weightmans.com
HTML metadata
Technology
- CDN
- Azure Front Door
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (4)
- www.weightmans.comhttps×2
- cdn.yoshki.com×1
- www.google.com×1
- www.googletagmanager.com×1
Social
Contact
- Address
- 100 Old Hall Street, L3 9QJ, Liverpool, GB
Registration
- Registrar
- 123-Reg Limited
- Created
- 1999-02-01
- Expires
- 2029-02-01 987 days left
- Updated
- 2024-02-07
- Name servers
-
- ns1-08.azure-dns.com
- ns2-08.azure-dns.net
- ns3-08.azure-dns.org
- ns4-08.azure-dns.info
DNS records live
- NS
-
- ns1-08.azure-dns.com
- ns2-08.azure-dns.net
- ns3-08.azure-dns.org
- ns4-08.azure-dns.info
- MX
-
- 10 eu-smtp-inbound-1.mimecast.com
- 10 eu-smtp-inbound-2.mimecast.com
- TXT
-
Show 6 TXT records
citrix.mobile.ads.otp=whyw830u9nxmvpdfajze5ssvs7meWKwB9CTEFu70aP575XIE779pT0cdOknaNSJ5dM8YEataQAF6EKsGBiSJMkyUVQjV6yW7wv3YFDDuR7p0DA==bh4a1et0l5m65a5uovjqokse3axjfgdq8j2hht30cykwqc15pg191hyrhv52coqhgi8s9q87qmd8cdg9bgjgbundledocs-domain-verification=046c5aae77844bab98390257fdc64b2b8a3035a7907145a1a8cefe8def89f217
- Verified for
-
- Ahrefs
- Apple
- DocuSign
- Zoom
Email authentication strong
- SPF
-
v=spf1 include:eu._netblocks.mimecast.com include:spf.protection.outlook.com include:spf.vx-email.com include:kallidus-suite.com include:sendgrid.net ip4:83.244.147.131 -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:rua-dmarc@weightmans.com; ruf=mailto:ruf-dmarc@weightmans.com; sp=reject; fo=1; pct=100; ri=36000policy: reject (enforced) · sp=reject - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtDAzKr913LH2ZQP50xO7gADHgY0EOehNgV7mXBtEsgnh8b6kQgb8Edz6JME5Rb9hU8ix8AS0hQTVytjyLu… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnmhS05kGR0ZYyGjzTDm1BsvhMfo9IG3nmEVjQX67RPFT08ayUftqKuzX3qqCtnRtxby4uz0iFExsQvIvfO…
selectors probed - s1:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 62 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(self), autoplay=(self), camera=(), encrypted-media=(self), fullscreen=(*), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=(), usb=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' https://*.wistia.com https://*.wistia.net weightmanslivecdn.azureedge.net cdn.cookiehub.eu *.cookiehub.eu; frame-src *.weightmans.com weightmans.email *.google.com cdn.yoshki.com *.youtube.com *.youtube-nocookie.com chatbot.wearegabba.com *.googletagmanager.com *.slideshare.net dev-weightmans.neotalogic.com weightmans.neotalogic.com weightmans.outgrow.us gateway.id.swg.umbrella.com *.weightmans.com communications.weightmans.email; connect-src 'self' *.azure.com *.visualstudio.com cookiehub.com *.cookiehub.com cookiehub.net *.cookiehub.net embedwistia-a.akamaihd.net *.wistia.com *.wistia.net fonts.googleapis.com fonts.gstatic.com *.weightmans.com cdn.cookiehub.eu *.cookiehub.eu consent.cookiehub.eu cookiehub.net *.cookiehub.net cdn.cookiehub.eu *.juicer.io wss://localhost:* analytics.google.com *.google-analytics.com *.analytics.google.com *.doubleclick.net plausible.io *.clarity.ms cdn.yoshki.com *.googletagmanager.com *.googleapis.com fonts.googleapi- strict-transport-security
max-age=63072000; includeSubDomains- cross-origin-opener-policy
same-origin