unilabs.com

.com crawl

First seen 2026-05-09 · Last seen 2026-05-20 · ok HTTP/1.1 200 473 ms crawled 2026-05-15

US · 104.18.3.97 · AS13335 Cloudflare, Inc.

Reputation 92/100 no dmarc policy

sector health type homepage

HTML metadata

Title
Unilabs | Powering health by supporting healthcare decisions every day
Description
With the ambition to support healthcare practitioners and maximise the lives of billions of people across the globe
Language
en
Generator
Drupal 10 (https://www.drupal.org)
Canonical
https://unilabs.com/

Technology

CDN
Cloudflare
CMS
Drupal
Analytics
  • Google Tag Manager
Cookie consent
  • OneTrust
Fonts
  • Google Fonts

Third-party hosts loaded (3)

  • fonts.googleapis.com×2
  • cdn.cookielaw.org×1
  • www.googletagmanager.com×1

Registration

Registrar
Abion AB
Created
2000-09-26
Expires
2026-09-26 128 days left
Updated
2025-09-19
Name servers
  • dean.ns.cloudflare.com
  • phoenix.ns.cloudflare.com

DNS records live

NS
  • dean.ns.cloudflare.com
  • phoenix.ns.cloudflare.com
MX
  • 10 unilabs-com.mail.protection.outlook.com
TXT
Show 6 TXT records
  • l2m2flw845xf2k9q3czz42jvsnq2dm4t
  • knowbe4-site-verification=58c333c3323f8e181810647af0f7ce20
  • ch5m7rs7cc8261yqshqsvfs0j6br3587
  • U5wASJXuFQYfzfQrervpw5pvczijC/yViZr6CEGQserLnakUjxbCxYG0jSPspNCyoZkePQ0sD4s1lxW0uj+n5g==
  • _3jap87zymnzmwv2dosmq05rrcazrpxy
  • g7mx1hc4n1zp5gjdw8x9b44drqm318jj
Verified for
  • Brevo
  • DocuSign
  • Google
  • Microsoft

Email authentication weak

SPF
v=spf1 include:_spf-a.unilabs.com include:_spf-b.unilabs.com include:_spf-c.unilabs.com include:_spf-d.unilabs.com -all
strict (-all)
DMARC
not published
DKIM
Show 6 DKIM selectors
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApAwzjVdGR7FVBVsQPIr6mKdcFRQwEYgBu8/neJIVvZYaJvCwMV/YK7okU0vQZ6+uLPX4dgqFsIjxRU…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA+UOIXF6/xYHtjbMBLnl2mCpIYctsYI1ddscC1adsaiOaUuaotzOeNhU9nWPdERR2gEDkuv2RBD7sna…
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
  • mail: k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsqXv1eHpp6qj6nDqxew/J5NIpv8nQMO4MX4kRm3SSwIJTVWKA50sPIFgsBpAjzRBsPji53q/JFmj6H7+e5…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCnt8OVDjdcbPPo5Nlxq2vOeCrDv8xuMS1D1c/RG/sypKN0VDJ4H+rKlMhIAAwtd9F/oaFxwKkYFSINdOu+PFJfvu…
selectors probed

Certificate (current)

WE1
from 2026-05-15 to 2026-08-13
Expires in 85 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://unilabs.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin
x-frame-options
SAMEORIGIN
permissions-policy
autoplay=(), geolocation=()
x-content-type-options
nosniff
content-security-policy
default-src 'self' gap: https://ssl.gstatic.com; script-src-elem 'unsafe-inline' self https://www.gstatic.com https://static.ads-twitter.com https://snap.licdn.com https://scripts.clarity.ms https://cdn.jsdelivr.net https://stackpath.bootstrapcdn.com *.unilabs.com unilabs.com https://www.clarity.ms https://www.google.com https://connect.facebook.net https://fonts.googleapis.com https://static.addtoany.com/ https://*.cookielaw.org https://cdn.cookielaw.org https://www.google-analytics.com/ https://www.googletagmanager.com https://www.googleadservices.com https://static.hotjar.com https://script.hotjar.com/ https://www.google-analytics.com https://googleads.g.doubleclick.net https://*.googletagmanager.com https://www.googletagmanager.com/ ; style-src 'unsafe-inline' 'self' https://cdn.jquery.app/ https://cdn.jquery.app/ https://fonts.googleapis.com https://widget.moin.ai https://css.zohocdn.com https://cdnjs.cloudflare.com https://cdnjs.cloudflare.com https://maxcdn.bootstrapcdn.com htt
strict-transport-security
max-age=31536000; includeSubDomains

Links to (12)

Linked from (8)