sassoon-global.com
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
- Fonts
-
- Google Fonts
Third-party hosts loaded (6)
- fonts.googleapis.com×4
- static-p121702-e1239403.adobeaemcloud.com×3
- cdn-ukwest.onetrust.com×1
- fonts.gstatic.com×1
- js-eu1.hs-scripts.com×1
- www.googletagmanager.com×1
Contact
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2024-08-27
- Expires
- 2026-08-27 83 days left
- Updated
- 2025-08-28
- Name servers
-
- roxy.ns.cloudflare.com
- todd.ns.cloudflare.com
DNS records live
- NS
-
- roxy.ns.cloudflare.com
- todd.ns.cloudflare.com
Email authentication no MX
- SPF
-
v=spf1 include:145396826.spf04.hubspotemail.net -allstrict (-all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnX/J6g2ZN5t1BExtG5ZG6MqX6c1tRri/MmK65YvtI2fdDuKVIjn8scg0pHqSH1/WfaLFTm2sM/mmcswAkG… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1jXC4KO0VTo7jyb5ZypsjC+iL25LQXsAmnbQxWnGwNXNQU1Q4LNHZtQbHdQTEhXaXIHXOkMsSxYXkRRutc…
selectors probed - s1:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 70 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self'; connect-src *; font-src * data:; style-src * 'unsafe-inline'; script-src * 'unsafe-inline' 'unsafe-eval' blob:; img-src *; frame-src *; frame-ancestors 'self' *.us.auth0.com- strict-transport-security
max-age=31557600