medfx.co.uk
HTML metadata
Technology
- CDN
- Azure Front Door
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- Safenames Ltd
- Created
- 2006-01-31
- Expires
- 2027-01-31 255 days left
- Updated
- 2025-01-24
- Name servers
-
- dns1.safenames.com.
- dns2.safenames.net.
- dns3.safenames.org.
DNS records live
- NS
-
- dns1.safenames.com
- dns2.safenames.net
- dns3.safenames.org
- MX
-
- 0 medfx-co-uk.mail.protection.outlook.com
- 10 mailer.rcdmail.co.uk
- TXT
-
Show 5 TXT records
owc9/H3Ir48EsWxwGmyWBGXid6qPm8+mAU3a6D68Y36/zGl17lWS7P+oBa9ffNOGq3In4/eoQJKfW8XvMGKnRg==bds-web-test-training-calendar.azurewebsites.netk=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCpZTzdwGr57LkdqJtdzgw/XCpAYF4gI6jJWNpTRCc+tn1nR9SbwdsE9DUp7rovIdnbIfMg/M+dJamiQehs/7NFB0tuQpEPxybuv1Mvo1yWUjE1dPEw4foHEn67loWmWncANY9Qc8uaKkLMKfEJeSdS+EGqwvpY7L7rU2krGM7xiQIDAQAB;bds-web-test-api.azurewebsites.netbds-web-dev-training-calendar.azurewebsites.net
- Verified for
-
- Apple
- Atlassian
- Dynamics 365
- Meta
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:sendgrid.net include:spf.protection.outlook.com include:spf.rcdmail.co.uk include:servers.mcsv.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:DMARCReportsMailbox@medfx.co.uk; ruf=mailto:DMARCReportsMailbox@medfx.co.ukpolicy: reject (enforced) - DKIM
-
Show 5 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCiD6wth7wLeI5egmYUw9m4AudVKdsr/xHzW5VY19LTgDWmwUwQPG+Z2jcVhgbFrMeIyuLgfCHDf5noy57maT… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt8CRrGp2nTuDNpQaaVJQcWW73Y1HWrrReU4Hx5Rb9tdcJOjbr/qoG36UePbMwPRu7N0gDRbFy/sSx+… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArXskeQM87KTphEgwe2RoHOUQC3ZGzwrCPiCB7oo2lkJO6iJCSQdW3fm5jKL/Gl4WowfRTEetpPJHoYn+hq… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDs3O9VHhfZFso8gaiSmEe9afMAbAYLv2YqVBckYT7UJ9E/3a3uhSwj6N4foXaD0IkAiRvKccL/MFNuAjfU0IeDJl…
selectors probed - selector1:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 142 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'self'; style-src 'self' 'unsafe-inline' https://cdnjs.cloudflare.com https://use.fontawesome.com https://cdn.jsdelivr.net https://fonts.googleapis.com https://netdna.bootstrapcdn.com https://use.typekit.net https://p.typekit.net https://cdn.lineicons.com https://pro-cdn.lineicons.com https://gateway.zscloud.net https://www.googletagmanager.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.googletagmanager.com https://www.google.com https://cdnjs.cloudflare.com https://cdn.jsdelivr.net https://www.googleadservices.com https://stackpath.bootstrapcdn.com https://marvel-b2-cdn.bc0a.com https://cdn.b0e8.com https://bat.bing.com https://snap.licdn.com https://connect.facebook.net https://www.google-analytics.com https://www.gstatic.com https://*.doubleclick.net https://*.msecnd.net/ https://*.episerver.net https://js.monitor.azure.com https://gateway.zscloud.net https://bizchat.bizvu.co.uk https://*.hotjar.com https://invitejs.trustpilot.com https://*.bootstrapcdn- strict-transport-security
max-age=31536000; includeSubDomains