diageo.com | Analytics by SecurityHeaders

HTTP Headers report for diageo.com

Header Name Header Data
HTTP status code 200
Content-Type text/html; charset=utf-8
Connection keep-alive
Strict-Transport-Security max-age=15552000; includeSubDomains; preload
X-Content-Type-Options nosniff
Cf-Ray 933d113778c0f4d1-AMS
Set-Cookie www-diageo-com#lang=en; path=/; secure; SameSite=None
Cf-Cache-Status DYNAMIC
Server cloudflare
Cache-Control private
Vary Accept-Encoding
Content-Security-Policy default-src 'self' staticcontents.investis.com ingesteu.quantummetric.com footer.diageohorizon.com *.diageo.com *.diageoagegate.com media.idigitalcontents.com *.diageohorizon.com fonts.gstatic.com cdn.jsdelivr.net fonts.googleapis.com viz.tools.investis.com edge.api.brightcove.com; img-src 'unsafe-inline' data: *; frame-src 'self' https://archive-3d.com *.zscaler.net *.zscalerone.net *.zscalertwo.net *.zscalerthree.net *.zscloud.net footer.diageohorizon.com *.diageo.com *.diageoagegate.com www.nyse.com www.pathfinderdiageo.com *.doubleclick.net www.youtube-nocookie.com cdn.jsdelivr.net diageogb2024eutfm.q4web.com www.googletagmanager.com www.google.com my.matterport.com ir.connectidfeed.com consentcdn.cookiebot.com www.youtube.com viz.tools.investis.com player.vimeo.com irs.tools.investis.com otp.tools.investis.com; style-src 'self' 'unsafe-inline' 'unsafe-eval' *.zscaler.net *.zscalerone.net *.zscalertwo.net *.zscalerthree.net *.zscloud.net footer.diageohorizon.com assets.investisdigital.com *.diageo.com *.diageoagegate.com https://cdn.quantummetric.com *.typekit.net cdn.fonts.net fonts.googleapis.com cdn.jsdelivr.net *.diageohorizon.com; font-src 'self' 'unsafe-inline' data: fonts.idigitalcontents.com use.typekit.net footer.diageohorizon.com *.diageo.com *.diageoagegate.com fonts.gstatic.com cdn.fonts.net; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.googleadservices.com cdn.amcharts.com player.vimeo.com f.vimeocdn.com *.zscaler.net *.zscalerone.net *.zscalertwo.net *.zscalerthree.net *.zscloud.net footer.diageohorizon.com *.diageo.com *.diageoagegate.com static.cloudflareinsights.com code.highcharts.com *.diageohorizon.com *.onetrust.com snap.licdn.com staticcontents.investisdigital.com www.diageoagegate.com *.lfeeder.com https://cdn.quantummetric.com *.quantummetric.com unpkg.com www.srihash.org www.google.com irs.tools.investis.com otp.tools.investis.com cdn.jsdelivr.net www.youtube-nocookie.com www.youtube.com consent.cookiebot.com *.vimeocdn.com www.gstatic.com cdnjs.cloudflare.com diageoagegate.diageoplatform.com www2.investisdigital.com www.googletagmanager.com web.diageoagegate.com *.vimeo.com vimeo.com *.google-analytics.com assets.investisdigital.com; connect-src 'self' www.google.co.in cdn.amcharts.com diageo-prod-api.connectid.cloud diageo-dev-api.connectid.cloud www.diageo.com assets.investisdigital.com api.investisdigital.com *.diageohorizon.com *.onetrust.com footer.diageohorizon.com *.diageo.com *.diageoagegate.com ingesteu.quantummetric.com www.diageoagegate.com https://cdn.quantummetric.com *.quantummetric.com px.ads.linkedin.com *.amazonaws.com *.google.com *.doubleclick.net diageogb2024eutfm.q4web.com diageo-stage-api.connectid.cloud diageo-stage-api.connectid.cloud/api/alljobs diageo-stage-api.connectid.cloud/api/jobs diageo-api.connectid.cloud/api/alljobs diageo-api.connectid.cloud/api/jobs irs.tools.investis.com diageo-api.connectid.cloud/api/multijobs *.google-analytics.com *.vimeocdn.com pagead2.googlesyndication.com stats.g.doubleclick.net stats.g.doubleclick.net; object-src 'self'; base-uri; form-action 'self';
Permissions-Policy accelerometer=(),ambient-light-sensor=(), battery=(), camera=(), display-capture=(), document-domain=(), encrypted-media=(), gyroscope=(), magnetometer=(), midi=(), payment=(), picture-in-picture=(self "https://www.youtube-nocookie.com"), publickey-credentials-get=(), usb=(), web-share=(), xr-spatial-tracking=()
Date Mon, 21 Apr 2025 13:00:57 GMT
Referrer-Policy strict-origin-when-cross-origin
X-Xss-Protection 1; mode=block
X-Frame-Options SAMEORIGIN
Access-Control-Allow-Origin *.diageohorizon.com

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar