gillespies.co.uk

.uk crawl

First seen 2026-06-01 · Last seen 2026-06-01 · ok HTTP/1.1 200 1657 ms crawled 2026-06-01

GB · 35.177.23.173 · AS16509 Amazon.com, Inc.

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
Landscape Architecture, Masterplanning and Landscape Planning
Description
Gillespies is a diverse and free-thinking team of landscape architects, landscape planners, masterplanners, and urban designers based in London, Oxford, Leeds, Manchester, Abu Dhabi and Riyadh. We turn human stories into exceptional places.
Language
en-US
Canonical
https://www.gillespies.co.uk/
Feeds

Open Graph

url
https://www.gillespies.co.uk/
title
Landscape Architecture, Masterplanning and Landscape Planning
site name
Gillespies
description
Gillespies is a diverse and free-thinking team of landscape architects, landscape planners, masterplanners, and urban designers based in London, Oxford, Leeds, Manchester, Abu Dhabi and Riyadh. We turn human stories into exceptional places.

Technology

CDN
Amazon CloudFront

Social

Contact

Email
Phone

DNS records live

NS
  • ns1-03.azure-dns.com
  • ns2-03.azure-dns.net
  • ns3-03.azure-dns.org
  • ns4-03.azure-dns.info
MX
  • 10 gillespies-co-uk.mail.protection.outlook.com
Verified for
  • Adobe
  • Apple
  • Microsoft 365

Email authentication weak

SPF
v=spf1 include:spfa.cpmails.com include:spf.protection.outlook.com include:sendgrid.net ipv4:89.206.151.35 -all
strict (-all)
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

E8
from 2026-05-04 to 2026-08-02
Expires in 58 days

HTTP security headers

Header hygiene 75/100 Checked live page: https://www.gillespies.co.uk/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-content-type-options
nosniff
content-security-policy
default-src * https: data: blob: android-webview-video-poster: 'unsafe-inline' 'unsafe-eval'; object-src 'none'; frame-ancestors 'self';
strict-transport-security
max-age=31536000; includeSubDomains

Links to (4)

Linked from (1)