gallaghersmallbusiness.com
HTML metadata
Technology
- Server
- Microsoft-IIS
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- code.jquery.com×1
- policy.cookiereports.com×1
- www.googletagmanager.com×1
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 2021-06-01
- Expires
- 2026-06-01 12 days left
- Updated
- 2025-05-28
- Name servers
-
- a1-74.akam.net
- a14-67.akam.net
- a24-64.akam.net
- a26-64.akam.net
- a3-64.akam.net
- a5-64.akam.net
DNS records live
- NS
-
- a1-74.akam.net
- a14-67.akam.net
- a24-64.akam.net
- a26-64.akam.net
- a3-64.akam.net
- a5-64.akam.net
- MX
-
- 0
- TXT
-
g7v8bfsp6ykxwxwxlqc6zcr7c5zd2mh5SFMC-R5QMu15kKGTwQl8lWRhF6YNtyvjIEmHZv917ChgGlpbndh1n937cn9s6x8k6rybxkshrvzv1
- Verified for
-
- GlobalSign
Email authentication strong
- SPF
-
v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc_agg@vali.emailpolicy: quarantine - DKIM
- no key found at common selectors
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 143 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
sameorigin, allow-from *.isrvr.com, allow-from *.ajginternational.com, allow-from *.penunderwriting.co.uk, allow-from *.gallagherheath.local, allow-from *.siteimprove.com- x-content-type-options
nosniff- content-security-policy
default-src https: https://*.hotjar.com https://*.hotjar.io wss://*.hotjar.com https://*.qualtrics.com; script-src https: 'unsafe-inline' 'unsafe-eval' https://*.qualtrics.com; style-src https: 'unsafe-inline' https://*.qualtrics.com; img-src https: data: https://*.qualtrics.com; font-src data: https:; connect-src https: wss://*.hotjar.com https://*.qualtrics.com; media-src blob: https:; object-src https:; frame-src http: https: https://*.qualtrics.com; worker-src blob: https:; frame-ancestors 'self' https://isrvr.com http://isrvr.com https://iportal.ajginternational.com http://iportal.ajginternational.com https://share.penunderwriting.co.uk http://share.penunderwriting.co.uk https://internal.client.gallagherheath.local http://internal.client.gallagherheath.local https://my2.siteimprove.com; form-action 'self' https://analytics.clickdimensions.com *.clickdimensions.com https://www.payconnexion.com https://*.qualtrics.com https://forms.hsforms.com/; upgrade-insecure-requests; block-all- strict-transport-security
max-age=31536000