eastamb.nhs.uk
HTML metadata
Technology
- CDN
- Azure Front Door
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1.nhs.uk
- ns2.nhs.uk
- ns3.nhs.uk
- ns4.nhs.uk
- MX
-
- 0 eastamb-nhs-uk.mail.protection.outlook.com
- TXT
-
mN9bWtfyBqZ6AVbPSEx4y+XAEip0M4R78OxbPpnFj9c=63CD79866A40FE20A8E982BDFF98E7C1B530550C35CE3E9C7FD05C2B3F972E4A/0SxOj2eAly7K49Q0KhNFOVFWz5Cze5YFIjJ5rHOqVrSNle3F4Jl/e/P71NJD+sl9ASuYAKaSXNFG8uHwP95yw==
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:spf-auth.eastamb.nhs.uk include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; pct=100; rua=mailto:dmarc-rua@dmarc.service.gov.ukpolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvbUfGHion4rCRx5Sx48Tup8mh5GJQOpDbbGzhsuruTcX/fDk86rvE8WE6nxIDss4nTMowBkyy9eUfj… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA9BgBL3+dLb5xm8nIKjtTl5ApTFahTlJTkTTk/p7Aew1/qwLkcmdYz+baXVsTh8QaAWTf3Qc204999d…
selectors probed - selector1:
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 77 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://www.youtube-nocookie.com apikeys.civiccomputing.com app.powerbi.com/ https://www.google.com; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.cqc.org.uk feeds.trac.jobs https://www.googletagmanager.com https://cc.cdn.civiccomputing.com https://connect.facebook.net https://www.facebook.com *.google-analytics.com/ https://www.gstatic.com https://fonts.googleapis.com/ gstatic.com https://stats.g.doubleclick.net/ https://region1.analytics.google.com/ https://www.google.co.uk/ads/ https://analytics.google.com/ https://www.google.com.eg/ads/ *.google.co.uk/ *.google.com/; style-src 'self' 'unsafe-inline' *.cqc.org.uk feeds.trac.jobs https://assets.nhs.uk/* https://www.googletagmanager.com/ https://fonts.googleapis.com/; img-src 'self' blob: data: *.eas.nomensa.xyz *.eastamb.nhs.uk *.cqc.org.uk static.trac.jobs feeds.trac.jobs https://www.googletagmanager.com localhost:1337/uploads/; connect-src 'self' feeds.trac.jobs static.trac.jobs apikeys.civiccomp- strict-transport-security
max-age=63072000