leighday.co.uk
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- widget.trustpilot.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- GoDaddy.com, LLC.
- Created
- 1998-10-21
- Expires
- 2026-10-21 154 days left
- Updated
- 2024-10-22
- Name servers
-
- pdns03.domaincontrol.com.
- pdns04.domaincontrol.com.
DNS records live
- NS
-
- pdns03.domaincontrol.com
- pdns04.domaincontrol.com
- MX
-
- 5 eu-smtp-inbound-1.mimecast.com
- 5 eu-smtp-inbound-2.mimecast.com
- TXT
-
Show 7 TXT records
google-site-verification=USBZUU-G64hpy_VF75T4jHO9yjeRuJ0hlNDVh_EoWuIMS=ms80357028amazonses:A/ge/iBYXstr8U2dO905bx/fC8rCZXlbFENpng8pXnw=ld-web-neu-01.azurewebsites.net8NvdOoaVKFYMtkXraNsuHSILMJnKjuZUHM0r5bK71dE+D3p0EU0bgcnQ3wWmTamZntD7S8jAbz9Je/ropmkLjw==apple-domain-verification=UPV5NtjCj6tV8ewofacebook-domain-verification=7wzstkbq8l6nb72ccpp6blp26qnp29
Email authentication strong
- SPF
-
v=spf1 ip4:52.56.67.87 ip4:18.130.43.213 include:eu._netblocks.mimecast.com include:spf-uk.vx-email.com include:amazonses.com include:8506329.spf03.hubspotemail.net include:spf.mailjet.com include:spf.frogmailer.com include:eu.sparkpostmail.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:335b3cda80f9905@rep.dmarcanalyzer.com; ruf=mailto:335b3cda80f9905@for.dmarcanalyzer.com; fo=1;policy: none (monitoring only) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC8KROD7lYRtzBgxjHPIJvHx8WM81yXAVxPP0fUvUBWhc6QkQ/Tof4W15AaVj7s5zq08FbEOTV8v1EEkybThJ… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDXAQSBVvuEJqWcQrTebb6B71j/mox8kazt8KdvVtv7LbSPD6Aqs4lRMsEW21UsWJrT7JFrDgDkIsVJpeWgAK… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtxpjqwUhh3BTnONxRAdxHC94BDLx0GevK1TnuZPTkVTmrhVn0yECvfk/aavh5UvCGo018mqKE+lqSQeYQy… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCkbTIpFbjYl3vGWPHbkooC+89FZ+yp/+t5jRrc2ZOtOxvoOJ25RZOqNfv/YEpdqxUw9zJxhsOjVvXVUbPZIIyx2S…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 67 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
img-src https: data: 'self';default-src https: 'self' 'unsafe-inline' 'unsafe-eval';connect-src https: wss: data: 'self'- strict-transport-security
max-age=31536000; includeSubDomains; preload