stratstone.com
HTML metadata
Technology
- CDN
- Azure Front Door
- Analytics
-
- Google Analytics
- Google Tag Manager
- Microsoft Clarity
- Ads
-
- Google Ads
- Google Ads (DoubleClick)
- Meta Pixel
Third-party hosts loaded (28)
- www.googletagmanager.com×3
- accounts.blogger.com×1
- accounts.google.co.uk×1
- accounts.google.com×1
- accounts.youtube.com×1
- analytics.twitter.com×1
- bat.bing.com×1
- c.bing.com×1
- c.clarity.ms×1
- connect.facebook.net×1
- ct.pinterest.com×1
- googleads.g.doubleclick.net×1
- ict.infinity-tracking.net×1
- komito.net×1
- live-chat-cdn.socialsignin.net×1
- lptag.liveperson.net×1
- pixel.quantserve.com×1
- rules.quantcount.com×1
- s.pinimg.com×1
- secure.quantserve.com×1
- static.ads-twitter.com×1
- widget.trustpilot.com×1
- www.clarity.ms×1
- www.facebook.com×1
- www.google-analytics.com×1
- www.google.co.uk×1
- www.google.com×1
- www.googleadservices.com×1
Social
Registration
- Registrar
- MarkMonitor Inc.
- Created
- 1997-03-12
- Expires
- 2027-03-13 296 days left
- Updated
- 2026-02-09
- Name servers
-
- ns1.markmonitor.com
- ns2.markmonitor.com
- ns3.markmonitor.com
- ns4.markmonitor.com
- ns5.markmonitor.com
- ns6.markmonitor.com
- ns7.markmonitor.com
DNS records live
- NS
-
- ns1.markmonitor.com
- ns2.markmonitor.com
- ns3.markmonitor.com
- ns4.markmonitor.com
- ns5.markmonitor.com
- ns6.markmonitor.com
- ns7.markmonitor.com
- MX
-
- 10 de-smtp-inbound-1.mimecast.com
- 10 de-smtp-inbound-2.mimecast.com
- TXT
-
Show 6 TXT records
_qbi493gtyn6z4jkajsvbtw34z0ef0wcspycloud-domain-verification=678972ba-258b-40c1-badf-9b47a146832b_00my9et6dxa12yek2ff8fkoksdp7i1zpinewood-pdw-uks-redirects.azurewebsites.net.QK6JSVCGPC0ed1fe018a70587b50194f4057be4adc45966e5438
- Verified for
-
- Apple
- Meta
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:79ibon0kz8.powerspf.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; pct=100; rua=mailto:rl6624mtjy@rua.powerdmarc.com,mailto:dmarc_agg@vali.email; ruf=mailto:rl6624mtjy@ruf.powerdmarc.com; fo=1;policy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCLo+2IN9gAjfuUZli3QlZsSVOE4Uni9otV1e3c08/zLkxo0ZlE09f2UmCmgIWpFulr1FAfyjWqjcWr+GC5GH… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed - selector1:
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 93 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-embedder-policy
- cross-origin-resource-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(), midi=(), sync-xhr=(self "https://ir.tools.investis.com"), microphone=(), camera=(), magnetometer=(), gyroscope=(), fullscreen=(), payment=()- x-content-type-options
nosniff- content-security-policy
default-src * 'self' data: 'unsafe-inline'; script-src 'self' data: blob: 'unsafe-inline' 'unsafe-eval' *.vo.msecnd.net *.google.com *.virtualearth.net *.bing.com *.googleapis.com *.gstatic.com *.googletagmanager.com cdnjs.cloudflare.com code.jquery.com *.facebook.net *.instagram.com analytics.tiktok.com *.abtasty.com secure.quantserve.com rules.quantcount.com quantcast.mgr.consensu.org cmp.quantcast.com cmp.inmobi.com *.trustpilot.com *.googleadservices.com komito.net bat.bing.com *.clarity.ms *.contentsquare.net googleads.g.doubleclick.net *.google-analytics.com static.ads-twitter.com analytics.twitter.com *.adalyser.com use.fontawesome.com snap.licdn.com px.ads.linkedin.com *.playbuzz.com *.seez.dev *.seez.tech *.seez.dk *.seez.co *.ex.co *.infinity-tracking.net *.infinity-tracking.com p.teads.tv go.affec.tv *.permutive.com *.adnxs.com *.monitor.azure.com *.applicationinsights.io *.vo.msecnd.net *.ingest.sentry.io *.pinimg.com *.pinterest.com *.youtube.com *.ytimg.com *.liveperson.n- strict-transport-security
max-age=2592000- cross-origin-opener-policy
same-origin- cross-origin-embedder-policy
unsafe-none- cross-origin-resource-policy
same-origin