big-c.co.uk
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (4)
- www.googletagmanager.com×4
- ajax.googleapis.com×1
- cdn-cookieyes.com×1
- maps.googleapis.com×1
Social
Contact
- Phone
Registration
- Registrar
- Fasthosts Internet Ltd
- Created
- 2000-02-16
- Expires
- 2027-02-16 272 days left
- Updated
- 2026-01-17
- Name servers
-
- ns28.active-ns.com.
- ns29.active-ns.com.
DNS records live
- NS
-
- ns28.active-ns.com
- ns29.active-ns.com
- MX
-
- 0 bigc-co-uk0i.mail.protection.outlook.com
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:mailgun.org include:spf2.accessacloud.com include:spf.exclaimer.net +include:outboundmail2.blackbaud.net +ip4:205.139.104.0/22 +ip4:216.235.196.0/22 +ip4:216.235.200.0/21 +ip4:216.235.195.0/24 ip4:51.155.156.22 ip4:46.17.167.93 ip4:79.141.133.35 ip4:51.155.120.205 ip4:51.148.253.39 ip4:51.148.69.92 ip4:109.146.219.223 ip4:217.155.42.156 ip4:82.69.72.166 ip4:77.76.79.154 ip4:185.182.91.174 ip4:62.31.77.106 ip4:185.220.62.122 -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; sp=quarantine; ri=86400policy: quarantine · sp=quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAz+lWE7Kfa1TpAP8xer+H7YX/q0ZSrKdfD0U99BHeVfNUkESJBtAFNs3ADjwvIb6j4ZfbUm7MEE7wD+… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3p1re+J6SxxxKr3JbAAuJUDqDkHW9HxkIqYAMKAi6xD8Tm+F0fqQoXxlQopF5FvAcXYXxEc/Kx9itG… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - selector1:
Certificate (current)
R13
Expires in 60 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
upgrade-insecure-requests, default-src 'self' data: 'unsafe-inline' 'unsafe-eval' https://*.gravatar.com https://*.google-analytics.com https://bam.nr-data.net/ https://*.googleapis.com https://*.google.com https://*.gstatic.com https://*.newrelic.com https://www.googletagmanager.com https://*.cookieyes.com https://cdn-cookieyes.com https://chimpstatic.com https://www.paypal.com https://stats.wp.com https://yoast.com https://my.yoast.com https://pixel.wp.com https://bigc.snapforms.com.au https://www.youtube.com https://www.paypalobjects.com https://woocommerce.com https://ps.w.org https://static.beaconproducts.co.uk; object-src 'self'; base-uri 'none'; child-src 'self' blob: https://*.google.com/ https://bigc.snapforms.com.au https://storage.net-fs.com https://www.youtube.com https://*.gstatic.com https://static.beaconproducts.co.uk bigccancerappeal.beaconforms.com; frame-ancestors 'self' https://*.google.com/ https://*.gstatic.com/ https://www.youtube.com/ https://www.paypalobjects.co- strict-transport-security
max-age=31536000; includeSubDomains; preload