fireservicecollege.ac.uk
HTML metadata
Technology
- Server
- Microsoft-IIS
- CMS
- Gatsby
- Analytics
-
- Google Analytics
- Google Tag Manager
- Ads
-
- Google Ads (DoubleClick)
- Fonts
-
- Adobe Fonts
- Google Fonts
Third-party hosts loaded (11)
- ajax.aspnetcdn.com×3
- app.enzuzo.com×2
- www.google.com×2
- www.googletagmanager.com×2
- fonts.gstatic.com×1
- p.typekit.net×1
- region1.google-analytics.com×1
- stats.g.doubleclick.net×1
- use.typekit.net×1
- www.google-analytics.com×1
- www.gstatic.com×1
Social
Contact
- Phone
- Address
- The Fire Service CollegeLondon Road, Moreton-in-MarshGloucestershire, GL56 0RHTel: +44 (0)1608 650 831
DNS records live
- NS
-
- dns1.cscdns.net
- dns2.cscdns.net
- MX
-
- 5 fireservicecollege-ac-uk.mail.protection.outlook.com
- 500 netstar.fireservicecollege.ac.uk
- TXT
-
Show 6 TXT records
pardot824863=b42af9a7d569d44f9dc88584a90ec42ce7a16b851ce661b6970fb2b58efb12fdsending_domain824863=04a3728ce41dade848da0d1a44cd844c6dcecd80c260deabe54708f2859a7f05WOtlpp7w+uQjJsN666N2ih2hbHetcN5djXXlv+i3lzgolLFekzHC6ehHThbnEztglFolGgUEwj4W2TUOoKiphw==oX6wQMgEwFi+lkt3YLaOjwS6Brbi6QNJdw12go4PoNCgyjQ3KOl1QERHfcDy3uWsufvwFQnFDZFLai8k3y5euQ==QuoVadis=c02535a9-cadc-4bd5-9a6a-4fe83c0c6964QuoVadis=ff37b2b2-e9f8-4f99-abc7-732b6cbf33e0
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 mx ip4:78.129.229.150 ip4:89.185.150.163 ip4:217.68.67.193 include:v1ltm.com include:mailcontrol.com include:spf.protection.outlook.com include:spf.mailjet.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; adkim=s; aspf=s;policy: reject (enforced) - DKIM
-
- selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDB8yN7RL+i7UiXkvRoV/mwvKZhwUnp1xe2yj23U7CTWBwE/OpLx1oVtMO38+IqG6m/18iWvnhZct6+X+CnrS… - dkim:
v=DKIM1; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCi2sSdBDWR5wooAeLGhZ1Y1BtnmuUhWrqIT6CFtBbw54CQ66MEtAy1L+jmXZu73AT89UX2EKl1iUDoFmWL8sweKD6HR…
selectors probed - selector2:
Certificate (current)
WR3
Expires in 50 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' *.umbraco.com *.test.com *.enzuzo.com *.turtl.co *.aspnetcdn.com *.doubleclick.net *.ytimg.com *.typekit.net *.datadoghq-browser-agent.com *.ggpht.com cdn.jsdelivr.net *.vimeo.com *.youtube.com *.google.co.uk *.google.com *.googletagmanager.com *.google-analytics.com *.googlesyndication.com *.googleadservices.com *.gstatic.com *.googleapis.com *.bing.com *.facebook.com *.facebook.net *.twitter.com *.linkedin.com data: wss: blob:;