gallaghersmallbusiness.com

.com crawl

First seen 2026-04-16 · Last seen 2026-05-14 · ok HTTP/1.1 200 2843 ms crawled 2026-05-11

US · 45.60.123.80 · AS19551 Incapsula Inc

Reputation 100/100

Classifying

HTML metadata

Title
Small Business Made Easy Home | Gallagher Small Business
Description
Our Small Business Experts work with our top-rated insurance carriers to customize solutions specifically for your business.
Language
en
Canonical
https://www.gallaghersmallbusiness.com/

Open Graph

url
https://www.gallaghersmallbusiness.com/
title
Small Business Made Easy Home | Gallagher Small Business
site name
GSB
description
Our Small Business Experts work with our top-rated insurance carriers to customize solutions specifically for your business.

Technology

Server
Microsoft-IIS
Analytics
  • Google Tag Manager

Third-party hosts loaded (3)

  • code.jquery.com×1
  • policy.cookiereports.com×1
  • www.googletagmanager.com×1

Registration

Registrar
CSC Corporate Domains, Inc.
Created
2021-06-01
Expires
2026-06-01 12 days left
Updated
2025-05-28
Name servers
  • a1-74.akam.net
  • a14-67.akam.net
  • a24-64.akam.net
  • a26-64.akam.net
  • a3-64.akam.net
  • a5-64.akam.net

DNS records live

NS
  • a1-74.akam.net
  • a14-67.akam.net
  • a24-64.akam.net
  • a26-64.akam.net
  • a3-64.akam.net
  • a5-64.akam.net
MX
  • 0
TXT
  • g7v8bfsp6ykxwxwxlqc6zcr7c5zd2mh5
  • SFMC-R5QMu15kKGTwQl8lWRhF6YNtyvjIEmHZv917ChgG
  • lpbndh1n937cn9s6x8k6rybxkshrvzv1
Verified for
  • GlobalSign

Email authentication strong

SPF
v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email ~all
softfail (~all)
DMARC
v=DMARC1; p=quarantine; rua=mailto:dmarc_agg@vali.email
policy: quarantine
DKIM
no key found at common selectors

Certificate (current)

DigiCert Global G2 TLS RSA SHA256 2020 CA1
from 2026-03-25 to 2026-10-10
Expires in 143 days

HTTP security headers

Header hygiene 75/100 Checked live page: https://www.gallaghersmallbusiness.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • weak frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
sameorigin, allow-from *.isrvr.com, allow-from *.ajginternational.com, allow-from *.penunderwriting.co.uk, allow-from *.gallagherheath.local, allow-from *.siteimprove.com
x-content-type-options
nosniff
content-security-policy
default-src https: https://*.hotjar.com https://*.hotjar.io wss://*.hotjar.com https://*.qualtrics.com; script-src https: 'unsafe-inline' 'unsafe-eval' https://*.qualtrics.com; style-src https: 'unsafe-inline' https://*.qualtrics.com; img-src https: data: https://*.qualtrics.com; font-src data: https:; connect-src https: wss://*.hotjar.com https://*.qualtrics.com; media-src blob: https:; object-src https:; frame-src http: https: https://*.qualtrics.com; worker-src blob: https:; frame-ancestors 'self' https://isrvr.com http://isrvr.com https://iportal.ajginternational.com http://iportal.ajginternational.com https://share.penunderwriting.co.uk http://share.penunderwriting.co.uk https://internal.client.gallagherheath.local http://internal.client.gallagherheath.local https://my2.siteimprove.com; form-action 'self' https://analytics.clickdimensions.com *.clickdimensions.com https://www.payconnexion.com https://*.qualtrics.com https://forms.hsforms.com/; upgrade-insecure-requests; block-all
strict-transport-security
max-age=31536000

Links to (3)

Linked from (2)