enwl.co.uk
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
Third-party hosts loaded (7)
- ajax.googleapis.com×2
- services.postcodeanywhere.co.uk×2
- cdn-ukwest.onetrust.com×1
- cdn.botframework.com×1
- dl.episerver.net×1
- www.googletagmanager.com×1
- www.youtube.com×1
Social
Registration
- Registrar
- CSC Corporate Domains, Inc
- Created
- 2007-12-06
- Expires
- 2026-12-06 200 days left
- Updated
- 2025-12-02
- Name servers
-
- ns1.netnames.net.
- ns2.netnames.net.
- ns5.netnames.net.
- ns6.netnames.net.
DNS records live
- NS
-
- ns1.netnames.net
- ns2.netnames.net
- ns5.netnames.net
- ns6.netnames.net
- MX
-
- 5 enwl-co-uk.mail.protection.outlook.com
- TXT
-
Show 7 TXT records
hes=3dcbf3c6c189ca45eec7cf6f64d27c39globalsign-domain-verification=02D220FB53761EA4F8D626459700B60Cglobalsign-domain-verification=18037816158DAD08ECDE74536BDC19B8RQFn7NaUCdYut9A695HVt4jF/f64wD+kOlHHmOEYUzTqb/uBv779x6UFxjcp7NYWJT/g6UIhEaxKgtdk4VI8jA==_wou1lhcqduv0v900odvclmzcqkafscidbzrhhn06yjhggfrf83b38c2x8t24njcr8yq6y1ghnypfrs74z3vdh3dmq70q6vk
Email authentication partial
- SPF
-
v=spf1 include:spf.tractivity.co.uk include:spf.protection.outlook.com include:servers.mcsv.net include:pcges.com ip4:195.80.64.68 ip4:54.72.36.230 ip4:213.216.147.97 ip4:95.131.155.78 ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc_rua@enwl.co.uk;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDubh3YUFEQy2dmxLXu8ybKY2hWDkyWk83ng7oxrwAa9o+Uk3dWZcySKmHbqHMeCPTlJF+zz7psNdzwRBRKtu… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 62 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.youtube.com js.monitor.azure.com tagmanager.google.com www.googletagmanager.com tagmanager.google.com www.google-analytics.com static.hotjar.com script.hotjar.com ajax.googleapis.com services.postcodeanywhere.co.uk dl.episerver.net maps.google.com maps.googleapis.com www.google.com www.gstatic.com api.reciteme.com vo.msecnd.net *.vo.msecnd.net cdn.botframework.com cdn-ukwest.onetrust.com; style-src 'self' 'unsafe-inline' tagmanager.google.com fast.fonts.net services.postcodeanywhere.co.uk fonts.googleapis.com fonts.gstatic.com api.reciteme.com; frame-src enwl-crm-forms-uat.powerappsportals.com enwl-crm-forms-prod.powerappsportals.com 'self' vars.hotjar.com www.youtube.com www.google.com api.reciteme.com heyzine.com sway.office.com; connect-src 'self' *.google-analytics.com *.analytics.google.com maps.googleapis.com wss://*.hotjar.com https://*.hotjar.com https://*.hotjar.io stats.g.doubleclick.net in.hotjar.com vc.ho