thebigbang.org.uk
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
- Google Fonts
Third-party hosts loaded (5)
- cc.cdn.civiccomputing.com×1
- fonts.googleapis.com×1
- fonts.gstatic.com×1
- use.typekit.net×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- 123-Reg Limited t/a 123-reg
- Created
- 2008-10-09
- Expires
- 2026-10-09 142 days left
- Updated
- 2025-10-10
- Name servers
-
- mitch.ns.cloudflare.com.
- opal.ns.cloudflare.com.
DNS records live
- NS
-
- mitch.ns.cloudflare.com
- opal.ns.cloudflare.com
- MX
-
- 0 thebigbang-org-uk.mail.protection.outlook.com
- TXT
-
MS=ms10690243google-site-verification=gv2HKhknimoZC3v22YOM1go7gJnJHZA1DbUG5GDOVkc
Email authentication partial
- SPF
-
v=spf1 include:spf.protection.outlook.com include:mailgun.org -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@engineeringuk.com; ruf=mailto:dmarc@engineeringuk.com; ri=86400; aspf=s; adkim=s; fo=1policy: none (monitoring only) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzE6GHxHJ8kRPuWC/KKOuozkJvaE+uW/Nnln9iX4QjVozjiDO52sr4ImhWU0+wB0eDXzHZ04q7iZG1h… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvnWaBzHcsXeW2QMdWWdurssgKa6lIcWRvrR3csV2sv2uw6HHWHRC9qZIqUDthnl6CxYadFSoLI9clA5O5f… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApi6YykPoSCXfHpsoXOWklCC+/W8bHMdUBeXDa2FhDoinVaDAEnDl7qEUo9f+/56M6bpxBK2n08/MSbeqNX…
selectors probed - selector1:
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 132 days
HTTP security headers
- present
-
- content-security-policy
- x-content-type-options
- referrer-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' https://*.googletagmanager.com https://*.google-analytics.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://www.google.com https://maps.googleapis.com https://www.cognitoforms.com https://*.civiccomputing.com https://js.monitor.azure.com https://www.gstatic.com https://*.amazonaws.com https://*.us18.list-manage.com https://*.clarity.ms; connect-src 'self' https://*.google-analytics.com https://*.analytics.google.com https://*.googletagmanager.com https://www.cognitoforms.com https://stats.g.doubleclick.net https://*.civiccomputing.com https://dc.services.visualstudio.com https://*.googlesyndication.com https://js.monitor.azure.com https://*.clarity.ms; style-src 'self' 'unsafe-inline' https://*.typekit.net https://fonts.googleapis.com https://www.cognitoforms.com https://*.mailchimp.com; img-src 'self' 'unsafe-inline' data: https://googleads.g.doubleclick.net https://www.google.com https://*.googletagm