ovdistribution.co.uk
HTML metadata
Technology
- CDN
- Amazon CloudFront
- CMS
- Shopify
Third-party hosts loaded (1)
- t.contentsquare.net×1
DNS records live
- NS
-
- ns-1419.awsdns-49.org
- ns-1817.awsdns-35.co.uk
- ns-26.awsdns-03.com
- ns-925.awsdns-51.net
- MX
-
- 1 smtp.google.com
- TXT
-
google-site-verification=1ZE-iG66rUdd2SZRx_2DhaImv69uIFiqXDNqBL2FrXw
Email authentication weak
- SPF
-
v=spf1 include:_spf.google.com include:spf.smtp2go.com include:shops.shopify.com ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
Amazon RSA 2048 M04
Expires in 162 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
camera=(), microphone=(), geolocation=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' https://t.contentsquare.net https://*.contentsquare.net; style-src 'self' 'unsafe-inline'; font-src 'self'; img-src 'self' https://cdn.shopify.com https://ovdistro.gambitlabs.co.uk https://*.contentsquare.net data: blob:; connect-src 'self' https://*.myshopify.com https://cdn.shopify.com https://*.contentsquare.net;