sanctuary-supported-living.co.uk
HTML metadata
Technology
- Server
- nginx
- CMS
- Drupal
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Registration
- Registrar
- CSC Corporate Domains, Inc
- Created
- 2012-11-30
- Expires
- 2026-11-30 193 days left
- Updated
- 2025-11-26
- Name servers
-
- ns1.netnames.net.
- ns2.netnames.net.
- ns5.netnames.net.
- ns6.netnames.net.
DNS records live
- NS
-
- ns1.netnames.net
- ns2.netnames.net
- ns5.netnames.net
- ns6.netnames.net
- MX
-
- 10 eu-smtp-inbound-1.mimecast.com
- 10 eu-smtp-inbound-2.mimecast.com
- TXT
-
0ed1fe018ac5dd8546c04640359420dbuigEe9yOyCfbH2WfKIrPQ6ISKfCrFn4G29dnqMytYNwhco3YMbML3Qnak92CRxnbdxrz7qFW95EijDnY0scfvw==
- Verified for
-
- GlobalSign
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:eu._netblocks.mimecast.com include:_u.sanctuary-supported-living.co.uk._spf.smart.ondmarc.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; pct=100; sp=reject; rua=mailto:7bb54f35@inbox.ondmarc.com; ruf=mailto:7bb54f35@inbox.ondmarc.com; adkim=r; aspf=r; fo=1; rf=afrf; ri=3600policy: reject (enforced) · sp=reject - DKIM
- no key found at common selectors
Certificate (current)
GlobalSign RSA OV SSL CA 2018
Expires in 135 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer- x-frame-options
ALLOW-FROM https://www.google-analytics.com- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' 'report-sample' *.cloudflare.com https://unpkg.com *.unpkg.com *.gstatic.com *.google.com *.googleapis.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.doubleclick.net *.vimeo.com *.onetrust.com *.newrelic.com *.nr-data.net *.hotjar.com *.jsdelivr.net *.pingdom.net *.klastaf.com *.cqc.org.uk *.carehome.co.uk *.facebook.com *.facebook.net *.gtranslate.net *.mediahawk.co.uk https://v4in1-si.click4assistance.co.uk https://consent.cookiebot.com https://consentcdn.cookiebot.com https://consent.cookiebot.eu https://consentcdn.cookiebot.eu https://connect.facebook.net https://services.postcodeanywhere.co.uk; object-src 'self'; style-src 'self' 'unsafe-inline' 'report-sample' *.googleapis.com *.jsdelivr.net *.cloudflare.com *.hotjar.com *.cqc.org.uk *.carehome.co.uk *.gstatic.com *.facebook.com *.gtranslate.net https://unpkg.com https://services.postcodeanywhere.co.uk; img-src 'self' data: *.gstatic.c- strict-transport-security
max-age=31536000