craftingrealm.co.uk
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- jQuery
- 2.2.3 known XSS (<3.5)
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (16)
- cdn.shopify.com×4
- shop.app×2
- annamariedesigns.co.uk×1
- diestodiefor.com×1
- hotshotcraft.co.uk×1
- monorail-edge.shopifysvc.com×1
- static.premiersite.co.uk×1
- www.art-of-craft.co.uk×1
- www.card-io.com×1
- www.inkylicious.co.uk×1
- www.jellybeancrafts.co.uk×1
- www.liliofthevalley.co.uk×1
- www.papercraftfairs.co.uk×1
- www.thecardhut.co.uk×1
- www.wildspiderdesigns.com×1
- www.youtube.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1.meganameservers.eu
- ns2.meganameservers.eu
- ns3.meganameservers.eu
- MX
-
- 10 mx1c51.megamailservers.eu
- 100 mx2c51.megamailservers.eu
- 110 mx3c51.megamailservers.eu
- 120 mx4c51.megamailservers.eu
Email authentication weak
- SPF
-
v=spf1 include:spfc51.megamailservers.eu ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
E8
Expires in 70 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- short HSTS max-age
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
block-all-mixed-content; frame-ancestors 'none'; upgrade-insecure-requests;- strict-transport-security
max-age=7889238
Links to (23)
- youtube.com×1
- wildspiderdesigns.com×1
- thestamphut.co.uk×1
- thecardhut.co.uk×1
- shopify.com×1
- papercraftfairs.co.uk×1
- nicecrafting.co.uk×1
- liliofthevalley.co.uk×1
- jellybeancrafts.co.uk×1
- instagram.com×1
- inkylicious.co.uk×1
- hotshotcraft.co.uk×1
- honeydoocrafts.co.uk×1
- google.com×1
- facebook.com×1
- excaliburfairs.co.uk×1
- diestodiefor.com×1
- carlscraftcabin.co.uk×1
- card-io.com×1
- blogspot.com×1
- art-of-craft.co.uk×1
- annamariedesigns.co.uk×1
- 1craft1.co.uk×1