shopkenworth.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Gatsby
- Analytics
-
- Cloudflare Insights
- Google Tag Manager
- Cookie consent
-
- OneTrust
Third-party hosts loaded (5)
- bdainc.my.site.com×1
- cdn.cookielaw.org×1
- static.cloudflareinsights.com×1
- static.klaviyo.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- MarkMonitor Inc.
- Created
- 1999-08-26
- Expires
- 2026-08-26 99 days left
- Updated
- 2025-07-25
- Name servers
-
- ha1.markmonitor.zone
- ha2.markmonitor.zone
- ha3.markmonitor.zone
- ha4.markmonitor.zone
DNS records live
- NS
-
- ha1.markmonitor.zone
- ha2.markmonitor.zone
- ha3.markmonitor.zone
- ha4.markmonitor.zone
- TXT
-
klaviyo-site-verification=Xf55D8
Email authentication no MX
- SPF
-
v=spf1 exists:%{i}._i.%{d}._d.espf.agari-dns.net include:%{d}.a1.spf-protect.agari-dns.net -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; fo=1; ri=3600; rua=mailto:paccar@rua.agari.com; ruf=mailto:paccar@ruf.agari.compolicy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 8 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
child-src ; connect-src 'self' bam.nr-data.net cdn.acsbapp.com events.attentivemobile.com *.shortbread.aws.dev *.amazon.com dpm.demdex.net amazonwebservices.d2.sc.omtrdc.net analytics.google.com *.attn.tv *.googletagmanager.com in.hotjar.com *.my.salesforce-scrt.com *.my.site.com surveystats.hotjar.io metrics.hotjar.io ask.hotjar.io *.bdashops.com *.fullstory.com *.google-analytics.com *.klaviyo.com *.onetrust.com *.analytics.google.com api.addressy.com cdn.cookielaw.org stats.g.doubleclick.net translate.googleapis.com *.postcodeanywhere.co.uk *.salesforce-sites.com wss://ws.hotjar.com https://content.hotjar.io https://vc.hotjar.io https://in.hotjar.com *.googleapis.com *.facebook.com https://www.google.com; default-src 'self' *.bdashops.com; font-src 'self' *.bdashops.com https://pabstblueribbon.com script.hotjar.com https://www.rocketmortgage.com *.typekit.net *.cloudfront.net *.googleapis.com *.gstatic.com *.klaviyo.com c1.sfdcstatic.com data:; frame-src 'self' cdn.cookielaw.org aws- strict-transport-security
max-age=15552000; includeSubDomains; preload