brittany-ferries.ie
HTML metadata
Technology
- CDN
- Cloudflare
- JS framework
- Angular 20.3.19
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- storage.googleapis.com×10
- images.ctfassets.net×2
- fonts.gstatic.com×1
- widget.trustpilot.com×1
DNS records live
- NS
-
- chuck.ns.cloudflare.com
- ivy.ns.cloudflare.com
- TXT
-
Show 10 TXT records
l5fdfzr5jxny34wd6slj84hgrg8l8sl4lvzjc6j00rrrgztr634b2mxn8kn6d1p0ngqyc7grcffbrtd33mgcdqk12nglqty9t0h8s01z8pdrrkx4ggcnpr5gfszn6q6tvxpdd3fm0sh3qtmw69zv7zc89cfqm2fx3jdwqtfxdy36tscxv56zg7k8wc0qsdfw4ptrjqn2j0qs08qzbbmh0dhhh1v6zzq89t2jhkg0dh041t2xvl5j3qh6qlrhdy0vhave-i-been-pwned-verification=6abf05a5ae80a89a298557841fea3ffcj7bkcjm2vm608pc6qy6jjbn0xg6jcbk5
Email authentication no MX
- SPF
-
v=spf1 include:spf.protection.outlook.com ip4:109.176.139.74 ip4:109.176.139.75 ip4:109.176.139.76 ip4:83.206.26.123 ip4:109.176.139.70 ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 75 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
script-src 'unsafe-eval' 'strict-dynamic' 'nonce-eaf9f0b71053fafeb05294b00f6442f8' 'sha256-lP+eze/AK/U+wcFpKIsxa7UjndDoxGJzdu44XOkoqRo=' 'sha256-nzv8I5Mf0AZBUKeL70LtQfYBjK/DghfP72B8j+UI49I=' 'sha256-XUn0u9o0PrOqkPRlvSKJduPghRMELoQAwAZCSE3sASs=' 'sha256-oBDCmbdwlYyR8ewwQdEO9ynbtTtruNSsPCCjG3ZvYNg=' 'sha256-0zZPgsifJ8h8aM+gmSxkrfNtAGUZb7ItVug6/j1UR5g=' 'sha256-MhtPZXr7+LpJUY5qtMutB+qWfQtMaPccfe7QXtCcEYc=' 'sha256-kLOQNAVOaBgADiUv3KS/St2g6k1exicli/nlGA4Ku2Y=';default-src 'self' ws: wss: *.googletagmanager.com *.cloud-iam.com *.brittanyferries.io *.google.com *.google.fr *.google.co.uk *.google.es *.contentful.com *.quantummetric.com *.googleadservices.com *.bing.com *.infinity-tracking.net *.infinity-tracking.com *.googleapis.com *.googlesyndication.com *.matomo.cloud *.onetrust.com *.onetrust.io *.sentry.io *.facebook.net *.facebook.com *.sncf-connect.com *.piwik.pro *.mypurecloud.de *.doubleclick.net *.wepowerconnections.com *.sciencebehindecommerce.com *.adsrvr.org *.smartsurvey.co.uk- strict-transport-security
max-age=31536000; includeSubDomains