Security Analysis Results

app.klarna.com

Comprehensive domain security and infrastructure analysis

Live Website Preview

website screenshot of https://invite.klarna.com/gb/xwn6dhps/default-gb

No Security Risks Detected

This domain appears to be safe and secure

100%
Score

Disclaimer: This assessment is based on automated analysis of publicly available information. Results are for informational purposes only. For critical applications, consult security professionals.

Scan Information

Last checked:December 5, 2025 21:27:11
Scan Complete

Refresh page after 10 minutes
for updated results

Page Information

Target URL
https://invite.klarna.com/gb/xwn6dhps/default-gb
Page Title
Klarna
app.klarna.com faviconSite Favicon
Status
Active

Host Information

Domain
app.klarna.com
Server
envoy
Country
United Kingdom
IP Address
18.164.68.10
ASN Information
16509
AMAZON-02

Technologies

Envoy logo
Envoy
Reverse proxies
Amazon Web Services logo
Amazon Web Services
PaaS
Rokt logo
Rokt
Personalisation
Klarna Checkout logo
Klarna Checkout
Payment processors
HSTS logo
HSTS
Security
FullStory logo
FullStory
Analytics
+3 more technologies detected

SSL Certificate

HTTPS Enabled
Secure
Certificate Issuer
N/A
Valid From
2025-12-04 21:27:17
Valid Until
2026-12-05 21:27:17
Subject Name
app.klarna.com

Performance Statistics

351
Total Requests
10
Domains
10
IP Addresses
8.39 MB
Transfer Size
Content Size12.79 MB

HTTP Headers

Alt-Svc
h3=":443"; ma=86400
Connection
keep-alive
Content-Type
text/html; charset=utf-8
Date
Fri, 05 Dec 2025 21:27:17 GMT
Transfer-Encoding
chunked
Via
1.1 4da76bec4d214ef39a048adf52982198.cloudfront.net (CloudFront)
X-Amz-Cf-Id
0wUvbnm8UHWtK4wTRqy9Ug0cy5ci37oitza_MTuhqlJ-27aGNwoqew==
X-Amz-Cf-Pop
DFW56-P6
X-Cache
Miss from cloudfront
content-encoding
gzip
content-security-policy
base-uri 'self' https://login.klarna.com; block-all-mixed-content; connect-src 'self' https://direct-debit.klarna.com https://direct-debit-se.production.eu1.payments.klarna.net https://direct-debit-usa-mandate-api.production.us1.pis.klarna.net https://direct-debit.production.payments.klarna.net https://login.klarna.com https://mm-gateway-eu.production.c2c.klarna.net https://mm-gateway-us.production.c2c.klarna.net https://sentry.io/api/5607913/envelope/ https://o24547.ingest.sentry.io https://*.klarnacdn.net https://*.pusher.com wss://*.pusher.com wss://*.pusher.com:443 https://*.ably.io wss://*.ably.io https://*.ably-realtime.com wss://*.ably-realtime.com https://main.realtime.ably.net wss://main.realtime.ably.net wss://screensharing-site-eu.klarna.com wss://screensharing-site-us.klarna.com wss://screensharing-site-ap.klarna.com https://ap-production-klarna-profile-picture.s3.ap-southeast-2.amazonaws.com https://eu-production-klarna-profile-picture.s3.eu-west-1.amazonaws.com https://us-production-klarna-profile-picture.s3.amazonaws.com https://eu-production-klarna-chat-attachments.s3.eu-west-1.amazonaws.com https://us-production-klarna-chat-attachments.s3.amazonaws.com https://ap-production-klarna-chat-attachments.s3.ap-southeast-2.amazonaws.com https://disputes-infra-eu1-disputes-evidence-production-file-uploads.s3.eu-west-1.amazonaws.com https://disputes-infra-ap1-disputes-evidence-production-file-uploads.s3.ap-southeast-2.amazonaws.com https://disputes-infra-us1-disputes-evidence-production-file-uploads.s3.amazonaws.com https://*.klarnaevt.com https://*.mparticle.com https://*.klarna.app https://js.klarna.com https://*.amplitude.com https://e-10581-eu-central-1.adzerk.net https://e-10581-eu-west-1.adzerk.net https://e-10581-ap-southeast-2.adzerk.net https://e-10581-us-east-1.adzerk.net https://*.fra-01.braze.eu wss://screensharing-api-ap.klarna.com wss://screensharing-api-eu.klarna.com wss://screensharing-api-us.klarna.com https://screensharing-api-ap.klarna.com https://screensharing-api-eu.klarna.com https://screensharing-api-us.klarna.com https://tls-use1.fpapi.io https://didfp.klarna.com https://api-klarna.iteratehq.com https://eu-production-klarna-merchant-communication-attachments.s3.eu-west-1.amazonaws.com https://us-production-klarna-merchant-communication-attachments.s3.us-east-1.amazonaws.com https://ap-production-klarna-merchant-communication-attachments.s3.ap-southeast-2.amazonaws.com https://d22mniotd3jxrt.cloudfront.net https://kww-bff.klarna.com https://*.pricerunner.us https://www.klarna.com https://card-issuing-oc.klarna.com https://card-issuing-eu.klarna.com https://card-issuing-us.klarna.com https://*.fullstory.com https://*.eu1.fullstory.com https://www.gonift.com https://cdn.nift.me; default-src 'self' https://login.klarna.com https://*.klarnacdn.net https://*.mparticle.com https://*.klarna.app; font-src 'self' https://cdn.klarna.com https://*.klarnacdn.net https://d3w3yyufttgvi.cloudfront.net https://cdn.nift.me https://fonts.gstatic.com; frame-ancestors 'self' https://login.klarna.com https://payments.klarna.com https://www.klarna.com; frame-src 'self' https://js.klarna.com https://signicat.klarna.com https://cards-na.klarna.com https://cards-eu.klarna.com https://cards-oc.klarna.com https://*.klarnacdn.net https://www.google.com/recaptcha/ https://connect-js.stripe.com https://js.stripe.com https://hooks.stripe.com https://payments.klarna.com https://apps.rokt.com https://www.youtube.com https://login.klarna.com https://www.gonift.com; img-src 'self' blob: data: https: https://cdn.klarna.com https://*.klarnacdn.net https://evt.klarna.com https://www.klarna.com; media-src https://*.klarnacdn.net; object-src 'none'; report-uri https://o24547.ingest.sentry.io/api/234761/security/?sentry_key=4a4f72d344534c37b8b4af397fe01a0c; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://login.klarna.com https://o24547.ingest.sentry.io https://cdn.klarna.com https://*.klarnacdn.net https://*.pusher.com wss://*.pusher.com wss://*.pusher.com:443 https://*.mparticle.com https://*.klarna.app https://*.amplitude.com https://e-10581-eu-central-1.adzerk.net https://e-10581-eu-west-1.adzerk.net https://e-10581-ap-southeast-2.adzerk.net https://e-10581-us-east-1.adzerk.net https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://screensharing-site-ap.klarna.com https://screensharing-site-eu.klarna.com https://screensharing-site-us.klarna.com https://api-klarna.iteratehq.com/api/v1 https://connect-js.stripe.com https://js.stripe.com https://*.fullstory.com https://*.eu1.fullstory.com https://apps.rokt.com https://cdn.nift.me; style-src 'self' 'unsafe-inline' https://cdn.klarna.com https://*.klarnacdn.net https://login.klarna.com
cross-origin-embedder-policy
unsafe-none
cross-origin-opener-policy
same-origin
cross-origin-resource-policy
same-origin
etag
W/"1bac-/CRVS2Ub53GBtc/UiWZjAlm1SHo"
expect-ct
max-age=0, report-uri="https://o24547.ingest.sentry.io/api/234761/security/?sentry_key=4a4f72d344534c37b8b4af397fe01a0c"
klarna-correlation-id
b736a31e-a47b-45b8-a8c9-21e90d72fcf0
origin-agent-cluster
?1
referrer-policy
strict-origin-when-cross-origin
server
envoy
strict-transport-security
max-age=31536000; includeSubdomains; preload;
vary
accept-encoding
x-content-type-options
nosniff
x-dns-prefetch-control
off
x-download-options
noopen
x-envoy-upstream-service-time
9
x-frame-options
SAMEORIGIN
x-permitted-cross-domain-policies
none
x-xss-protection
1;mode=block
29 headers detected

