kindera.uk
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- fonts.googleapis.com×2
- cdnjs.cloudflare.com×1
- fonts.gstatic.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- 123-Reg Limited t/a 123-reg
- Created
- 2024-08-23
- Expires
- 2026-08-23 95 days left
- Updated
- 2024-09-21
- Name servers
-
- ashley.ns.cloudflare.com.
- dakota.ns.cloudflare.com.
DNS records live
- NS
-
- ashley.ns.cloudflare.com
- dakota.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
google-site-verification=wYLeRGAqYN9wwRx94P2guBO4cpUhlvjlX3i04zDM4qw
Email authentication partial
- SPF
-
v=spf1 a mx include:_spf.elasticemail.com include:_spf.google.com include:eu-sender.zohobooks.com ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=none;pct=100;policy: none (monitoring only) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxIqxCEMOziYucjwTfx57g2c7GTRpnhir5VJs2FD+S5pRe/ilwBKn7ltOS56CZOBcPe4n0hV7GeKEzG…
selectors probed - google:
Certificate (current)
E7
Expires in 26 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade, strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff, nosniff- content-security-policy
frame-ancestors 'self' kindera.uk patinagrain.co.uk; default-src 'self' 'unsafe-inline' i.ytimg.com; style-src 'self' 'unsafe-inline' fonts.googleapis.com https://cdn.jsdelivr.net kindera.uk patinagrain.co.uk; font-src 'self' data: fonts.googleapis.com fonts.gstatic.com; frame-src 'self' youtube.com www.youtube.com www.youtube-nocookie.com codepen.io www.recaptcha.net; img-src 'self' data: optimise2.assets-servd.host i.ytimg.com transforms.kindera.uk images.kindera.uk kindera.uk patinagrain.co.uk; script-src-elem 'self' 'unsafe-inline' instant.page youtube.com www.youtube.com www.recaptcha.net www.gstatic.com www.googletagmanager.com static.cloudflareinsights.com https://cdn.jsdelivr.net kindera.uk patinagrain.co.uk; script-src 'self' 'unsafe-inline'; connect-src kindera.uk patinagrain.com region1.google-analytics.com https://www.recaptcha.net 'self';- strict-transport-security
max-age=2592000