autoflow.ltd.uk
HTML metadata
Technology
- Server
- Sucuri
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
- Font Awesome
- Google Fonts
Third-party hosts loaded (5)
- fonts.googleapis.com×2
- cdnjs.cloudflare.com×1
- use.fontawesome.com×1
- use.typekit.net×1
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- ns1-04.azure-dns.com
- ns2-04.azure-dns.net
- ns3-04.azure-dns.org
- ns4-04.azure-dns.info
- MX
-
- 0 autoflow-ltd-uk.mail.protection.outlook.com
- TXT
-
aanjgDLsmK3+gzegcHa4arujocwlfnbs6rS6UabIShoIUGP7z/fxrSW6kPHE9P7YN8ZSstVkN1Bt17/on4CYVI5I7kaiTnVnC3LSAUiVFeLPgVgRrdJQ==aanjgDLsmK3+gzegcHa4arujocwIfnk5UbUjagUWEL1AUScMd+Y0Smii843fnF7aG/X+1mi8msCJ4wjb4OPt0A==
- Verified for
-
- Apple
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 a:mail.autoflow.ltd.uk ip4:217.37.77.46 ip4:194.74.1.69 ip4:194.74.1.67 ip4:194.74.1.66 ip4:46.183.13.140 ip4:85.90.254.170 ip4:85.90.254.174 ip4:88.208.244.60 ip4:85.90.254.220 ip4:149.72.49.19 include:spf.protection.outlook.com include:spf-uk.emailsignatures365.com include:27074228.spf07.hubspotemail.net include:sendgrid.net include:_spf.intacct.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@autoflow.ltd.uk,mailto:dmarc@5y7b2tn5.uriports.com; ruf=mailto:dmarc@autoflow.ltd.uk,mailto:dmarc@5y7b2tn5.uriports.com; fo=1policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC4YplohiysGesgGezMLNFSZt4WLOfubsZDpA/cfBjkZkgYeulM4qSaI0l7SJ34dnh0dYCqMnuCKQdVyzZNlf…
selectors probed - selector1:
Certificate (current)
Sectigo Public Server Authentication CA OV R36
Expires in 226 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
same-origin, same-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(self), microphone=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; connect-src 'self' https://*.google.com https://*.googleapis.com https://*.google-analytics.com https://*.doubleclick.net ; font-src 'self' https://*.fontawesome.com https://*.google.com https://*.google.co.uk https://*.googleapis.com https://*.gstatic.com https://*.typekit.net https://cdnjs.cloudflare.com; form-action 'self'; frame-ancestors 'self'; frame-src 'self' https://*.google.com https://*.google.co.uk https://*.youtube.com https://*.vimeo.com ; img-src 'self' blob: data: image/svg+xml https://*.googleapis.com https://*.gstatic.com https://*.google-analytics.com https://*.googletagmanager.com https://*.cloudfront.net https://*.doubleclick.net; object-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://cdnjs.cloudflare.com https://*.bootstrapcdn.com https://*.google.com https://*.google.co.uk https://*.googleapis.com https://*.google-analytics.com https://*.gstatic.com https://*.googletagmanager.com https://d3js.org ; style-src 'self' 'unsaf- strict-transport-security
max-age=31536000; includeSubDomains