tomdixon.net
HTML metadata
Technology
- Server
- istio-envoy
- CMS
- Shopify
- Analytics
-
- Google Analytics
- Google Tag Manager
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (13)
- assets.prod.tomdixon.build×19
- t.assets.tomdixon.build×3
- www.googletagmanager.com×2
- api.prod.tomdixon.build×1
- assets.tomdixon.build×1
- cdn.shopify.com×1
- consent.cookiebot.com×1
- consentcdn.cookiebot.com×1
- js.klarna.com×1
- region1.google-analytics.com×1
- static.klaviyo.com×1
- video.assets.tomdixon.build×1
- vjs.zencdn.net×1
Social
Registration
- Registrar
- Key-Systems GmbH
- Created
- 2001-10-11
- Expires
- 2026-10-11 145 days left
- Updated
- 2025-11-28
- Name servers
-
- ns1.brandshelter.com
- ns2.brandshelter.de
- ns3.brandshelter.info
- ns4.brandshelter.net
- ns5.brandshelter.us
DNS records live
- NS
-
- ns1.brandshelter.com
- ns2.brandshelter.de
- ns3.brandshelter.info
- ns4.brandshelter.net
- ns5.brandshelter.us
- MX
-
- 5 tomdixon-mx.esvacloud.com
- 5 tomdixon.esvacloud.com
- TXT
-
Show 12 TXT records
klaviyo-site-verification=RMCBXGgoogle-gws-recovery-domain-verification=65936036yblf6JhqdWtI4J+NNh2dgRJfLC9+NSDoo9E5vdDmg7x6X+pIEFYAxc2qETExWAq6blTn8ijonEdh/Y1EWmBA7Q==r75l3cosm9dk2mbnb3fh0o172MS=ms13737182google-site-verification=d3WJd5VfW1122u430kAKePxEoPTXTTnMN8oXfyJdu3Agoogle-site-verification=lKxxQUd1YgvZGaF5-Ag3SpN9HHyYVJU5MT8_VRQ922QA7LXAXFTVLapple-domain-verification=2YGMGcjCSwqksweLLQ7a4Y48tg3QoJWrgX2EShiscfkgoogle-site-verification=uUAWH_pNJi7dRERoSfvZIHBafz4E9H8qIRnUW-NIilwgoogle-site-verification=ZI1zjdnLmFDr-hwA-YPObYk2X0KtdG6xyLXLC_0MuUoklaviyo-site-verification=Thne48
Email authentication strong
- SPF
-
v=spf1 include:spf.esvacloud.com a:tomdixon.esvacloud.com include:spf.protection.outlook.com include:servers.mcsv.net include:spf.mandrillapp.com include:spf.exclaimer.net include:_spf.presscloud.com -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;pct=100;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDCdKZINKUZhAV9Xs2LYFg+bK5wpfhZqUF/dQMn89uYA5wsCp+XPk1tQsxayrjFL7Dd95ag0whvJYh8pNerVv… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed - selector1:
Certificate (current)
WR3
Expires in 75 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
default-src 'self' static.zdassets.com *.cookiebot.com *.klarnaservices.com *.tomdixon.build *.tomdixon.net *.tomdixonprofessionals.net *.hotjar.com *.hotjar.io wss://*.hotjar.com *.assets.tomdixon.build *.zencdn.net blob: *.sentry.io *.klaviyo.com; worker-src 'self' blob:; connect-src 'self' *.tomdixon.build *.tomdixon.net *.tomdixonprofessionals.net *.myshopify.com *.assets.tomdixon.build *.zencdn.net static.zdassets.com ekr.zdassets.com *.cookiebot.com *.klarna.com *.klarnaevt.com *.klarnaservices.com https://*.hotjar.com https://*.hotjar.io wss://*.hotjar.com https://*.getflowbox.com https://gateway.getflowbox.com https://a.getflowbox.com *.facebook.net *.facebook.com www.googleoptimize.com www.googletagmanager.com *.google-analytics.com *.analytics.google.com googleads.g.doubleclick.net stats.g.doubleclick.net www.google.com blob: *.sentry.io *.shopifysvc.com *.klaviyo.com *.datadome.co *.rakuten.com; font-src 'self' *.tomdixon.build *.tomdixon.net *.tomdixonprofessionals.net font- strict-transport-security
max-age=31536000; includeSubDomains; preload