rethink.org
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (3)
- consent.cookiebot.com×1
- polyfill-fastly.io×1
- www.googletagmanager.com×1
Social
Contact
- Address
- 28 Albert Embankment, SE1 7GR, London, GB
Registration
- Registrar
- Tucows Domains Inc.
- Created
- 2000-05-25
- Expires
- 2030-05-25 1467 days left
- Updated
- 2023-02-02
- Name servers
-
- dns0.positive-internet.com
- dns1.positive-internet.com
DNS records live
- NS
-
- dns0.positive-internet.com
- dns1.positive-internet.com
- MX
-
- 10 eu-smtp-inbound-1.mimecast.com
- 10 eu-smtp-inbound-2.mimecast.com
- TXT
-
Show 13 TXT records
v=DMARC1, NAME=RethinkMentors.org._report._dmarcmsfpkey=5sbd7xbf6k8tjsolwgvcqypwpd365mktkey=3ryHBuC8vXfPtIV1pofeUVRvlxe1Aw4AW6ik3Kq5AVox749vvrsekrrpn6uckukulhfj9dd365mktkey=25j5Rs9brxslQGsixqGpScyz09lY8TKxdYxoJZNtMCsxv=DMARC1, NAME=MentalHealthShop.org._report._dmarcLQpQwP61THuD65uZz8EtDuBoVYTUWbdLxuSrwZF1JKnosFKsLfVCbI5PTZLXKtgf64DG8T1F37HGsKyF4MflCQ==0550DDEEFD8CA2429F182A648703E031683120A163A2C8D49953D8E87005BE42v=DMARC1, NAME=Iagreewithdick.org._report._dmarcapple-domain-verification=S2yyhWzQZuF0UC6nv=DMARC1, NAME= MentalHealthAndMoneyAdvice.org._report._dmarc3pfs9pvmtlnjrpi9otrj2gf1cnv=DMARC1, NAME=RethinkAssociates.org._report._dmarc
Email authentication strong
- SPF
-
v=spf1 a include:_spf.e-activist.com include:eu._netblocks.mimecast.com include:spf.protection.outlook.com include:gbr.pb-dynmktge.com ip4:67.231.158.158 ip4:67.231.151.29 ip4:67.231.152.177 ip4:208.84.65.220 ip4:62.128.217.80 ip4:149.111.149.12 ip4:185.125.238.144 include:eur.pb-dynmktge.com include:emaileuc.freshservice.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; pct=100; rua=mailto:ictinfrastructure@rethink.org; ruf=mailto:ictinfrastructure@rethink.orgpolicy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDfJqz7a63P/+0uUmnGTLxatjEC7SkV1g0eUuw2M0P4/tPus/LL8zcY/w0g5mh/zABMzkFhypwYZDcU5FlxUw… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyd25mQL5Mu2nbiWxaNCjiNoefT2iXHPUtFyeHpBG53IKKrGlrUVXOfnHi9/bvGHxjnFp1VXPopfTTp… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - selector1:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 91 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' https://stripe.com https://*.stripe.com https://gocardless.com https://*.gocardless.com https://paypal.com https://*.paypal.com https://paypalobjects.com https://*.paypalobjects.com https://cookiebot.com https://*.cookiebot.com https://current-vacancies.com https://*.current-vacancies.com https://rethink.org https://*.rethink.org https://googleapis.com https://*.googleapis.com https://google.com https://*.google.com https://zenformz.com https://*.zenformz.com https://youtube.com https://*.youtube.com https://azureedge.net https://*.azureedge.net https://callhandling.co.uk https://*.callhandling.co.uk https://polyfill-fastly.io https://*.polyfill-fastly.io https://dynamics.com https://*.dynamics.com https://googletagmanager.com https://*.googletagmanager.com https://google-analytics.com https://*.google-analytics.com https://az416426.vo.msecnd.net https://*.az416426.vo.msecnd.net https://reciteme.com https://*.reciteme.c- strict-transport-security
max-age=31536000; includeSubDomains