tenpin.co.uk
HTML metadata
Technology
- CDN
- Cloudflare
- jQuery
- 1.9.1 known XSS (<3.5)
- Analytics
-
- Cloudflare Insights
- Cookie consent
-
- OneTrust
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (8)
- ajax.aspnetcdn.com×2
- ajax.googleapis.com×2
- cdn-ukwest.onetrust.com×1
- js.appboycdn.com×1
- static.cloudflareinsights.com×1
- try.abtasty.com×1
- use.typekit.net×1
- widget.trustpilot.com×1
Social
Contact
DNS records live
- NS
-
- ns0.bt.net
- ns1.bt.net
- ns2.bt.net
- MX
-
- 10 cluster2.eu.messagelabs.com
- 20 cluster2a.eu.messagelabs.com
- TXT
-
2VjbNoN6j+uLGcabqIZeAQ6xIpDhPscSXxJBQcVgWpJydgSz5Lqz0xuNgLbsEPTpgCGlqj8Rijs9kUO2M0wk5w==
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 include:spf.messagelabs.com include:sendgrid.net include:_phishspf.knowbe4.com include:txdlimited.co.uk -allstrict (-all) - DMARC
-
v=DMARC1; p=none; fo=1; rua=mailto:093126da@mxtoolbox.dmarc-report.com; ruf=mailto:093126da@forensics.dmarc-report.compolicy: none (monitoring only) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA14Kb3UH6no7/Mmwm3EFjfY/eezUygQCGUxiDFMFfNdrtFbMBwepYlCYXp6yQW1TIwpoT1LXHkkyK0GEEEs… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDoQ+2nHPbPSCDG7RhZw+Zl71T3R9bvkUfBusoLUgLTfZZ6hLHVurp6NNjAeVTELEEkKSaun1bggIZlILaDz9iwqa…
selectors probed - s1:
Certificate (current)
Thawte TLS RSA CA G1
Expires in 168 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- weak frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN, SAMEORIGIN, SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'nonce-xOBQBY1lqUCB7jEItDyU1w' 'strict-dynamic' 'unsafe-eval' https://*.abtasty.com https://www.tenpin.co.uk 'sha256-A2/wmepnV7IYUvWYeR3ZwCT3G+cfNJqM4tnfKVDpIPM='; script-src-elem 'self' 'nonce-xOBQBY1lqUCB7jEItDyU1w' 'strict-dynamic' 'unsafe-eval' https://*.abtasty.com https://www.tenpin.co.uk 'sha256-A2/wmepnV7IYUvWYeR3ZwCT3G+cfNJqM4tnfKVDpIPM='; style-src 'self' 'unsafe-hashes' 'nonce-xOBQBY1lqUCB7jEItDyU1w' https://*.abtasty.com https://use.typekit.net https://a.omappapi.com https://*.eckoh.uk https://*.omappapi.com https://fonts.googleapis.com https://*.typekit.net 'sha256-VpIdT7HiW9nlhn4SN9niIcsa6epzHqdOUPjtgrMZXos=' 'sha256-pCOZ+JPeyFSL7v4184EEm8wsi1x1VMzQ74w+Y53am/8=' 'sha256-47DEQpj8HBSa+/TImW+5JCeuQeRkm5NMpJWZG3hSuFU=' 'sha256-aqNNdDLnnrDOnTNdkJpYlAxKVJtLt9CtFLklmInuUAE=' 'sha256-Jv4alyOfhCRZV779M+i0dOyYQUOKsHhIKWeZSy99kUk=' 'sha256-YTEza4CA2qPCNGLfB6mKa5FjY8kjkO/K7nQxeJxVd9E=' 'sha256-JN34oVk9jCYhnPdJff1gLu5SCQYQ7BbolG6xVY5GAus=' 'sh- strict-transport-security
max-age=31536000