youpark.no
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Gatsby
- Analytics
-
- Cloudflare Insights
Third-party hosts loaded (1)
- static.cloudflareinsights.com×1
Registration
- Registrar
- Domeneshop AS
- Created
- 2024-10-01
- Updated
- 2025-09-03
- Name servers
-
- ulla.ns.cloudflare.com
- earl.ns.cloudflare.com
DNS records live
- NS
-
- earl.ns.cloudflare.com
- ulla.ns.cloudflare.com
- MX
-
- 0 youpark-no.mail.protection.outlook.com
- 32767 ms35954981.msv1.invalid
- TXT
-
2oc47sevl6c455u89qc9csovrf
- Verified for
-
- Microsoft 365
Email authentication weak
- SPF
-
v=spf1 include:spf.protection.outlook.com include:servers.mcsv.net include:mail.zendesk.com -allstrict (-all) - DMARC
- not published
- DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvUz3G2hWowmskewU57ip/XrPjTfQEIeEvo2+K75b98aJ0HuiZxW5pLicTmW+ShpdKnfwm4BcYkl6NgIGtu… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDVDPqDbwEkqCvA7PFBBSx3IoosYFdec9OfDpKLsDO/vryezpFeZ+IsWOMiRb1P2rjVfpeOzKdLceVNOJg/ieMwgh…
selectors probed - s1:
Certificate (current)
E7
Expires in 36 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(self "https://www.youpark.no"), camera=(self "https://www.youpark.no")- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'wasm-unsafe-eval' https://cdn.youpark.no https://challenges.cloudflare.com https://maps.googleapis.com https://maps.gstatic.com https://js.monitor.azure.com https://static.cloudflareinsights.com; style-src 'self' 'unsafe-inline' https://cdn.youpark.no https://fonts.googleapis.com; img-src 'self' https://cdn.youpark.no https://youparkas.blob.core.windows.net https://youparkcdn.blob.core.windows.net https://maps.gstatic.com https://maps.googleapis.com https://mapsresources-pa.googleapis.com data: blob:; font-src 'self' https://cdn.youpark.no https://fonts.gstatic.com data:; connect-src 'self' https://www.youpark.no https://cdn.youpark.no https://challenges.cloudflare.com https://maps.googleapis.com https://maps.gstatic.com https://mapsresources-pa.googleapis.com https://charts.mongodb.com https://youparkas.blob.core.windows.net https://youparkcdn.blob.core.windows.net https://dc.services.visualstudio.com https://js.monitor.azure.com- strict-transport-security
max-age=31536000; includeSubDomains; preload