cundall.com
HTML metadata
Technology
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (1)
- use.typekit.net×1
Social
Registration
- Registrar
- Tucows Domains Inc.
- Created
- 1998-07-27
- Expires
- 2026-07-26 68 days left
- Updated
- 2025-06-27
- Name servers
-
- ns-1012.awsdns-62.net
- ns-1039.awsdns-01.org
- ns-1700.awsdns-20.co.uk
- ns-314.awsdns-39.com
DNS records live
- NS
-
- ns-1012.awsdns-62.net
- ns-1039.awsdns-01.org
- ns-1700.awsdns-20.co.uk
- ns-314.awsdns-39.com
- MX
-
- 10 eu-smtp-inbound-1.mimecast.com
- 10 eu-smtp-inbound-2.mimecast.com
- TXT
-
Show 12 TXT records
MS=ms27686309ZOOM_verify_e4EEKHU8vpPqrknIDFZz59autodesk-domain-verification=JNQqRxodnbgMdUMun8gJautodesk-domain-verification=d_iZxpxSl2PIp15ocOLFb27ksebetsn2gtb54a8vipo70lgoogle-site-verification=w9Rqu0Aov8JcnayVyZveJjRxdZdqOj1QsQDqw3m0B8ohave-i-been-pwned-verification=721d300682d10f85792485c08cb7cd1ams-domain-verification=b2cdb646-b860-44bf-983e-6a0fb75a4f43workplace-domain-verification=wTX3ltdLCZ3343J55czo0sQRWfdtKO53i8od92ogaofm91s3l2er271f6dd9uju689fl8pguki04qh2kaa6lll0h2hmbov5e390kjskbk1pd
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:eu._netblocks.mimecast.com include:emaileuc.freshservice.com include:spf.uk.exclaimer.net include:_spf.freshsales.io include:fdspfeuc.freshemail.io ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:eff35baee019068@rep.dmarcanalyzer.com; ruf=mailto:eff35baee019068@for.dmarcanalyzer.com; pct=100; fo=1;policy: reject (enforced) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqadggmtm87sjDi+ZQYzwN6DOP5D8/1CJBPWHqne2//m82J9LjlI/KjebPTHqQoFXnnPV9/XMVmJHx8IZzH… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnz32nGoGuAqhmsBkSj4xAzdG9yfH/egDUpxuwUN8niBTh+q+GJT8IzhYoQYFWd1ThHA86xvxd96fw4ZocE…
selectors probed - s1:
Certificate (current)
E8
Expires in 78 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-content-type-options
nosniff- content-security-policy
default-src * https: data: blob: android-webview-video-poster: 'unsafe-inline' 'unsafe-eval'; object-src 'none'; frame-ancestors 'self';- strict-transport-security
max-age=31536000; includeSubDomains