tescoplc.com
HTML metadata
Technology
- Server
- Tesco
Third-party hosts loaded (1)
- www.atmrum.net×1
Registration
- Registrar
- MarkMonitor Inc.
- Created
- 2003-07-04
- Expires
- 2027-07-04 409 days left
- Updated
- 2025-06-02
- Name servers
-
- ns12.ultradns2.com
- ns12.ultradns2.org
- pdns194.ultradns.biz
- pdns194.ultradns.co.uk
- pdns194.ultradns.com
- pdns194.ultradns.info
- pdns194.ultradns.net
- pdns194.ultradns.org
DNS records live
- NS
-
- ns12.ultradns2.com
- ns12.ultradns2.org
- pdns194.ultradns.biz
- pdns194.ultradns.co.uk
- pdns194.ultradns.com
- pdns194.ultradns.info
- pdns194.ultradns.net
- pdns194.ultradns.org
- TXT
-
v=spf1 -all
Certificate (current)
Sectigo Public Server Authentication CA EV R36
Expires in 302 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' packages.umbraco.org our.umbraco.org https://www.tescoplc.com/; script-src 'self' 'self' 'unsafe-inline' 'unsafe-eval' https://www.atmrum.net https://www.youtube.com/ www.google.com https://www.gstatic.com/ https://www.googletagmanager.com/ https://static.hotjar.com/ https://www.google-analytics.com/ https://script.hotjar.com/ https://stats.g.doubleclick.net/; style-src 'self' 'unsafe-inline'; img-src 'self' data: https://cdn.portfolio.hu/ https://corporate.tesco.sk/ https://tescoireland.ie/ https://www.tescoplc.com/ https://app-tescoplc-cm-prod.azurewebsites.net/ https://app-tescov2-qa.azurewebsites.net/ https://www.google-analytics.com/ https://www.gravatar.com/ https://corporate.tesco.hu/ https://i.ytimg.com/ https://corporate.itesco.cz/ https://www.googletagmanager.com/ https://i.vimeocdn.com/ https://behold.pictures *.cdninstagram.com; font-src 'self' data: https://script.hotjar.com; form-action 'self' ; frame-src 'self' https://charts3.equitystory.com/ https:/- strict-transport-security
max-age=31536000; includeSubDomains; preload