saffery.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
Third-party hosts loaded (1)
- www.google.com×2
Social
Contact
- Address
- 71 Queen Victoria Street, EC4V 4BE, London, UK
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 1995-12-18
- Expires
- 2026-12-17 212 days left
- Updated
- 2025-12-14
- Name servers
-
- dns1.cscdns.net
- dns2.cscdns.net
DNS records live
- NS
-
- dns1.cscdns.net
- dns2.cscdns.net
- MX
-
- 30 eu-smtp-inbound-1.mimecast.com
- 30 eu-smtp-inbound-2.mimecast.com
- TXT
-
Show 7 TXT records
smartsheet-site-validation=f4BFaSOA6iylDMnl2P-OiI1TdgFIl7VYteamviewer-sso-verification=989fc12e6eda47539ae03240d3f502f5google-site-verification=yvmXZoMPnAIvlvzTEUUvBgDfB2a0L6wRWRxwOS90RnQLgl21o0uTiIMxCPTFahHlTwXVQabXkU1I8+stVti9CZnBPNbmhD60FNVyOpIv61uhPTWDI5/+nwCNR4d8VnGlg==dropbox-domain-verification=objidh383vpqapple-domain-verification=MrXot2OwjNuKQSMPdocusign=3e092828-62a8-49e9-8c02-a72629f1e77b
Email authentication strong
- SPF
-
v=spf1 include:_u.saffery.com._spf.smart.ondmarc.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; pct=100; fo=1; ri=3600; rua=mailto:1c68bc2c@inbox.ondmarc.com; ruf=mailto:1c68bc2c@inbox.ondmarc.com;policy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 70 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin, no-referrer-when-downgrade- x-frame-options
SAMEORIGIN, SAMEORIGIN- permissions-policy
geolocation=(), microphone=(), camera=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; media-src 'self' media.saffery.com; img-src 'self' data: *.saffery.com images.passle.net media.saffery.com d27di6fyn33jhm.cloudfront.net px.ads.linkedin.com c.clarity.ms c.bing.com www.google.com *.gstatic.com www.googletagmanager.com www.google-analytics.com *.google.com *.google.co.uk *.googleusercontent.comn *.vimeocdn.com secure.gravatar.com *.hubspot.com *.hsforms.com *.buzzsprout.com i.ytimg.com *.cloudfront.net *.flippingbook.com *.googleapis.com *.ggpht.com claritystatic.blob.core.windows.net; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.googletagmanager.com *.google-analytics.com *.clarity.ms *.hotjar.com *.facebook.net *.cloudflare.com www.google.com www.youtube.com snap.licdn.com www.gstatic.com googleads.g.doubleclick.net *.doubleclick.net; script-src-elem 'self' 'unsafe-inline' *.googletagmanager.com *.google-analytics.com *.clarity.ms www.google.com *.gstatic.com www.youtube.com snap.licdn.com googleads.g.doub- strict-transport-security
max-age=31536000; includeSubDomains