cottontravel.co.uk

.uk crawl

First seen 2026-04-26 · Last seen 2026-05-16 · ok HTTP/1.1 200 4142 ms crawled 2026-05-20

GB · 46.43.20.58 · AS35425 Iomart Managed Services Limited

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
Cotton Travel
Language
en-gb
Generator
Joomla! - Open Source Content Management
Canonical
https://cottontravel.co.uk/

Open Graph

url
https://cottontravel.co.uk/
title
CottonTravel
site name
Cotton Travel

Technology

Server
Apache
CMS
Joomla
jQuery
3.4.1 known XSS (<3.5)

Third-party hosts loaded (6)

  • ajax.googleapis.com×3
  • travel.tr10.com×2
  • cdnjs.cloudflare.com×1
  • code.jquery.com×1
  • kit.fontawesome.com×1
  • maps.googleapis.com×1

Social

Contact

Email
Phone

Registration

Registrar
Fasthosts Internet Ltd
Created
2023-04-21
Expires
2027-04-21 335 days left
Updated
2025-03-22
Name servers
  • ns1.livedns.co.uk.
  • ns2.livedns.co.uk.
  • ns3.livedns.co.uk.

DNS records live

NS
  • ns1.livedns.co.uk
  • ns2.livedns.co.uk
  • ns3.livedns.co.uk
MX
  • 10 mx01.hornetsecurity.com
  • 20 mx02.hornetsecurity.com
  • 30 mx03.hornetsecurity.com
  • 40 mx04.hornetsecurity.com
Verified for
  • Brevo
  • Microsoft 365

Email authentication strong

SPF
v=spf1 redirect=cottontravel.co.uk.spf.hornetdmarc.com
no all qualifier
DMARC
v=DMARC1; p=quarantine; pct=100; rua=mailto:a.9fyxnyl2@reports.hornetdmarc.com
policy: quarantine
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxZMjybckwyQudGxTwXbIysI1KGEoPCLqUobL2Sopj9cj4Hs7z+hiTM9ZqjvuxZadv8tZt8rGhPOmyh…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqZZO57CvefPn4E0C85c+RDKtpK8RKXq/YVszoeadN9m1D6BQq0AQnCb40BXef2+hK/mp7jAfwiUBBK…
selectors probed

Certificate (current)

R13
from 2026-05-01 to 2026-07-30
Expires in 70 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://cottontravel.co.uk/

present
  • x-content-type-options
findings
  • missing HSTS
  • missing Content Security Policy
  • missing frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-content-type-options
nosniff

Links to (3)

Linked from (1)