adur-worthing.gov.uk
HTML metadata
Technology
Third-party hosts loaded (2)
- ajax.googleapis.com×3
- customer.cludo.com×1
Social
Registration
- Registrar
- Virgin Media Business Limited
- Created
- 2010-08-04
- Expires
- 2026-08-04 74 days left
- Updated
- 2025-08-04
- Name servers
-
- ns-1527.awsdns-62.org
- ns-540.awsdns-03.net
- ns-31.awsdns-03.com
- ns-1543.awsdns-00.co.uk
DNS records live
- NS
-
- ns-1527.awsdns-62.org
- ns-1543.awsdns-00.co.uk
- ns-31.awsdns-03.com
- ns-540.awsdns-03.net
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
MS=9A3A600EB65D24D209714FBA9187B5308A7351F5sophos-domain-verification=26c15fff52bd54360408870bfb8ab710560daa6f
- Verified for
-
- Atlassian
Email authentication strong
- SPF
-
v=spf1 ip4:212.126.147.6 ip4:213.165.156.253 ip4:62.149.36.42 include:mailrelay.t1cloud.com include:servers.mcsv.net include:mailgun.org include:_spf.google.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; pct=100; fo=1; rua=mailto:dmarc-rua@dmarc.service.gov.uk,mailto:dmarc@adur-worthing.gov.ukpolicy: reject (enforced) - DKIM
-
Show 5 DKIM selectors
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAkczamBbmZFQPJXkoBkeuq4EwcbR/LZ9fyV8Hm7N0En1Aii+qWfBnAYqs8Jt0DnZls+ugZkS4njWHNg… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - mail:
v=DKIM1; g=*; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDy4YJFuPtPUltio3lGMj4nN560DTavZlA41OLV4SIwhBgp1oLo/itQHVKZXP+aeOj/WZTmCckHiPN/C… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxVCo62iOrdbnjvQwkeWYUnYaX5dVjYNpxtPPZL1PV130NKNcdvjua0R1wvGfeW/VTbmSoFftmxC22h3GPk… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArRJPoPgLF5d7KaehP94zVY6peEJ6A/4I2OMWkjrnp0MS+Z2KKdULT/LeOIG1DFgXb/ztKDgh5hpr/oKB+Z…
selectors probed - google:
Certificate (current)
Sectigo Public Server Authentication CA OV R36
Expires in 267 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
default-src https: 'self' *.adur-worthing.gov.uk; img-src 'self' www.google-analytics.com customer.cludo.com www.gstatic.com maps.gstatic.com maps.googleapis.com translate.google.com data: *.adur-worthing.gov.uk; script-src 'self' *.adur-worthing.gov.uk *.cludo.com www.google-analytics.com www.googletagmanager.com www.google.com ajax.googleapis.com maps.googleapis.com maps.google.co.uk www.gstatic.com api-bridge.azurewebsites.net www.smartsurvey.co.uk static.hotjar.com script.hotjar.com cdn.jsdelivr.net 'unsafe-inline' 'unsafe-eval'; style-src 'self' *.adur-worthing.gov.uk fonts.googleapis.com translate.googleapis.com 'unsafe-inline'; font-src 'self' *.adur-worthing.gov.uk fonts.gstatic.com assets.nhs.uk; connect-src 'self' *.adur-worthing.gov.uk www.google-analytics.com region1.google-analytics.com maps.googleapis.com api.cludo.com api.nhs.uk content.hotjar.io in.hotjar.com metrics.hotjar.io vc.hotjar.io ws: ws.hotjar.com; object-src 'self'; frame-src 'self' *.adur-worthing.gov.uk adu- strict-transport-security
max-age=31536000