bsia.co.uk
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
- Google Fonts
Third-party hosts loaded (10)
- cdn.jsdelivr.net×8
- cdnjs.cloudflare.com×7
- fonts.googleapis.com×3
- ajax.googleapis.com×1
- cdn-cookieyes.com×1
- fonts.gstatic.com×1
- kit.fontawesome.com×1
- use.typekit.net×1
- www.google.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- guy.ns.cloudflare.com
- vera.ns.cloudflare.com
- MX
-
- 1 bsia-co-uk.mail.protection.outlook.com
- TXT
-
sqtILNiF7nlE7IiRzmkFev5gE45Kjow7o6c8HefbT6k3eBNx4rVbRxCzg5TxAIPnHnkjyg/sjzEMJ6miBklX0g==vpe=b08b54ac
- Verified for
-
- Atlassian
Email authentication strong
- SPF
-
v=spf1 ip4:217.45.240.72/32 ip4:93.93.134.247 ip4:93.93.134.246 ip4:93.93.134.245 ip4:93.93.134.248 ip4:217.38.229.234 ip4:62.3.105.126 ip4:62.3.105.123 include:spf.protection.outlook.com include:spf.e-shot.org ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=reject;pct=100;rua=mailto:26f85c7c23@rua.easydmarc.eu;ruf=mailto:26f85c7c23@ruf.easydmarc.eu;ri=86400;fo=1;policy: reject (enforced) - DKIM
-
Show 6 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDlU610DWwuY8q/WiZAeR2kgtbjnFHlXzJ3BJiBqvJB9dfJPvfWcuFmmd57OTVLpCYznJ4hN2dx2N4WG6HfRx… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApqqQwMhrjPcCR7GB7l+DjRnrzVLRPh2MJVquDtUB827NAzEIfEUl37jfbHEYVs0lqT5+UxHUyFsNyh… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA/SNKCb/EjvGd8yzsfvAFYOmlqa0dFPOGBSMesF0043LDRGEGtsbIeFEXc0wA37Hei8Uru5LfOwUqJrP//c… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDVdk4mdGQTDg9y4xZ8jw1dbz/FRQUMBDQYL9HXOmx5H9Y4xvBSzdTq+2nWV8UpQtJrMOp9cJnfmRXpHPGCHJWGDW… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 54 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src https: data: 'unsafe-inline' 'unsafe-eval'- strict-transport-security
max-age=31536000; includeSubDomains