yoti.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
Third-party hosts loaded (5)
- cdn.jsdelivr.net×2
- cdnjs.cloudflare.com×2
- cdn-ukwest.onetrust.com×1
- gmpg.org×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- Gandi SAS
- Created
- 2002-03-24
- Expires
- 2027-03-24 308 days left
- Updated
- 2026-02-21
- Name servers
-
- ns-225-b.gandi.net
- ns-54-a.gandi.net
- ns-65-c.gandi.net
- z.dns.gandi.net
DNS records live
- NS
-
- ns-225-b.gandi.net
- ns-54-a.gandi.net
- ns-65-c.gandi.net
- z.dns.gandi.net
- MX
-
- 1 aspmx.l.google.com
- 10 aspmx2.googlemail.com
- 10 aspmx3.googlemail.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 12 TXT records
google-site-verification=96KWvnnhOETcAW5LqlZNqJdBEZiZW_UyLSACIBfDJy8google-site-verification=3MS2je3d2cHa04cdgixt7iwzK8mIiL9LcLUq6HgtEbsyzOFaWMkXELtH/7sT0aPGK3q62IQ6ZFwJ+Jnm1CnC+8=A35QT92ID7atlassian-domain-verification=OleUQVnwPu37JHUq0F3pFqGOQrzbkl2DvsqZjdYVOdnvUMgcmal8TGrQvBkcSg1JWCJB552JK1jamf-site-verification=07ousE1omfs2QvQHaBkL3Qgoogle-site-verification=qJyfElOu508yFSskN4vzLTanEBlHYi7hphnaHBTSfiIms=ms98216052apple-domain-verification=CzpIB9jNHFDZYBnYT94YF67IC2zoom-domain-verification=ZOOM_verify_f5a151533c1646b9a78437d50c08e40a
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com include:servers.mcsv.net include:_spf.salesforce.com -allstrict (-all) - DMARC
-
v=DMARC1;p=quarantine;rua=mailto:mailfraud@yoti.com;ruf=mailto:mailfraud@yoti.com;adkim=s;aspf=s;pct=100;fo=1;sp=nonepolicy: quarantine · sp=none - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC+XbQuya6j1p9e3cIWFAuE3b692sF/YkkTPnYVObnhGq6IVCQNLUhIZSKhVSHD7rRDAqqAAJSabw+vvb9qQK… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed - google:
Certificate (current)
E8
Expires in 82 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
deny- x-content-type-options
nosniff- content-security-policy
default-src 'self';script-src 'self' 'unsafe-eval' 'unsafe-inline' ajax.aspnetcdn.com ajax.googleapis.com api.yoti.com cdn-ukwest.onetrust.com cdn.aws.yoti.com connect.facebook.net core.yoti.com forms.hsforms.com googleads.g.doubleclick.net js.hs-analytics.net js.hs-banner.com js.hs-scripts.com js.hsadspixel.net js.hscollectedforms.net js.hsforms.net s.ytimg.com script.hotjar.com snap.licdn.com static.hotjar.com www.google-analytics.com www.google.com www.googletagmanager.com code.yoti.com www-assets.yoti.com www.yoti.com;child-src 'none';connect-src 'self' 'unsafe-inline' analytics.google.com api.hubapi.com api.yoti.com cdn-ukwest.onetrust.com cdn.jsdelivr.net connect.facebook.net content.hotjar.io core.yoti.com forms.hscollectedforms.net forms.hsforms.com hubspot-forms-static-embed.s3.amazonaws.com metrics.hotjar.io privacyportal-uk.onetrust.com px.ads.linkedin.com region1.analytics.google.com region1.google-analytics.com static.hsappstatic.net stats.g.doubleclick.net vc.hotjar.io ws- strict-transport-security
max-age=63072000; includeSubDomains; preload