plyr.io bat.bing.com *.ads-twitter.com c.seznam.cz *.hotjar.com *.hotjar.io *.ladesk.com *.isy-teamblue.services *.motu-teamblue.services *.teamblue.services *.acsbapp.com *.adform.net *.youtube.com *.google.com google.com *.gstatic.com gstatic.com *.exponea.com; style-src 'self' 'report-sample' 'unsafe-inline' w- strict-transport-security
max-age=31536000