the-exeter.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (4)
- cdnjs.cloudflare.com×2
- www.googletagmanager.com×2
- js-eu1.hs-scripts.com×1
- widget.trustpilot.com×1
Social
Contact
- Phone
Registration
- Registrar
- Register SPA
- Created
- 2015-02-13
- Expires
- 2028-02-13 633 days left
- Updated
- 2026-02-13
- Name servers
-
- ns-1030.awsdns-00.org
- ns-1787.awsdns-31.co.uk
- ns-500.awsdns-62.com
- ns-843.awsdns-41.net
DNS records live
- NS
-
- ns-1030.awsdns-00.org
- ns-1787.awsdns-31.co.uk
- ns-500.awsdns-62.com
- ns-843.awsdns-41.net
- MX
-
- 0 theexeter-com0i.mail.protection.outlook.com
- TXT
-
have-i-been-pwned-verification=136f44d9ed95dbf3a670a4fc735384baN54Bb3yMx1lKVNp0za4Y6BzCXUjvGBAoXn+ix28yjYQCYsU4ukJ5PUXPBZS4oNuE8pfO0JRZro2wXZl3wx77TA==
- Verified for
-
- Atlassian
- Microsoft 365
- Miro
Email authentication strong
- SPF
-
v=spf1 include:amazonses.com include:spf.protection.outlook.com include:spf1.the-exeter.com include:spf2.the-exeter.com ip4:94.126.40.0/24 ip4:94.126.44.0/22 ip4:178.18.112.0/22 ip4:163.156.213.128/25 ip4:52.209.73.47/32 -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:wg-admin@the-exeter.com,mailto:ITSecurity@the-exeter.com; ruf=mailto:wg-admin@the-exeter.com; aspf=rpolicy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCbYcyY597B4LfHQLiLl8gIPuqXJTLRFtjlvVegu7UcQGSEeZwLFV9iKywCqFT9GIYJdcecY24+Qr/hV4q5Ti… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuQuNNKv8d4tdXLDdXJLOwT02yoWfj/zFpDKmS9AvVXAGTUa3ZKtChXS3jT7k/CXT3ZKn2bzkdks6T0… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 83 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
origin-when-cross-origin- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
default-src 'unsafe-inline' 'unsafe-eval' 'self' data: https://api.postcodes.io:443 https://*.google-analytics.com:443 https://region1.analytics.google.com:443 https://stats.g.doubleclick.net:443 https://www.facebook.com:443 https://gateway.shorthand.com:443 https://www.opinionstage.com:443; connect-src 'self' wss://ws.hotjar.com:443 https://ad.doubleclick.net:443 https://*.hotjar.com:443 https://*.hotjar.io:443 https://*.clarity.ms:443 https://api-eu1.hubapi.com:443 https://*.ads.linkedin.com:443 https://px.ads.linkedin.com:443 https://forms-eu1.hscollectedforms.net:443 https://googleads.g.doubleclick.net:443 https://www.google.com:443 https://forms-eu1.hsforms.com:443 https://forms.hsforms.com:443 https://hubspot-forms-static-embed.s3.amazonaws.com:443 https://geolocation.onetrust.com:443 https://gateway.shorthand.com:443 https://*.google-analytics.com:443 https://api.postcodes.io:443 https://region1.analytics.google.com:443 https://stats.g.doubleclick.net:443 https://www.google-anal- strict-transport-security
max-age=2592000