oxbury.com

.com crawl

First seen 2026-04-22 · Last seen 2026-05-16 · ok HTTP/1.1 200 4904 ms crawled 2026-05-16

GB · 46.17.91.136 · AS15510 Compuweb Communications Services Limited

Reputation 100/100

Classifying

HTML metadata

Title
Home | Oxbury | The Agricultural Bank | Oxbury
Description
At Oxbury, we lend only to farmers while helping every saver support British farming. Find out more about our Farm loans and savings accounts
Language
en
Canonical
https://www.oxbury.com/

Open Graph

url
https://www.oxbury.com/
title
Home | Oxbury | The Agricultural Bank | Oxbury
site name
Oxbury
description
At Oxbury, we lend only to farmers while helping every saver support British farming. Find out more about our Farm loans and savings accounts

Technology

Analytics
  • Google Tag Manager
Fonts
  • Google Fonts
Third-party hosts loaded (7)
  • cdn.jsdelivr.net×2
  • fonts.googleapis.com×2
  • api.feefo.com×1
  • d21y75miwcfqoq.cloudfront.net×1
  • fonts.gstatic.com×1
  • static.zdassets.com×1
  • www.googletagmanager.com×1

Social

Contact

Phone

Registration

Registrar
SafeNames Ltd.
Created
2011-04-13
Expires
2029-04-13 1059 days left
Updated
2026-03-06
Name servers
  • ns-1363.awsdns-42.org
  • ns-1933.awsdns-49.co.uk
  • ns-257.awsdns-32.com
  • ns-866.awsdns-44.net

DNS records live

NS
  • ns-1363.awsdns-42.org
  • ns-1933.awsdns-49.co.uk
  • ns-257.awsdns-32.com
  • ns-866.awsdns-44.net
MX
  • 10 mxa-00914601.gslb.pphosted.com
  • 10 mxb-00914601.gslb.pphosted.com
TXT
Show 6 TXT records
  • atlassian-domain-verification=b9mxmR0mwUC1bAtCjaAUj6DqNa4sETMtT6huZQK19bKiDOSA3756TXFAPOHk6IkG
  • cursor-domain-verification-8f4m6e=EOuN2OOlqkAGI0lr1Q6c5ijDf
  • google-site-verification=0D__twXezQ3NzQvZ1RMb_dQSUryv3cf9JAgbcjJWGUI
  • google-site-verification=92XZSjB1DODm_jv6LXorn5QGaNiZGF_lbVg9pqFyLrg
  • openai-domain-verification=dv-KLoderFkq2RTci98jMQWX6eH
  • apple-domain-verification=veoK1EFdEB81gv5m

Email authentication strong

SPF
v=spf1 include:spf.protection.outlook.com include:spf-00914601.pphosted.com include:mail.zendesk.com include:amazonses.com include:spf.rpost.net ip4:46.17.91.136 -all
strict (-all)
DMARC
v=DMARC1; p=reject; pct=100; rua=mailto:it.alerts@oxbury.com; ruf=mailto:it.alerts@oxbury.com
policy: reject (enforced)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDDDUztbY1HLLhC0/2hoqiDvIFCJNJ8N/adfVdaOQaCOkOlSqw9aLTCbBky1Iwfy7O9d3126PihpwjIMx20Ii…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtDEHk1yHJm7NFW+U/akvbT0MBx29FmxN8C6OVP3Mr1M7gVUJPKsj6dcYeUN2vXNv2ee97269qvE0Pj…
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed

Certificate (current)

R13
from 2026-04-22 to 2026-07-21
Expires in 63 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.oxbury.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • short HSTS max-age
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
DENY
permissions-policy
accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(), encrypted-media=(), fullscreen=(), geolocation=(), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(), usb=(), web-share=(), xr-spatial-tracking=()
x-content-type-options
nosniff
content-security-policy
default-src 'self' https://static.zdassets.com https://*.zdassets.com https://*.zendesk.com https://*.smooch.io https://*.ingest.*.sentry.io https://*.twilio.com wss://*.zendesk.com wss://api.smooch.io wss://voice-js.roaming.twilio.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://cdn.jsdelivr.net https://*.feefo.com http://*.feefo.com https://*.googletagmanager.com https://*.google.com https://*.youtube.com https://*.gstatic.com https://*.cookie-script.com http://*.cookie-script.com https://static.zdassets.com https://*.zdassets.com https://*.zendesk.com https://*.smooch.io https://widget-mediator.zopim.com; style-src 'self' 'unsafe-inline' https://cdn.jsdelivr.net https://fonts.googleapis.com https://*.feefo.com http://*.feefo.com https://static.zdassets.com https://*.zdassets.com; font-src 'self' https://fonts.gstatic.com https://*.feefo.com http://*.feefo.com https://static.zdassets.com https://*.zdassets.com; img-src 'self' data: blob: https://d21y75miwcfqoq.cloudfront.
strict-transport-security
max-age=10886400; includeSubDomains

Links to (5)

Linked from (2)