north-herts.gov.uk
HTML metadata
Technology
- Server
- nginx
- CMS
- Drupal
- Analytics
-
- Google Tag Manager
- Fonts
-
- Font Awesome
Third-party hosts loaded (2)
- use.fontawesome.com×4
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Virgin Media Business Limited
- Created
- 2001-11-07
- Expires
- 2026-11-07 171 days left
- Updated
- 2025-11-07
- Name servers
-
- ns1.virginmedia.net
- ns2.virginmedia.net
- ns3.virginmedia.net
- ns4.virginmedia.net
DNS records live
- NS
-
- ns1.virginmedia.net
- ns2.virginmedia.net
- ns3.virginmedia.net
- ns4.virginmedia.net
- MX
-
- 10 eu-smtp-inbound-1.mimecast.com
- 10 eu-smtp-inbound-2.mimecast.com
- TXT
-
Show 10 TXT records
ft8inktobhueve4p2vhidrqkqt6cosss5tc2ph9p7ksf4v93jlj2apple-domain-verification=jdReXMDktTYY1cqOMS=ms34885376MS=ms65423696google-site-verification=zdaUQ2_M2ymaz1dF_dsQUL0ZzaeWm9_gh04Z06VtWrwMS=6F122EBFC44A6C9CBA488E5EE9F0DD368BAFF54D5bk72tak0b20eno66hhfdbatlggoogle-gws-recovery-domain-verification=71214840have-i-been-pwned-verification=dweb_vx3rdgbrnuqtebkwxbnv7kc0
Email authentication strong
- SPF
-
v=spf1 include:eu._netblocks.mimecast.com mx ip4:212.50.171.0/25 a:spf.protection.outlook.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; sp=reject; rua=mailto:dmarc@north-herts.gov.uk; ruf=mailto:dmarc@north-herts.gov.uk; rf=afrf; pct=100; ri=86400policy: reject (enforced) · sp=reject - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCs21iq8ycGGjgHM2kqhFVWoZoLtHaZWIB5dVWoxCbDvH+4zP4xU7bKqcGQfUoj5j489f2FLXHiac8Ys6U50L… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC0/oGm7lGFGCe+74F8nYf9Uz8bH9luGB8/nOofoF9kf6Oh5nci+NVgXUiG7a3CNCvAEWv4srQnhMIUoEpua7… - mail:
v=DKIM1; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnH0vxiKd8vCe5TWqo7nHiBrmh2t2hMc0sRDc2ULPXd89kfjQiyuTFnXS80t5w2jklyOqp2IDq9N8OHEE…
selectors probed - selector1:
Certificate (current)
R13
Expires in 68 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: https://cdn.rawgit.com https://cdn.iframe.ly https://connect.facebook.net https://performance.councilplatform.com https://cdn.syndication.twimg.com https://translate-pa.googleapis.com/ https://websurveys2.govmetric.com https://hitcounter.govmetric.com https://script.hotjar.com https://static.hotjar.com https://www.googletagmanager.com https://content.govdelivery.com https://if-cdn.com https://chatbot-platform.prod.inform360.co https://messenger.ebiai.app cdn.jsdelivr.net cdnjs.cloudflare.com https://cdn.jsdelivr.net https://cdnjs.cloudflare.com https://platform.twitter.com https://translate.google.com https://translate.googleapis.com https://unpkg.com https://performance.councilplatform.com/; script-src-elem 'self' 'unsafe-inline' 'unsafe-eval' blob: https://cdn.rawgit.com https://cdn.iframe.ly https://connect.facebook.net https://performance.councilplatform.com https://cdn.syndication.twimg.com https://translate-pa.googleapis.com/- strict-transport-security
max-age=31536000; includeSubDomains; preload
Links to (6)
- facebook.com×2
- instagram.com×2
- linkedin.com×2
- nextdoor.co.uk×2
- x.com×2
- youtube.com×2