labcfrontdoor.co.uk

.uk crawl

First seen 2026-04-15 · Last seen 2026-04-15 · ok HTTP/1.1 200 1363 ms crawled 2026-05-09

GB · 51.140.153.150 · AS8075 Microsoft Corporation

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
LABC Front Door | Home improvements & building regulations advice for homeowners and builders
Description
Practical advice on home improvements for homeowners. Also, guidance on how to meet building regulation standards by working with LABC.
Language
en-gb
Canonical
https://labcfrontdoor.co.uk/
Translations
  • cy-gb
  • en-gb

Open Graph

title
LABC Front Door | Home improvements & building regulations advice for homeowners and builders
description
Practical advice on home improvements for homeowners. Also, guidance on how to meet building regulation standards by working with LABC.

Technology

Analytics
  • Google Tag Manager

Third-party hosts loaded (5)

  • cdn.jsdelivr.net×5
  • ajax.googleapis.com×2
  • www.googletagmanager.com×2
  • cdnjs.cloudflare.com×1
  • www.google.com×1

Social

Contact

Address
2a St George Wharf, SW8 2LE, Vauxhall, London, United Kingdom

Registration

Registrar
123-Reg Limited t/a 123-reg
Created
2019-10-30
Expires
2026-10-30 163 days left
Updated
2025-10-31
Name servers
  • ns07.domaincontrol.com.
  • ns08.domaincontrol.com.

DNS records live

NS
  • ns07.domaincontrol.com
  • ns08.domaincontrol.com
MX
  • 10 mx0.123-reg.co.uk
  • 20 mx1.123-reg.co.uk
TXT
  • F3E4B1B340ADD6A9F5F8E6FE0D6D379647D33F55E41605E80AC5CBAF3BD78800
  • google-site-verification=M4JpfopreUrH3uylIqAUa6zAK8EoWRWYLoWSmyIQncU

Email authentication weak

SPF
v=spf1 mx ip4:13.79.245.74 -all
strict (-all)
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

Sectigo RSA Domain Validation Secure Server CA
from 2025-05-14 to 2026-06-15
Expires in 26 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://labcfrontdoor.co.uk/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self' packages.umbraco.org our.umbraco.org;script-src 'self' www.google.com cdnjs.cloudflare.com cdn.jsdelivr.net code.jquery.com ajax.googleapis.com maps.google.com siteimproveanalytics.com www.googletagmanager.com *.gstatic.com www.google-analytics.com maps.googleapis.com www.youtube.com connect.facebook.net *.civiccomputing.com 'unsafe-eval' 'unsafe-inline';style-src 'self' fonts.googleapis.com cdnjs.cloudflare.com cdn.jsdelivr.net 'unsafe-inline';connect-src 'self' maps.googleapis.com *.google-analytics.com *.google.com stats.g.doubleclick.net *.civiccomputing.com;font-src 'self' cdn.jsdelivr.net fonts.gstatic.com;img-src 'self' www.google-analytics.com maps.gstatic.com maps.google.com img.youtube.com *.googleapis.com data: *.google.co.uk *.google.com labcapi.nauticasolutions.co.uk;media-src 'self' www.youtube.com player.vimeo.com;frame-src 'self' www.youtube.com www.google.com player.vimeo.com www.google.com www.google-analytics.com;worker-src 'self' blob:
strict-transport-security
max-age=63072000; includeSubDomains; preload

Links to (6)

Linked from (1)