mannisland.co.uk
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- stmannislandprod.z16.web.core.windows.net×19
- widget.trustpilot.com×1
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- brady.ns.cloudflare.com
- daniella.ns.cloudflare.com
- MX
-
- 10 za-smtp-inbound-1.mimecast.co.za
- 10 za-smtp-inbound-2.mimecast.co.za
- TXT
-
Show 7 TXT records
knowbe4-site-verification=b1c8ec55bdb150447ec398906abc098cmiro-verification=0b5da0b12cbcb4c432f6748dfe9861cffbd90d40stripe-verification=BA602864450731AC4DE15EC6DD4507B55A6BB25B1773ADE9F514D6377C67F669Dynatrace-site-verification=4c1fceed-8e86-4908-940a-6105197b4ae9__lsjioun02bmttd42oif183arheatlassian-domain-verification=aqyBDEa7EMgBZiRYfnsaj2lLOXzi2zWUNxuRDtIeELVm62iGiMdtjrZdWrylD/nccisco-ci-domain-verification=227756d5f6879d473aaa3278354e2dfe6774b3328da0281b3598b47a8f368649dropbox-domain-verification=p2b6u5rmf8gs
Email authentication strong
- SPF
-
v=spf1 mx a ip4:196.4.18.127 ip4:196.4.18.128 ip4:196.4.0.229 ip4:196.4.0.238 include:za._netblocks.mimecast.com include:eu._netblocks.mimecast.com include:spf.protection.outlook.com include:sendgrid.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:a0c168b1c618365@rep.dmarcanalyzer.com; ruf=mailto:a0c168b1c618365@for.dmarcanalyzer.com; fo=1;policy: reject (enforced) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1lk5VsiseIiGkhab6LTNMNX1cjShL1jCP55LOms3Nth3fv4YWG2USIO3pdryH0yqwNokYusDVxqD65rK/C… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA9NqA8/mUZTa9JU6DwhFDGdUyWxSZCJDNfP+MsJSxwOGCOD5Wynhn+qIW8APQ3klhhXGfl8mFoFbVjlup1A…
selectors probed - s1:
Certificate (current)
WE1
Expires in 74 days
HTTP security headers
- present
-
- content-security-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
img-src 'self' https://stmannislandprod.z16.web.core.windows.net https: data:; default-src 'self' https: data:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https:; style-src 'self' 'unsafe-inline' https:; font-src 'self' data: https:; connect-src 'self' https:;