theofficegroup.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Next.js
Third-party hosts loaded (1)
- cookie-cdn.cookiepro.com×1
Social
Contact
- Phone
- Address
- 53-64 Chancery Lane, London WC2A 1QS
Registration
- Registrar
- Cloudflare, Inc.
- Created
- 2005-11-29
- Expires
- 2028-11-29 924 days left
- Updated
- 2021-03-26
- Name servers
-
- dale.ns.cloudflare.com
- dawn.ns.cloudflare.com
DNS records live
- NS
-
- dale.ns.cloudflare.com
- dawn.ns.cloudflare.com
- MX
-
- 11 theofficegroup-com.mail.protection.outlook.com
- TXT
-
Show 19 TXT records
google-site-verification=i2qaA20cYZ1uk0_Z3Kg0kku2E3Nc1Ucw0ruzQWW_04Qhave-i-been-pwned-verification=1be7e812b129c3647bd452777e3e7c74notion-domain-verification=aW6ifmTAJ1Sh9SJPeH7GJkdlNVs3s8fazvfs9O0aXwxpardot565012=96c5233a3f999b205f18786216e9986a6ec1bcaebc9348a92d221fc3091ac877stripe-verification=0af07ff8c8a8893963824adff64bb9254b55566d1b80b0bd26901b7b3b95e7ddtog-portal-prd-we-apps-ui.azurewebsites.networkplace-domain-verification=[9b4c4e54-b0f4-47a1-9396-ee5c391357e9]MS=ms80832660ZOOM_verify_H7bKCXCDRrm3pyojHIlhPgaccess-domain-verification=ed3795cc0e0eb29409fef00d44f16b60e7961150fbfdd61fc7d99a99da5a0e67apple-domain-verification=cMO64ySlBvLoGlWSatlassian-domain-verification=LrEIfeVipKYkvgaGM5u3iLWqBIj0q4Kb9JYWAULmmm6D/IfX2adT5nYCXKa8qIb7canva-site-verification=5u-9-Y0LXXQl9uY4VeueFQdocusign=7c3b3553-f4be-4907-99e6-86b9acc4e182docusign=fbc00ba1-c473-4620-b507-c3955f162984dropbox-domain-verification=ikji1kp9fmlzfacebook-domain-verification=l1jroabxwncywu2ueqtxujmtn6s8bhgoogle-site-verification=Cha3viKP5HIU3R27qeHCDZeY8N_f4ddwrNLDaoQ4fmwgoogle-site-verification=TK5AB1NrPHAMdOvMNcLIf2ICi-iNI7rQcZPeu652cGg
Email authentication strong
- SPF
-
v=spf1 include:_u.theofficegroup.com._spf.smart.ondmarc.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; pct=100; sp=reject; rua=mailto:ee5a7796@inbox.ondmarc.com,mailto:5ehbfikk5w@rua.powerdmarc.com; ruf=mailto:ee5a7796@inbox.ondmarc.com,mailto:5ehbfikk5w@ruf.powerdmarc.com; adkim=r; aspf=r; fo=0; rf=afrf; ri=3600policy: reject (enforced) · sp=reject - DKIM
-
Show 5 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvCKLjuDcDaYiYgUgvIGxtT187cpEe0gOsnXNSjhuoEng258iknEZdfmJ4a8GPr7hcWLjX7jlYNEB1y… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqxhjsENH1mbFTCnP6mkhD+ti4qWlm0WfTNFXGnmH6nlwARptOJVGBzMd7RScsRi/JFTbgXovB1+Og9… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2WjtOKuR+nRDpEhRKaNjA5Os9UGMcb2jGtCm8kvuMXBHxglIZZvMqqRcyWTw8bZm/ZAZVPVnR8dDC+u+bi… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAz1UIcVMoYEn2IMc27PuZZORe0B07eRyTwTfRmHvhdXyJXPBYI7l3gBbKVesMafc1RNIb0SJne0NPTUXtsp…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 59 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'unsafe-inline' 'unsafe-eval' 'report-sample' 'self' https://googleads.g.doubleclick.net https://www.googleadservices.com https://www.googletagmanager.com https://*.googlesyndication.com https://www.google-analytics.com https://api.mapbox.com https://cookie-cdn.cookiepro.com https://www.youtube.com https://ad.doubleclick.net https://bat.bing.com https://connect.facebook.net https://platform.twitter.com https://rum-static.pingdom.net https://script.infinity-tracking.com https://snap.licdn.com https://static.ads-twitter.com https://tags.srv.stackadapt.com https://unpkg.com https://qvdt3feo.com https://*.hotjar.com https://vercel.live https://challenges.cloudflare.com https://*.posthog.com; style-src 'unsafe-inline' 'report-sample' 'self' https://tags.srv.stackadapt.com https://*.hotjar.com https://vercel.live https://fonts.googleapis.com https://www.googletagmanager.com; object-src 'none'; child-src blob:; base-uri 'self'; connect-src 'self' https://*.analy- strict-transport-security
max-age=63072000