staysure.co.uk
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Next.js
- Analytics
-
- Cloudflare Insights
- Google Tag Manager
- Ads
-
- Meta Pixel
- Fonts
-
- Adobe Fonts
- Social widgets
-
- Vimeo Embed
Third-party hosts loaded (8)
- www.staysure.com×2
- adservice.google.com×1
- cdn-pci.optimizely.com×1
- connect.facebook.net ×1
- player.vimeo.com×1
- static.cloudflareinsights.com×1
- use.typekit.net×1
- www.googletagmanager.com×1
Social
Contact
- Phone
- Address
- Britannia House, 3-5 Rushmills Business Park, Bedford Road, NN4 7YB, Northampton, Northamptonshire, GB
Registration
- Registrar
- 123-Reg Limited t/a 123-reg
- Created
- 2004-04-06
- Expires
- 2029-04-06 1051 days left
- Updated
- 2024-08-04
- Name servers
-
- elly.ns.cloudflare.com.
- maciej.ns.cloudflare.com.
DNS records live
- NS
-
- elly.ns.cloudflare.com
- maciej.ns.cloudflare.com
- MX
-
- 1 eu-smtp-inbound-1.mimecast.com
- 2 eu-smtp-inbound-2.mimecast.com
- TXT
-
Show 13 TXT records
pe7cbf6bihi9uegl7mu2sju17taccess-domain-verification=0593b8ad2dee01d134a579cf39d46bb86c29543270ac8d260776e3e1e51f1d6baastqvkhjfrpffnde1o42je17aatlassian-sending-domain-verification=77b0af8a-e3b8-4c08-97c9-da009a9413d9otndejpd3v5l1vlu9kvmob373blc783jeti84u3s927umhsmvkqscloudflare_dashboard_sso=9b8b00d1243b2a2e3c53339ee7d02bb2qqt8pl19meokh5407udsatgck2Validity-Domain-Authentication=CHZ798qKFwqPkoK8JDtkeszaiJg=Probely=d1420903-1ba9-47bb-9f0c-346733bdf7e3ca3-9836700012614efd8e6ae82fd41c7db9lkin9fv0585u376cs791p4qg06v=BIMI1; l=https://bimi-staysuregroup.s3.eu-west-1.amazonaws.com/staysure/3376b3d4-b2d5-4343-a8b5-13459e8d055a.svg;a=https://bimi-staysuregroup.s3.eu-west-1.amazonaws.com/staysure/3376b3d4-b2d5-4343-a8b5-13459e8d055a.pem
- Verified for
-
- Atlassian
- Microsoft 365
- Stripe
- Workplace
Email authentication strong
- SPF
-
v=spf1 ip4:217.34.123.225 ip4:88.208.192.100 ip4:192.254.125.237 include:eu._netblocks.mimecast.com include:amazonses.com include:mail.zendesk.com include:spf.protection.outlook.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:tp3hd674k0@rua.powerdmarc.com,mailto:info@staysure.co.uk,mailto:dmarc_agg@dmarc.everest.email; ruf=mailto:tp3hd674k0@ruf.powerdmarc.com,mailto:info@staysure.co.uk,mailto:dmarc_fr@dmarc.everest.email; pct=100; fo=1;policy: quarantine - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt5w5y0oHQ6Il8zvdjD5Rju9Xnzrqj7ouBgEuxHJ8PDJ1Dn7WjodHEx4CZDi8MHj0fWep/Bgnb5i9rzB8nH… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDiTsWtIj9jCQeEO6T8MuEZR697B+cwKex2gHjsxjXekBkjza89mne/q6RbnFTOuaDx8la/+A0O6QmiqXMZkxtOCi…
selectors probed - s1:
Certificate (current)
E8
Expires in 87 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
camera=(), microphone=(), geolocation=(), payment=(), usb=(), magnetometer=(), gyroscope=(), accelerometer=(), ambient-light-sensor=(), autoplay=(self "https://player.vimeo.com"), fullscreen=(self "https://player.vimeo.com")- x-content-type-options
nosniff- content-security-policy
style-src 'self' 'unsafe-inline' *.typekit.net cdnjs.cloudflare.com *.hotjar.com tags.srv.stackadapt.com *.staysure.co.uk *.magnolia-platform.io snippet.maze.co dev.oathstudio.com *.staysuregroup.com *.niceincontact.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' static.zdassets.com *.staysure.co.uk *.magnolia-platform.io webanalytics.interserv.co.uk static.cloudflareinsights.com www.googletagmanager.com cdn-ukwest.onetrust.com www.google-analytics.com bat.bing.com t.contentsquare.net static.hotjar.com www.tag4arm.com connect.facebook.net cdn.evgnet.com analytics.tiktok.com script.infinity-tracking.com script.hotjar.com api.smooch.io *.optimizely.com app.contentsquare.com *.googlesyndication.com *.tradedoubler.com *.mention-me.com berrythompson.innocraft.cloud snippet.maze.co cdn-assets-prod.s3.amazonaws.com tag4arm.azureedge.net dev.oathstudio.com *.staysuregroup.com staysure.boost.ai api.eu-1.smooch.io *.herbstarsbuilding.com *.doubleclick.net drench-design.involve.me staysure-p- strict-transport-security
max-age=31536000; includeSubDomains; preload