evelyn.com
HTML metadata
Technology
- Analytics
-
- Hotjar
- Ads
-
- Meta Pixel
- Cookie consent
-
- OneTrust
- Fonts
-
- Google Fonts
Third-party hosts loaded (7)
- fonts.gstatic.com×7
- cdn.cookielaw.org×3
- connect.facebook.net×1
- l.getsitecontrol.com×1
- script.hotjar.com×1
- tags.tiqcdn.com×1
- widget.trustpilot.com×1
Social
Contact
- Phone
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 1997-01-01
- Expires
- 2028-12-31 955 days left
- Updated
- 2026-02-06
- Name servers
-
- udns1.cscdns.net
- udns2.cscdns.uk
DNS records live
- NS
-
- udns1.cscdns.net
- udns2.cscdns.uk
- MX
-
- 0 evelyn-com.mail.protection.outlook.com
- TXT
-
Show 10 TXT records
14368527=DMARC1; p=reject_oj0dhd1fi7o7ip2no95jo59mhwxl3n00ed1fe018ad8d460e4a41c4bba92687b0b32e0e766ibmid=6c0b55f8-d0d0-4450-aa74-ef4e418d169eaccess-domain-verification=8c3ce9e4e7d978a9af54922105879fc77368a8f924df687452ec7e294352cbben6ne5t725ns8ac9oa94hlgpoh1adobe-sign-verification=289a292963bde28ee8372863e4775ca6astro-domain-verification=cmiohpmiq6ihc01p6kx4bjfw1pexip-ms-tenant-domain-verification=b60820d1-d646-437e-a4bc-6c35fbf009e1
- Verified for
-
- Adobe
- Apple
- CloudHealth
- Microsoft 365
- Miro
- OneTrust
- OpenAI
- TeamViewer
Email authentication strong
- SPF
-
v=spf1 ip4:94.236.83.186 ip4:168.245.48.141 ip4:103.3.197.47 ip4:103.3.199.47 ip4:51.140.109.121 ip4:54.154.125.193 ip4:51.140.55.43 ip4:52.142.188.230 ip4:213.212.85.72 ip4:89.206.230.178 ip4:195.35.125.67 ip4:194.75.193.52 ip4:195.99.208.160/27 include:em179.evelyn.com include:spf.uk.exclaimer.net include:spf.mailjet.com include:spf2.accessacloud.com include:amazonses.com include:spf.uk.odmad.quest-on-demand.com include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:rbfhjr9g@ag.eu.dmarcian.com;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0qI/6D+l9wmTIxfOczAjY2zvN+AvinkA1RiwLttsNIGDZj1ZBTBBlhCGU31TOFVnS/74T2DmJzCk/m… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzu0K2iERDTu5/dwZgPo1D/wLJttwXBpeJn7bvuEJn78LDT7J73IEEQpVGJ66Amn9dHMayqN67bxmI8hw7G… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtK9fvRcaCWhwcm8N8EutjCtEmJAEmJsX58WLEIb8f6/wPR1fQYhdy8xb9kySu6Kr32n/hCBX/aD7SLWCN/…
selectors probed - selector1:
Certificate (current)
Trusted Secure Certificate Authority DV
Expires in 6 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-embedder-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin- x-frame-options
sameorigin- permissions-policy
encrypted-media=(),geolocation=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'none';script-src 'self' 'nonce-Evelyn' cdn.jsdeliver.net *.asset.tv *.bing.net *.evelyn.com *.calendly.com *.vimeocdn.com *.cloudfront.net *.withcubed.com *.smartrecruiters.com script.infinity-tracking.com embed.typeform.com *.bing.com cdn.cookielaw.org *.trustpilot.com connect.facebook.net js.monitor.azure.com *.googletagmanager.com *.fullstory.com *.doubleclick.net *.hotjar.com *.licdn.com *.tiqcdn.com tracker.marinsm.com *.abtasty.com *.tealiumiq.com www.google-analytics.com *.ceros.com *.google.com *.google.co.uk *.google.com.tr *.google.com.pl *.getsitecontrol.com *.getsitectrl.com *.vimeo.com *.linkedin.com *.googlesyndication.com *.dotdigital-pages.com 'unsafe-eval' 'unsafe-inline';style-src 'self' embed.typeform.com cdn.jsdeliver.net *.asset.tv *.calendly.com *.bing.net static.smartrecruiters.com *.googleapis.com *.abtasty.com 'unsafe-inline';connect-src 'self' cdn.jsdeliver.net *.bing.com *.bing.net i.emlfiles.com *.asset.tv *.infinity-tracking.com *.infinity-trac- strict-transport-security
max-age=86400000; includeSubDomains; preload- cross-origin-opener-policy
same-origin- cross-origin-embedder-policy
unsafe-none- cross-origin-resource-policy
cross-origin