hymans.co.uk
HTML metadata
Technology
- CDN
- Azure Front Door
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- cc.cdn.civiccomputing.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Easyspace Ltd
- Created
- 1997-06-06
- Expires
- 2027-06-06 381 days left
- Updated
- 2025-05-07
- Name servers
-
- ns0.dnsmadeeasy.com.
- ns1.dnsmadeeasy.com.
- ns2.dnsmadeeasy.com.
- ns3.dnsmadeeasy.com.
- ns4.dnsmadeeasy.com.
DNS records live
- NS
-
- ns0.dnsmadeeasy.com
- ns1.dnsmadeeasy.com
- ns2.dnsmadeeasy.com
- ns3.dnsmadeeasy.com
- ns4.dnsmadeeasy.com
- MX
-
- 0 hymans-co-uk.mail.protection.outlook.com
- TXT
-
Show 11 TXT records
abuseipdb-verification=FV4ymDZkaccess-domain-verification=eb3e0fa9427171b6fd7f2f6fd6f2fbcbabb99445697cbe3afc8c37af0614d551MS=7E9FE3B35ECCC1C238FF0E40D68328F8BB7A3503TUTF5A2uDwckjz4VLNsZM6MlHskI1yY09eC8f7D6MmKFGe49hdFi7LleEYK/RWPjdmWB63IUJLiqmX0htXYPDQ==5smmee5srduqdu5g4fbmkcv5itautodesk-domain-verification=Mu-tbbDRO3Lx34It_Xpc_09w6npomehp502y7gwfwdx10ko2rmmr_sxc2z7n7cp88rvwbvln6qqp8ik5l001intersight=7b6c5470fde986a14940113fee327e0c1eea31dd10665f9c23d6ecaf3039a6fdrm_verify=d94dc313d62scre6tcsb5ct0p7nh3buuu33b
- Verified for
-
- Apple
- Atlassian
- Brevo
- DocuSign
- Google Workspace
- Microsoft 365
- Miro
- Pendo
- Zoho
Email authentication partial
- SPF
-
v=spf1 ip4:78.109.165.113 include:spf.protection.outlook.com include:_spf.eu.messagegears.net include:spf.sendinblue.com include:docebosaas.com include:spf.zohomail360.eu include:mail.moneyinfo.co.uk ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; fo=1; rua=mailto:9e537a27@mxtoolbox.dmarc-report.com; ruf=mailto:9e537a27@forensics.dmarc-report.com;policy: none (monitoring only) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDaICjv13QkuY8TDr9q8xPCKMJhnJQHm12RKzwX3yjnegHMo4TaflwdLRMHmAxS+vxZUIKxP9+I6D3k136BTE… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv/bgz9FdNz6WG5n8aJ9tIKX0rQCFvS4GWqAvUzVrXxMZs0RLqMaVSAm21yaffrm3qODR3PPLg4b6mZzsDf… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCpmj5HkPjNM7Gz4n2US7mIMyTxqv/6z1m7oSGW6DjGC4zFd/Adi0si+6fVfhRnucRsvXDrza5YOhiHHlRrmKbLCi…
selectors probed - selector1:
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 146 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
SameOrigin- x-content-type-options
nosniff- content-security-policy
default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*.googletagmanager.com https://*.doubleclick.net https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://*.umbraco.com cc.cdn.civiccomputing.com https://*.monitor.azure.com https://*.msecnd.net https://*.dc.services.visualstudio.com https://*.clickdimensions.com https://*.hymans.co.uk https://*.hotjar.com https://snap.licdn.com https://static.oktopost.com widget.spreaker.com https://public.flourish.studio https://cdn.lightsite.ai https://api.llm-discovery-api.com https://*.crazyegg.com;style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://*.clickdimensions.com https://*.crazyegg.com;img-src 'self' https://*.googletagmanager.com https://*.google-analytics.com https://*.google.co.uk https://*.google.com https://*.umbraco.com https://*.linkedin.com https://*.vimeocdn.com https://*.clickdimensions.com https://online.flippingbook.com data: https://*.hymans.co.uk https://public.flo- strict-transport-security
max-age=31536000; includeSubDomains