theros.org.uk
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
- Font Awesome
- Social widgets
-
- Disqus
Third-party hosts loaded (10)
- strwebprdmedia.blob.core.windows.net×6
- cdnjs.cloudflare.com×2
- use.typekit.net×2
- ajax.googleapis.com×1
- memex-1.disqus.com×1
- stackpath.bootstrapcdn.com×1
- use.fontawesome.com×1
- www.facebook.com×1
- www.google.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Gandi
- Created
- 2018-05-18
- Expires
- 2035-05-18 3284 days left
- Updated
- 2026-04-10
- Name servers
-
- ns1-04.azure-dns.com.
- ns2-04.azure-dns.net.
- ns3-04.azure-dns.org.
- ns4-04.azure-dns.info.
DNS records live
- NS
-
- ns1-04.azure-dns.com
- ns2-04.azure-dns.net
- ns3-04.azure-dns.org
- ns4-04.azure-dns.info
- MX
-
- 0 theros-org-uk.mail.protection.outlook.com
- TXT
-
Show 8 TXT records
include:_spf.eu.messagegears.neto1i5cgbhp5nmr2vjeom4p62m2r8olmlg3084t62tjv7ib6hmb6liCLL3P1g+DPi25JqCxpABRA1yoT9UPnL++gJ3cY/6xh4IP7YdstgL0rR0I/BnPWYaWqtL67PdOmdwuDQnbS5YA==rosprd.azurewebsites.netcfckb25dem9fr146s7qe0c7pb2atlassian-sending-domain-verification=08ae1cf1-0264-422b-a0c2-dd9a5f292bb8ii7jltg1qjs4hoaldiu9vg18qh
- Verified for
-
- Atlassian
- Meta
Email authentication strong
- SPF
-
v=spf1 include:_spf.theros_org_uk._d.easydmarc.pro ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=reject;pct=100;rua=mailto:a5763d0a4d@rua.easydmarc.eu;ruf=mailto:a5763d0a4d@ruf.easydmarc.eu;fo=1;policy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAriVztfinH+CTB7liUS1Ni9dO1HpHeiB0DvqnjaQylpiDtqvrvIQnIIs2hGqVMX68xIW4FD8sMGpxXN… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCzkJCzMamvJJKVuwLjaqcwmiIXpaixLolmhsHecdmJPyFmub2IgwM7Y695KHIfFi0IZxidBH9z35IUJRcVXj… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAr0z6hprxH9bHZgTN4w1GsCeLSq9Nw+PdrpDqWFlt1db9/z9wOyhZyQ+Qxr09bXmd9G41FxOFykeYyc3YM6… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6jtefExbf2EoYuLRVyWXVq3Lx3PgdqMTwhRl7Ulm40OOqznKs8TE4Oab4nIGbWWSX2zh4ptQ0lpE1Xrnj2…
selectors probed - selector1:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 168 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' https:; frame-src 'self' https:; worker-src 'self' https:; object-src 'none';- strict-transport-security
max-age=63072000; includeSubDomains; preload