nufins.com

.com crawl

First seen 2026-04-18 · Last seen 2026-05-16 · ok HTTP/1.1 200 6536 ms crawled 2026-05-12

US · 12.43.214.67 · AS40593 Cloud Compliance Solutions

Reputation 100/100

Classifying

HTML metadata

Title
Manufacturer of Construction & Civil Engineering Products - #ThinkNufins
Description
Manufacturers of specialist civil engineering & construction products, including protective coatings, concrete formwork treatments, joint fillers, waterproofing solutions and more.
Language
en
Canonical
http://nufins.com/

Technology

Analytics
  • Google Tag Manager
Cookie consent
  • OneTrust

Third-party hosts loaded (6)

  • www.googletagmanager.com×5
  • secure.leadforensics.com×2
  • cdn.cookielaw.org×1
  • cdn.jsdelivr.net×1
  • js.hs-scripts.com×1
  • www.google.com×1

Social

Contact

Email
Phone

Registration

Registrar
Nom-iq Ltd. dba COM LAUDE
Created
2004-10-13
Expires
2026-10-13 145 days left
Updated
2025-09-13
Name servers
  • dns1.comlaude-dns.com
  • dns2.comlaude-dns.net
  • dns3.comlaude-dns.co.uk
  • dns4.comlaude-dns.eu

DNS records live

NS
  • dns1.comlaude-dns.com
  • dns2.comlaude-dns.net
  • dns3.comlaude-dns.co.uk
  • dns4.comlaude-dns.eu
MX
  • 10 us-smtp-inbound-1.mimecast.com
  • 10 us-smtp-inbound-2.mimecast.com
TXT
  • glhl597m235n6r7lxrcw5ygvd0tqr1vk
  • knowbe4-site-verification=8ef4ead76264cbf6c0f64a2c733d60a0
  • _hcf0oeg9f92jzrtn3qlqefm7ouk0s8u
Verified for
  • Microsoft 365

Email authentication strong

SPF
v=spf1 a:corpmx2.stoncor.com a:emeamx1.rpmpcg.com include:spf.protection.outlook.com include:us._netblocks.mimecast.com -all
strict (-all)
DMARC
v=DMARC1; p=reject; rua=mailto:f7cc9c13960f852@rep.dmarcanalyzer.com; ruf=mailto:f7cc9c13960f852@for.dmarcanalyzer.com; fo=1;
policy: reject (enforced)
DKIM
no key found at common selectors

Certificate (current)

DigiCert Global G2 TLS RSA SHA256 2020 CA1
from 2026-04-28 to 2026-11-13
Expires in 176 days

HTTP security headers

Header hygiene 70/100 Checked live page: https://nufins.com/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
findings
  • short HSTS max-age
  • CSP allows unsafe inline scripts/styles
  • missing frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-content-type-options
nosniff
content-security-policy
frame-ancestors 'self'; default-src 'unsafe-inline' 'self';script-src 'unsafe-inline' 'unsafe-eval' https:;connect-src https: wss:;img-src https: data:;frame-src https:;style-src 'unsafe-inline' https:;object-src https:;media-src https:;
strict-transport-security
max-age=2592000; includeSubDomains

Links to (9)

Linked from (7)