bannatyne.co.uk
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Tag Manager
- Fonts
-
- Font Awesome
Third-party hosts loaded (9)
- cdnjs.cloudflare.com×2
- www.googletagmanager.com×2
- livechat-bannatynefitness.connexone.co.uk×1
- maps.googleapis.com×1
- unpkg.com×1
- use.fontawesome.com×1
- widget.trustpilot.com×1
- www.facebook.com×1
- www.google.com×1
Social
Registration
- Registrar
- Fasthosts Internet Ltd
- Created
- 2003-07-29
- Expires
- 2027-07-29 433 days left
- Updated
- 2017-07-29
- Name servers
-
- lucy.ns.cloudflare.com.
- paul.ns.cloudflare.com.
DNS records live
- NS
-
- lucy.ns.cloudflare.com
- paul.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 7 TXT records
cY+mhNNncy1zbR20jzwWTu1x9qkMOVeiK9pJS4Nr9ks=cvcic8t9qnkqk1r6q5deekhkuvmlbe70p5nvgsgtafhi88mmhnjbp1cpdph83kisa1ttkfbq34d3he7f54f0t6gmohrlvm5fc3efhr3q871q7ro48tghfef5kn5fhbi7u8MS=EDD4734EC8888878A9F7DA06BE24FEBCF3468423
- Verified for
-
- Apple
- Canva
- DocuSign
Email authentication partial
- SPF
-
v=spf1 include:_spf.google.com include:spf.mandrillapp.com include:email.freshservice.com include:_spf.eu.sparkpostmail.com include:sendgrid.net ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=none;rua=mailto:dmarc-reports@bannatyne.co.ukpolicy: none (monitoring only) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQChdTv8lQWUNb3K2UCy8y4ObXECAg5Q7cEU63ICllz5ZhKvSlbbbzJZ4zAowWT0vvP112WAqttsSHUb7sZz6t… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwYgOI6pXutz0elo2EFlei5wCfx29jXFOU0QOEG9ju7pW7UBP3zkzPnNjGGyUYlWrOQ5bm0Snwuh99Z7gmv… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDyUclnUz5msJe/m4JflrPd7w6QAE/e6tWhp4ojFNSS3NvdVzxWzXY1KWkM02ihSpZS87MWdbCoQf4yTrqo3FFsK5…
selectors probed - google:
Certificate (current)
Sectigo Public Server Authentication CA OV R36
Expires in 48 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.bannatyne.co.uk *.googleapis.com *.klarnacdn.net *.klarnaevt.com *.google.com *.doubleclick.net *.googleadservices.com *.google-analytics.com *.google.co.uk *.cookiebot.eu *.tiktok.com *.googlesyndication.com *.resdiary.com eu.engage.app talkative-cdn.com *.trustpilot.com 'report-sample'; img-src * data: 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; style-src * 'unsafe-inline' 'report-sample'; script-src 'self' *.bannatyne.co.uk livechat-bannatynefitness.connexone.co.uk *.google.com *.googletagmanager.com *.klarnacdn.net *.cookiebot.com *.googleapis.com *.facebook.net *.tiktok.com *.trustpilot.com *.gstatic.com eu.engage.app talkative-cdn.com *.commbox.io unpkg.com *.cloudflare.com *.cloudflareinsights.com *.doubleclick.net *.cookiebot.eu *.ads-twitter.com *.google-analytics.com *.urlgeni.us *.livebookings.com sc-static.net *.sc-static.net *.resdiary.com *.stripe.com 'unsafe-inline' 'unsafe-eval' 'report-sample'; font-src * data: ; media-src * da- strict-transport-security
max-age=63072000; includeSubDomains; preload