cifas.org.uk

.uk crawl

First seen 2026-04-28 · Last seen 2026-05-17 · ok HTTP/1.1 200 5487 ms crawled 2026-05-07

GB · 194.150.194.162 · AS12703 Pulsant (Scotland) Ltd

Reputation 100/100

Classifying

HTML metadata

Title
Fraud Prevention | Identity Fraud | Protective Registration | Cifas
Description
With the UK's largest cross-sector fraud sharing databases, Cifas is a not-for-profit organisation working to reduce and prevent fraud and financial crime in the UK.
Language
en
Canonical
https://www.cifas.org.uk/

Open Graph

url
https://www.cifas.org.uk/
title
Fraud Prevention | Identity Fraud | Protective Registration | Cifas
description
With the UK's largest cross-sector fraud sharing databases, Cifas is a not-for-profit organisation working to reduce and prevent fraud and financial crime in the UK.

Social

Registration

Registrar
GoDaddy.com, LLC.
Created
1998-11-11
Expires
2026-11-11 176 days left
Updated
2025-11-12
Name servers
  • ns01.domaincontrol.com.
  • ns02.domaincontrol.com.

DNS records live

NS
  • ns01.domaincontrol.com
  • ns02.domaincontrol.com
MX
  • 0 cifas-org-uk.mail.eo.outlook.com
TXT
Show 7 TXT records
  • msfpkey=5vxo1gcr0rp2qdv11r59e71vr
  • d995c4q7071pgtlknb7537hg8n0xj4wp
  • 9s6cjyd2x5frbbt5qp60bkdsyh9wknwk
  • d365mktkey=EXiDjxNhxIHbq2R1r2a7xnDsYPv8HEpd3YFjQSeSCUsx
  • c6px7ys6fqb6nwrypktmdc6cd38kwn1f
  • MS=ms98836191
  • v9r9f91QOTY8t2KphCcNgaBxXMksviH1t56a4m+OYyZUlK4Z5wKNKA7QTgl2zp5JhUwCdoYfwFwUkJLoCL4Bcw==

Email authentication strong

SPF
v=spf1 include:_spf.accessplanit.com ip4:192.254.125.237 ip4:168.245.1.98 include:spf.protection.outlook.com include:sendgrid.net include:amazonses.com include:spf2.accessacloud.com -all
strict (-all)
DMARC
v=DMARC1; p=reject; adkim=r; rua=mailto:dmarc_agg@vali.email,mailto:dmarc@cifas.org.uk
policy: reject (enforced)
DKIM
  • selector2: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDOBikvPF5dEYndUw/GTIt7QrO9mjgF2YEopfT0jqZkTqbb8m+7tAZR9pJVqqqMNg8wGiJMHsJX2Up3OuPqV1…
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0kQ8NFVCU56YLRiYM7oUmJwzwuKFnWx/ZDkeaPZThGdE4LlTEN6G5UeJww3JCTaGLYY5aZ6Wokh9mK7BQ5…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDboBhiZooWvcLM0jwOxJ9fyb0YxeCfKhuu1Kb8XRuGoB7AGYI5RjpBUcTDHd+EYWM+0BBsV1i+tw7KNKnmUvgkdG…
selectors probed

Certificate (current)

RapidSSL TLS RSA CA G1
from 2025-07-09 to 2026-07-09
Expires in 51 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.cifas.org.uk/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
DENY
x-content-type-options
nosniff
content-security-policy
default-src 'self' *.twitter.com wss://*.iesnare.com https://*.iesnare.com https://c868f50ba0a44ab1a49811d2861c57f7.svc.dynamics.com https://9e23f0c0cf4b40e984c4ecab298228a7.svc.dynamics.com https://9e23f0c0cf4b40e984c4ecab298228a7.svc.dynamics.com/ http://www.cifas.org.uk/matomo/ *.dynamics.com/ *.azureedge.net/ https://*.addressy.com data: https://www.google.com *.youtube.com *.youtube-nocookie.com; img-src 'self' *.twimg.com https://cifas.matomo.cloud/ https://www.jandl.digital/ *.twitter.com https://assets-gbr.mkt.dynamics.com/ https://9e23f0c0cf4b40e984c4ecab298228a7.svc.dynamics.com data: *.cifas.org.uk *.google-analytics.com; frame-ancestors 'none' 'self' https://syndication.twitter.com; style-src 'self' 'unsafe-inline' *.twitter.com *.twimg.com; script-src 'self' 'unsafe-inline' *.twitter.com *.twimg.com *.google-analytics.com https://mpsnare.iesnare.com https://cdn.matomo.cloud/cifas.matomo.cloud/ https://www.youtube.com https://mktdplp102cdn.azureedge.net/ http://www.cifas.or
strict-transport-security
max-age=31536000

Links to (6)

Linked from (3)