dssmith.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
Third-party hosts loaded (3)
- images1.cmp.optimizely.com×6
- cdn.cookielaw.org×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 2003-01-14
- Expires
- 2027-01-14 240 days left
- Updated
- 2026-01-10
- Name servers
-
- ns1.netnames.net
- ns2.netnames.net
- ns5.netnames.net
- ns6.netnames.net
DNS records live
- NS
-
- ns1.netnames.net
- ns2.netnames.net
- ns5.netnames.net
- ns6.netnames.net
- MX
-
- 0 dssmith-com.mail.protection.outlook.com
- TXT
-
Show 17 TXT records
p7wr3c21zndwtwtlcr965cpst55n04zdZOOM_verify_JdA7rEL6SKeEqRkXhvMjpQapple-domain-verification=tjwmU0RsEFjQnKiWibmid=713abf51-dfd8-4f5c-8b8b-cfd7b2a8c34fbrevo-code:b5226dd6d9e4bd729dcad7eb2551dba7d365mktkey=Ft5SDi6aYRxSxOjR0lc93XilWxcG5JUqPC1EQa5BiE0xl7C+T4mRvWd6nZFT02eNqMmOe4nczBb4yTGMRdGRH7AcSqL1XsR4q/o27wD+FgSBKwRX5+ZHRey2rf15U91i9w==Dynatrace-site-verification=bf77694d-639e-4642-a535-2593a8eaf48b__fgbi5otruutamvlg9ckh0lbfeqatlassian-domain-verification=6n51PjJfuOaosYo8G1LqwHevvEF5sWB1wdNX4dkMffhRsadPHGcp4XbYv5fj1rtIatlassian-domain-verification=eccyb0dd3EuWxiwlUfCG8Pp8HAa1FzQauJIJNtjshUu3BLFgMmGPgigbARasZ9223v2rp0akjf3tbda09phf2huna86evilpa6miur5h8rcsrehbn1vs6lrue94ru1u5kpd92flihag3hdbcbt67rtnvni3m8jq2jqp1m9r3bilvcf5hroc2a4evokus5ofcl4g9cqpuinq9ucu5ll8tlak3bg4agpbrbc1kwzwdhhtftk3jp9rsm45b3f08
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com ip4:207.120.3.84 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc_agg@vali.email; ruf=mailto:dmarc.ruf@dssmith.compolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApeJeG3Uyec9BKXmG7Xxc0jQ0JtrOSkAl5Xdb2FAAMEVMMouIdq0QjuucHnDnelWJCG9LUJJI/3gWVf… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxKJ+m7QH12+UAdKseVPoJ+o29DkwcFV7vqxmQaO216QXFfzyP03/ib4YP1o1UCqw2lK30dfj4Z7sBc… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - smtpapi:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwf…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 20 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-embedder-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
camera=(), microphone=(), geolocation=(self "https://google.com"), payment=(self)- x-content-type-options
nosniff- content-security-policy
script-src 'self' 'unsafe-eval' 'unsafe-inline' 'strict-dynamic' 'nonce-c666040a-5f77-4308-ab31-f8f4645ec427' http: https: ; object-src 'none' ; frame-src 'self' www.googletagmanager.com www.recaptcha.net td.doubleclick.net *.svc.dynamics.com e.issuu.com www.youtube.com de7.i-grasp.com *.investis.com streamio.com *.streamio.com tourmake.it player.vimeo.com kuula.co dssmarketing.viewin360.co sway.office.com app.inevent.uk dssmith.g3dlabs.com youtu.be prezi.com x.adroll.com www.facebook.com *.cdn.optimizely.com inevent.uk typeform.com *.typeform.com; frame-ancestors 'self' https://cmp.optimizely.com; base-uri 'self' ; report-uri https://www.dssmith.com/api/reporting/; report-to csp-endpoint;- strict-transport-security
max-age=31536000; includeSubDomains- cross-origin-opener-policy
unsafe-none- cross-origin-embedder-policy
unsafe-none- cross-origin-resource-policy
same-site