flightcentre.co.uk
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- CloudFront
- CMS
- Drupal
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (7)
- cloudinary.fclmedia.com×34
- omni-flights-shopping-platform.edge.soar.fcl.cloud×1
- www.flightcentre.ca×1
- www.flightcentre.co.nz×1
- www.flightcentre.co.za×1
- www.flightcentre.com.au×1
- www.googletagmanager.com×1
Social
Contact
- Phone
- Address
- rd rates apply. 0844
Registration
- Registrar
- CSC Corporate Domains, Inc
- Created
- 1997-08-29
- Expires
- 2026-08-29 101 days left
- Updated
- 2025-08-25
- Name servers
-
- ns1.fctg.cloud.
- ns2.fctg.cloud.
- ns3.fctg.cloud.
- ns4.fctg.cloud.
DNS records live
- NS
-
- ns1.fctg.cloud
- ns2.fctg.cloud
- ns3.fctg.cloud
- ns4.fctg.cloud
- MX
-
- 10 de-smtp-inbound-1.mimecast.com
- 10 de-smtp-inbound-2.mimecast.com
- TXT
-
Show 14 TXT records
google-site-verification=odFcRRf2F0pC76wAes_Ugshxm_UPVZlosKGT-AsJV-Agoogle-site-verification=ufwqz-Ajk-2wkQb9OU4bgyb01QQMLvxIidAUnqwxFtcgoogle-site-verification=zo6yac2fo-1BBbcKE68tVJLtkXHoz62MpSeh3SR5ykEmMyssq8mVwxr5VzfGsNNqnmdGTVlKZpky+fSCqiBHzxJ8qs4j8j+ZaS9heO+JaQPuw7TBUu9zT8Paqglp/6P1A==miro-verification=f59527636a8c04f20e1e9da04657afb31e56d422notion-domain-verification=DaHiyUquoZULdwlover0RPz0HdOc8h1qpcMldqm9UCZ00D6F000002YC00=1TBTs0000000CyrSendinblue-code:d15a9419906104203b8d54fc8e7cd4adadobe-idp-site-verification=41607facacce6bbffc8a3dd33abdc6bc2c3ac82b38a4b01b155b9869c826d993anthropic-domain-verification-2wwfxr=73K318TWjhgpHklskeNyr83wlapple-domain-verification=pBaRYhEQvgOuL2Ilatlassian-domain-verification=D5g8bUvceHSXkpgd3A/hYMBrIaKOd3C3lHAFovSuMeadue8EEJVdLEmCyI3pMxurbrevo-code:c2446174a2c03ddb3d1c6fef1ed5063acisco-ci-domain-verification=1476d232545d9ffbf3f13fdfdd92c536c1bb75deb278ac977e4c3617a58208bc
Email authentication strong
- SPF
-
v=spf1 redirect=62bqo598._spf._d.mim.ecno all qualifier - DMARC
-
v=DMARC1; p=quarantine; sp=quarantine; rua=mailto:bf5603eb6697076@rep.dmarcanalyzer.com,mailto:rua@dmarc.brevo.com; ruf=mailto:bf5603eb6697076@for.dmarcanalyzer.com; fo=1; pct=100policy: quarantine · sp=quarantine - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQChdhsn7X4L7DTFuRkWFJPjPa9MbhDRMLhAvVLzQEw7VWnIMJotw+RadV/lPUcVMT7gIybRIC2Szirk+a4Z+3… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsr6V1jPXhfPC8LsyGFrX3zE8cryXEPwhscrdBRNwmpUthkP5Kj79IugvNbtlappXqzt8iPHlsmWrSVKxZd… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC52MgrqFO6b20z1AjF6dVNCM7BNiGOMWCXaPvR++n3xrrChgTmBM1lXxf8f6aNo/Pe1N1Pl2HcJFqmlzSFhs2Dp+…
selectors probed - selector1:
Certificate (current)
R12
Expires in 37 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
Header values
- referrer-policy
strict-origin-when-cross-origin- permissions-policy
microphone=(), camera=()- content-security-policy
img-src https: blob: data:; script-src 'self' 'unsafe-eval' 'unsafe-inline' https://*.fcl.cloud https://*.flightcentre.com https://*.flightcentre.com.au https://*.flightcentre.co.nz https://*.flightcentre.co.za https://*.flightcentre.ca https://*.flightcentre.co.uk https://www.googletagmanager.com https://*.google-analytics.com https://www.youtube.com https://*.fullstory.com https://vxml4.plavxml.com https://*.nr-data.net https://*.usabilla.com http://*.usabilla.com https://*.newrelic.com https://d6tizftlrpuof.cloudfront.net https://cdnjs.cloudflare.com https://cdn.optimizely.com https://*.outbrain.com https://analytics.tiktok.com https://bat.bing.com https://cdn.abrankings.com https://connect.facebook.net https://edge.fullstory.com https://loader.wisepops.com https://wisepops.net https://s.pinimg.com https://snap.licdn.com https://googleads.g.doubleclick.net https://accounts.google.com https://*.pinterest.com https://*.evergage.com https://js.adsrvr.org https://static.criteo.net https- strict-transport-security
max-age=31536000- content-security-policy-report-only
img-src https: blob: data:; script-src 'self' 'unsafe-eval' 'unsafe-inline' https://*.fcl.cloud https://*.flightcentre.com https://*.flightcentre.com.au https://*.flightcentre.co.nz https://*.flightcentre.co.za https://*.flightcentre.ca https://*.flightcentre.co.uk https://www.googletagmanager.com https://*.google-analytics.com https://www.youtube.com https://*.fullstory.com https://vxml4.plavxml.com https://*.nr-data.net https://*.usabilla.com http://*.usabilla.com https://*.newrelic.com https://d6tizftlrpuof.cloudfront.net https://cdnjs.cloudflare.com https://cdn.optimizely.com https://*.outbrain.com https://analytics.tiktok.com https://bat.bing.com https://cdn.abrankings.com https://connect.facebook.net https://edge.fullstory.com https://loader.wisepops.com https://wisepops.net https://s.pinimg.com https://snap.licdn.com https://googleads.g.doubleclick.net https://accounts.google.com https://*.pinterest.com https://*.evergage.com https://js.adsrvr.org https://static.criteo.net https
Links to (10)
- apple.com×1
- caa.co.uk×1
- facebook.com×1
- fctgcareers.com×1
- fctgl.com×1
- google.com×1
- instagram.com×1
- pinterest.co.uk×1
- tiktok.com×1
- youtube.com×1