mybir.org.uk
HTML metadata
Technology
- Server
- sfdcedge
DNS records live
- NS
-
- ns59.domaincontrol.com
- ns60.domaincontrol.com
Email authentication no MX
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
GoDaddy TLS Intermediate CA DV - R1v1
Expires in 131 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- findings
-
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
upgrade-insecure-requests, frame-ancestors 'self'; report-uri /_/commcsp?disposition=enforce- strict-transport-security
max-age=63072000; includeSubDomains- content-security-policy-report-only
script-src 'unsafe-inline' 'self' https://payments.salesforce.com/ https://stats.g.doubleclick.net https://checkoutshopper-test.adyen.com/ https://pal-test.adyen.com https://vimeo.com/event/2774015/embed https://fileserver.documedias.systems https://www.bir.org.uk https://www.gstatic.com https://checkoutshopper-live.adyen.com/ https://view.officeapps.live.com https://cdn.content.aws-prod1-useast1.aws.sfdc.cl/ https://www.anatomy.tv https://core.spreedly.com https://www.google.com https://pay.google.com https://package-assets.s3.amazonaws.com https://www.gstatic.com/recaptcha/ https://uip.canary.lwc.dev https://cdn.content.aws-dev2-uswest2.aws.sfdc.cl/ https://fileserver.s3-de-central.profitbricks.com https://*.force.com/ blob: https://www.googletagmanager.com/gtag/js https://www.google.com/recaptcha/ https://js.stripe.com/ https://maps.gstatic.com import: https://www.google-analytics.com *.salesforce.com https://www.paypal.com/sdk/js https://service.force.com/embeddeserv 'report-sample