no7company.com

.com crawl

First seen 2026-04-16 · Last seen 2026-05-11 · ok HTTP/1.1 200 748 ms crawled 2026-05-11

GB · 77.68.66.174 · AS8560 IONOS SE

Reputation 94/100 dmarc monitor-only

sector beauty type homepage

HTML metadata

Title
No7 | No7 Beauty Company
Description
Walgreens Boots Alliance is a global leader in retail and wholesale pharmacy. Shaping the future of health and wellbeing for everyone.
Language
en
Generator
Astro v5.16.4
Canonical
https://www.no7company.com/

Technology

Analytics
  • Google Tag Manager
Cookie consent
  • OneTrust
Fonts
  • Adobe Fonts

Third-party hosts loaded (3)

  • cdn.cookielaw.org×1
  • use.typekit.net×1
  • www.googletagmanager.com×1

Social

Registration

Registrar
CSC Corporate Domains, Inc.
Created
2020-10-16
Expires
2026-10-16 148 days left
Updated
2025-10-12
Name servers
  • dns1.cscdns.net
  • dns2.cscdns.net

DNS records live

NS
  • dns1.cscdns.net
  • dns2.cscdns.net
MX
  • 10 mx1.wba.c3s2.iphmx.com
  • 10 mx2.wba.c3s2.iphmx.com
TXT
  • box-domain-verification=afd09ba969e8f92bb40e099c49b6db779a1919c23c0ad0375bf1eea789f3fadd
  • knowbe4-site-verification=c86ca28ccd7b15fcc528b85a1c9a879b
Verified for
  • Adobe
  • Atlassian
  • Cisco
  • Google
  • Microsoft 365

Email authentication partial

SPF
v=spf1 mx exists:%{i}.spf.WBA.c3s2.iphmx.com include:spf.protection.outlook.com include:kallidus-suite.com include:spf.dynect.net ~all
softfail (~all)
DMARC
v=DMARC1; p=none; rua=mailto:6193e7442fb3728@rep.dmarcanalyzer.com,mailto:dmarc@wbaoneit.com; ruf=mailto:6193e7442fb3728@for.dmarcanalyzer.com,mailto:dmarc@wbaoneit.com; fo=1;
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

Sectigo Public Server Authentication CA OV R36
from 2025-11-21 to 2026-11-22
Expires in 185 days

HTTP security headers

Header hygiene 95/100 Checked live page: https://www.no7company.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
geolocation=(), microphone=(), camera=()
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' https://cdn.cookielaw.org https://www.googletagmanager.com https://www.google-analytics.com https://tagmanager.google.com https://maps.googleapis.com 'sha256-zuS7o6Wm4YAMFmgo4SzCRQBv1l/i8qbT2s3+lQ2Enco=' 'sha256-3/mNUpqF9X/gMYE+bOG6g8d6I32wdYdWwWuAk90mPCM=' 'sha256-Gname9OdTc2bHQ+loX1/g3alIO5Kkodeh+Rt6P1u5Ao=' 'sha256-U7a72oKuFFz8D7GUHLA1NZ0ciymHmDOc9T9aVDg2rWU=' 'sha256-YlzLc/2h1SxrG6mRJaLrdPm7zDhDC8cB4+LV1wyaVLY=' 'sha256-YwOk2pIZZiS0T8z3Mx/Xp0iBRXYfUpoSRUgblMHCQJE=' 'sha256-eIXWvAmxkr251LJZkjniEK5LcPF3NkapbJepohwYRIc=' 'sha256-w+DOshIYZyrd38/ycnfDdJY9+wWch9DPSxWHcs5avWI='; style-src 'self' 'unsafe-inline' https://use.typekit.net https://p.typekit.net; object-src 'none';
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (4)

Linked from (1)