bournemouthwater.co.uk
HTML metadata
Technology
- CDN
- Cloudflare
Social
DNS records live
- NS
-
- ns1-05.azure-dns.com
- ns2-05.azure-dns.net
- ns3-05.azure-dns.org
- ns4-05.azure-dns.info
- MX
-
- 10 bournemouthwater-co-uk.mail.protection.outlook.com
- TXT
-
647b3a16714adf769c85aa51f6b8c8d7Ki6Y5/enPQcGCqruuulHBkIsMDnpjnwiIztwwKTUZkTMmB2Tyf4tgOw9HldMAb5+xBo8OENmSVfshOXsF2RTCg==96lyb7vbzv2sf6fbjw18ssc7xv9rv23l
- Verified for
-
- Meta
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 ip4:194.72.48.162 ip4:80.194.73.226 include:spf.protection.outlook.com include:_spf.salesforce.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com,mailto:dmarc@bournemouthwater.co.uk; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.com,mailto:dmarc@bournemouthwater.co.ukpolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsans5lpmyGJRKm9kTo8M2hGBiaex2/NpBe4E7iyiHmWYNMGZf2gY40YCcfsVYJjS+LnvpA004+8mDG…
selectors probed - selector1:
Certificate (current)
Sectigo Public Server Authentication CA OV R36
Expires in 245 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://cdn.cookielaw.org https://www.google.com/ 'unsafe-inline' 'unsafe-eval' https://*.lpsnmedia.net https://*.clarity.ms https://c.bing.com https://pennongroup.tfaforms.net; connect-src https://cdn.cookielaw.org https://privacyportal-de.onetrust.com https://geolocation.onetrust.com https://*.southwestwater.co.uk https://*.bournemouthwater.co.uk https://*.seswater.co.uk https://*.eastsurreyholdings.co.uk https://*.pennon-group.co.uk https://*.clarity.ms https://*.google-analytics.com https://*.analytics.google.com https://analytics.google.com https://*.googletagmanager.com wss://*.liveperson.net https://*.liveperson.net https://*.lpsnmedia.net https://*.tiles.mapbox.com https://api.mapbox.com https://events.mapbox.com https://*.hotjar.com https://*.hotjar.io wss://*.hotjar.com https://www.facebook.com https://connect.facebook.net https://*.reciteme.com https://*.aptrinsic.com https://d1igp3oop3iho5.cloudfront.net/v2/ https://api.eu1.odp.optimizely.com https://stat- strict-transport-security
max-age=31536000; includeSubDomains