Technology Stack Analysis

Envoy

Envoy

Reverse proxies

Envoy is an open-source edge and service proxy, designed for cloud-native applications.

Amazon Web Services

Amazon Web Services

PaaS

Amazon Web Services (AWS) is a comprehensive cloud services platform offering compute power, database storage, content delivery and other functionality.

Rokt

Rokt

Personalisation

Rokt is an ecommerce marketing technology that gives customers a personalised and relevant experience while buying online.

Klarna Checkout

Klarna Checkout

Payment processorsBuy now pay later

Klarna Checkout is a complete payment solution where Klarna handles a store's entire checkout.

HSTS

HSTS

Security

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

FullStory

FullStory

Analytics

FullStory is a web-based digital intelligence system that helps optimize the client experience.

Amazon S3

Amazon S3

CDN

Amazon S3 or Amazon Simple Storage Service is a service offered by Amazon Web Services (AWS) that provides object storage through a web service interface.

Amazon CloudFront

Amazon CloudFront

CDN

Amazon CloudFront is a fast content delivery network (CDN) service that securely delivers data, videos, applications, and APIs to customers globally with low latency, high transfer speeds.

HTTP/3

HTTP/3

Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

Website Cookies 4

fs_uid

.klarna.com

Secure Strict
Value
#o-QV7-eu1#2a9d1a1f-0b3e-40fc-9ac7-e59bb9791766:ea44642d-e553-4f1d-aa1f-f0a4212129ab:1764970040451::1#/1796506041
Expires:12/5/2026

fs_lua

.klarna.com

Secure Strict
Value
1.1764970040451
Expires:12/5/2025

sessionId

app.klarna.com

Value
[sessionId redacted]
Expires:12/6/2025

kdid

.klarna.com

Secure None
Value
d0cc4e4d-49a1-4b1b-a1f8-999937027c96
Expires:1/9/2027

External Links 2

instructions how to enable JavaScript in your web browser

www.enable-javascript.com

Analyze
Target URL
https://www.enable-javascript.com/

Referral Terms and Conditions

cdn.klarna.com

Analyze
Target URL
https://cdn.klarna.com/1.0/shared/content/legal/terms/en-GB/referral-general

Requested Domains 10

app.klarna.com

Subdomain
No category information available

d2r76poigfg60j.cloudfront.net

Unknown Type
No category information available

d3pspiw77t1lya.cloudfront.net

Unknown Type
No category information available

edge.fullstory.com

Unknown Type
No category information available

evt.klarna.app

Unknown Type
No category information available

evt2.klarna.app

Unknown Type
No category information available

invite.klarna.com

Unknown Type
No category information available

login.klarna.com

Unknown Type
No category information available

sentry.io

Unknown Type
No category information available

x.klarnacdn.net

Unknown Type
No category information available
LinkCheck

© 2025 LinkCheck. Secure domain analysis you can trust.