english-heritageshop.org.uk
HTML metadata
Technology
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- widget.trustpilot.com×2
- www.googletagmanager.com×2
Social
Contact
- Phone
Registration
- Registrar
- 123-Reg Limited t/a 123-reg
- Created
- 2007-09-28
- Expires
- 2027-09-28 494 days left
- Updated
- 2025-09-29
- Name servers
-
- ns-1176.awsdns-19.org.
- ns-1761.awsdns-28.co.uk.
- ns-564.awsdns-06.net.
- ns-68.awsdns-08.com.
DNS records live
- NS
-
- ns-1176.awsdns-19.org
- ns-1761.awsdns-28.co.uk
- ns-564.awsdns-06.net
- ns-68.awsdns-08.com
- MX
-
- 5 mail.english-heritageshop.org.uk
Email authentication weak
- SPF
-
v=spf1 include:amazonses.com include:spf.dotdigital.com ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
Amazon RSA 2048 M01
Expires in 217 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
font-src fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com www.paypalobjects.com 'unsafe-inline' data: use.fontawesome.com/releases/v5.6.0/webfonts *.globalpay.com https://fonts.gstatic.com *.fontawesome.com 'self' data: *.stripe.com *.stripecdn.com klarna.com *.klarna.com *.klarnacdn.net *.klarnaevt.com *.link.com *.amazon.com data: 'self' 'unsafe-inline'; form-action pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com *.gpwebpay.com *.gpe.cz *.globalpay-ecommerce.com *.facebook.com * 'self' 'unsafe-inline'; frame-ancestors *.stripe.com stripe.com *.link.com *.amazon.com * 'self'; frame-src fast.amc.demdex.net *.adobe.com bid.g.doubleclick.net www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com player.vimeo.com *.youtube.com https://www.google.com/recaptcha/ *.youtube-nocookie.com *.braintreegateway.com *.paypal.com google.com *.google.com *.weltpixel.com *.dotdigital-pages.com *.dotdigital.com account.fetchify.com *.americanexpre