virginactive.co.uk
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Cloudflare Insights
- Google Tag Manager
- Ads
-
- Google Ads
- Google Ads (DoubleClick)
Third-party hosts loaded (9)
- va-cdn.equator-live.com×8
- cloud.typography.com×2
- accounts.livechatinc.com×1
- cdn.insight.sitefinity.com×1
- cdn.livechatinc.com×1
- googleads.g.doubleclick.net×1
- static.cloudflareinsights.com×1
- www.googleadservices.com×1
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- nsgbr.comlaude.co.uk
- nssui.comlaude.ch
- nsusa.comlaude.net
- MX
-
- 10 virginactive-co-uk.mail.protection.outlook.com
- TXT
-
Show 13 TXT records
dq0tc4p2tn0y8qxdh9yd45rf3drd9qdvgoogle-site-verification=A8R3De2Lk2GL78Brzq3RnUdypA76tzJfNdFz95nyMEAvirginactive.virginactive.co.ukgoogle-site-verification=wiIlTolBBCgXn_mcCaVNQ9rtgdZ1KtZQLLTMomC5wmw_0wriatitepfb7kcpm96jwveshph6mcs_xn71b0y2p6spt4f90k3p0xqsmfsfigaapple-domain-verification=uI6PdCcoW8dzrJJagoogle-site-verification=11D9jsXZhlQrBsvwz72IHqsNy08Jk8c2KRjypOYhFBYMS=ms74559209VKM165BRRA339W9OW3RGLRHW6IN7CQYG21K8N1AK88flxjkm00mqzhcs1x2nnczdt9h7jq34kp141wB/If5UfRf5H48WlAu7NnBHSwosCVrV3lAbR0cjgLnuKvDneKFEPsFOiwV6kWmpK9avbnIiErKROlFGhw==google-site-verification=uyEwjy0ZzrNP0Yq0Nw2LV0KDPh805J0HQ3YfwBEhx9E
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:ea1.earcu.com include:euw1.spf.exerp.com include:ciphr247.com ip4:185.84.1.202 ip4:185.84.1.20 -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:DmarcReporting@virginactive.co.uk; ruf=mailto:DmarcReporting@virginactive.co.uk; fo=0; pct=100policy: reject (enforced) - DKIM
-
- selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDZnPQ+L32VdVRoPLBONC8RF+MvNpExEzbpMJ/SarJv5Ao6cikpXvYashhXebKXAu5iGm4RKGqOFvlvi7SU1D… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA9Q/LcGUF71Z3Z/BJKHKoICrSKS7FTgTmImva+XxU9bBYiu1b3jrA/FZ33oZUTHCIOLbeR7k3/ZDhr6vdjn… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0zQGzEZAnnuaaBJVkjQxWAGBp6li+HMB3nU0ooXnY9js4E0MpanmRYCPCToVKvoJIqeEaU0wB9//sYUKyo…
selectors probed - selector2:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 122 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
upgrade-insecure-requests; base-uri 'self'; frame-ancestors 'self'; form-action 'self'; object-src 'none'; img-src * data: blob: https:;- strict-transport-security
max-age=31536000; includeSubdomains
Links to (5)
- apple.com×1
- google.com×1
- instagram.com×1
- linkedin.com×1
- tiktok.com×1