gorilla-cannabis-seeds.co.uk
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- widget.reviews.co.uk×3
- www.googletagmanager.com×2
Social
DNS records live
- NS
-
- gene.ns.cloudflare.com
- sterling.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
yHZ+xOJWAoGZP14xvbur+3SaLwN8r2r9Q3f7pZoqonU=66tywxp8kd2p4zhv699qy5r0vgnn1b77
- Verified for
-
Email authentication partial
- SPF
-
v=spf1 a mx ip4:67.227.87.64 include:_spf.google.com include:_spf.elasticemail.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:andy@gorillaseeds.com; ruf=mailto:andy@gorillaseeds.com; fo=1policy: none (monitoring only) - DKIM
-
- google:
v=DKIM1;k=rsa;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3VxgRW3DoyCGeA2BrY7S3L3SBJZkgVxpXpdAEg/OlTLXTLdOq2ciSbnAOrk/aaZlGqHzsn3Q/P4AXoRa…
selectors probed - google:
Certificate (current)
WE1
Expires in 30 days
HTTP security headers
- present
-
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- missing Content Security Policy
- weak frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN, SAMEORIGIN- x-content-type-options
nosniff- content-security-policy-report-only
font-src fonts.gstatic.com use.typekit.net *.cloudfront.net *.reviews.io *.reviews.co.uk data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.reviews.io *.reviews.co.uk 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src fast.amc.demdex.net *.adobe.com bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com player.vimeo.com https://www.google.com/recaptcha/ *.reviews.io *.reviews.co.uk 'self' 'unsafe-inline'; img-src data: assets.adobedtm.com amcglobal.sc.omtrdc.net dpm.demdex.net cm.everesttech.net *.adobe.com widgets.magentocommerce.com www.googleadservices.com *.google-analytics.com googleads.g.doubleclick.net www.google.com bid.