nutricia.ie
HTML metadata
Technology
- Cookie consent
-
- OneTrust
Third-party hosts loaded (5)
- smartmedia.digital4danone.com×14
- static-p72053-e643882.adobeaemcloud.com×2
- cdn-ukwest.onetrust.com×1
- cdn.channelsight.com×1
- cdn.uk-medical-prd-danone.danone-dtc.net×1
Social
Contact
DNS records live
- NS
-
- udns1.cscdns.net
- udns2.cscdns.uk
- MX
-
- 5 mail.global.frontbridge.com
- TXT
-
google-site-verification=B-Er5krWID9USx-m9mA_td0nMJgGVRul_yqmRVBfHhAgoogle-site-verification=GUiaRlgda8Rn_qT44PPWbgzvQHjJJHzgU3WLWrHL9n4facebook-domain-verification=ngl99hlezhzbmlt93vnv6g25isyr8e
Email authentication strong
- SPF
-
v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.compolicy: quarantine - DKIM
- no key found at common selectors
Certificate (current)
Sectigo Public Server Authentication CA OV R36
Expires in 183 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin- x-frame-options
SAMEORIGIN- permissions-policy
camera=(self "https://staging.danoneskyr.co.uk" "https://promo.danoneskyr.co.uk")- x-content-type-options
nosniff- content-security-policy
default-src 'self'; style-src 'self' 'unsafe-inline' *.bazaarvoice.com/ https://danone--uat.sandbox.my.site.com/ https://danone.my.site.com/ https://danone--devrun.sandbox.my.salesforce.com/ *.salesforce-scrt.com/ *.pixeltrack.it/ https://staging-danone.pixeltrack.it/ *.google.co.in/ *.danoneskyr.co.uk/ *.google.mk/ *.googletagmanager.com/ *.paypalobjects.com/ *.paypal.com/ *.adsrvr.org/ *.applicationinsights.io/ *.adyen.com/ *.teads.tv/ *.hotjar.com/ *.digital4danone.com/ *.aemcs.digital4danone.com/ *.linkedin.com/ *.licdn.com/ *.adobeaemcloud.com/ *.hotjar.io/ *.visualstudio.com/ *.bootstrapcdn.com/ *.briteverify.com/ *.channelsight.com/ *.chargebee.com/ https://app.retention.chargebee.com/ *.commander1.com/ *.force.com/ *.google.com/ *.googleapis.com/ *.gstatic.com/ *.live2support.com/ *.lpsnmedia.net/ *.mopinion.com/ *.myfonts.net/ *.onetrust.com/ *.pinterest.com/ *.salesforce-sites.com/ *.scene7.com/ *.sharethis.com/ *.tagcommander.com/ *.teads.tv/ *.visualstudio.com/ *.youtub- strict-transport-security
max-age=63072000; includeSubDomains; preload