dunelm.com Website Overview & Technology Report
🤖 AI Summary
We performed a comprehensive analysis of dunelm.com on 2026-06-27. The website returned an HTTP 200 status code with a server response time of 14104ms. The page is served over HTTP/2 protocol with Gzip compression enabled, achieving approximately 60.0% size reduction. The total page weight is 1138 KB.
Warning: The website does not have a valid SSL certificate. Visitors may see security warnings in their browser, and data transmitted to and from this website is not encrypted.
The security headers analysis reveals a score of 50/100 (moderate). The following security headers are properly configured: Strict-Transport-Security (HSTS), X-Frame-Options, and X-Content-Type-Options. However, the site is missing Content-Security-Policy, Referrer-Policy, and Permissions-Policy, which could expose the site and its users to cross-site scripting (XSS), clickjacking, and other web-based attacks.
Our technology detection scan identified 11 technologies across 10 categories powering dunelm.com. The detected stack includes Angular, React, Bootstrap, Vite, Google Tag Manager, PayPal, Klarna, Salesforce, Fastly, Vercel, and Google Fonts. The site uses Angular as its primary framework. The UI is built with React.
Based on our comprehensive analysis of domain age, SSL configuration, email authentication, security headers, and blacklist status, dunelm.com receives an overall trust score of 72/100, classified as "Likely Safe".
HTTP Response
Status200 OK
Response Time14104ms
ProtocolHTTP/2
Page Size1138 KB
CompressionGzip
Compression Savings~60.0%
CDNNo
Server—
Total Requests122
3rd Party Domains10
Redirect1 hop(s)
Detected Technologies (11)
🔧 Angular
⚛️ React
🎨 Bootstrap
🔨 Vite
🏷️ Google Tag Manager
💳 PayPal
💳 Klarna
👥 Salesforce
☁️ Fastly
🖥️ Vercel
🔤 Google Fonts
Security Headers
✗
Content-Security-Policy
Not set
✓
Strict-Transport-Security (HSTS)
Set ✓
✓
X-Content-Type-Options
Set ✓
✗
Referrer-Policy
Not set
✗
Permissions-Policy
Not set
SSL Certificate
IssuerGoDaddy.com, Inc.
Issuer FullcountryName=US, stateOrProvinceName=Arizona, localityName=Scottsdale, organizationName=GoDaddy.com, Inc., organizationalUnitName=http://certs.godaddy.com/repository/, commonName=Go Daddy Secure Certificate Authority - G2
SubjectcommonName=*.dunelm.com
Type—
TLS VersionTLS 1.2
Cipher SuiteECDHE-RSA-CHACHA20-POLY1305
Algorithm—
Issued—
Expires— (? days)
SANs—
dunelm.com Trust Score & Safety Analysis
🤖 AI Summary
After conducting a thorough safety and legitimacy analysis, dunelm.com receives a trust score of 72/100, which places it in the "Likely Safe" category. This score is calculated by evaluating multiple factors including SSL certificate validity, domain registration history, email authentication protocols, security header configuration, and blacklist status across major threat intelligence databases.
The analysis identified several positive trust signals: a valid HTTPS connection protecting data in transit, HSTS (HTTP Strict Transport Security) enforcement preventing protocol downgrade attacks, SPF (Sender Policy Framework) email authentication preventing email spoofing, DMARC email authentication with a reject policy — the strongest available setting, and DKIM (DomainKeys Identified Mail) providing cryptographic email verification.
Areas of concern include: the absence of a Content-Security-Policy header, which leaves the site more vulnerable to cross-site scripting (XSS) attacks, missing Referrer-Policy, potentially leaking URL information to third parties, the domain's WHOIS information is hidden behind a privacy service, making it harder to verify the owner's identity, and DNSSEC is not enabled, leaving DNS queries vulnerable to spoofing attacks. While these issues don't necessarily indicate malicious intent, they represent areas where the website's security posture could be improved.
We checked dunelm.com against 8 major blacklist databases including Google Safe Browsing, Phishtank, Urlhaus, Openphish, Dnsfilter, Spamhaus Dbl, Surbl, and Virustotal. The domain passed all 8 checks with a clean status, meaning it has not been flagged for phishing, malware distribution, spam, or other malicious activities by any of the tested threat intelligence providers.
Trust Signals
✅ Valid HTTPS
✅ HSTS enabled
✅ SPF configured
✅ DMARC configured (p=reject)
✅ DKIM configured
⚠️ DNSSEC not enabled
✅ Sitemap.xml found
⚠️ Missing Content-Security-Policy
⚠️ Missing Referrer-Policy
Blacklist Checks (8/8 clean)
✓
Google Safe Browsing
clean
✓
Phishtank
clean
✓
Urlhaus
clean
✓
Openphish
clean
✓
Dnsfilter
clean
✓
Spamhaus Dbl
clean
✓
Surbl
clean
✓
Virustotal
clean
dunelm.com Technology Stack & Detected Technologies
🤖 AI Summary
Our technology detection engine scanned dunelm.com and identified 11 distinct technologies across 10 categories. This analysis is performed by examining HTTP response headers, HTML source code patterns, JavaScript library fingerprints, CSS framework signatures, and DNS records.
Framework: Angular — provides the application framework and routing for dunelm.com.
UI Library: React — handles the user interface rendering and component management for dunelm.com.
CSS Framework: Bootstrap — provides the styling and responsive layout system for dunelm.com.
Build Tool: Vite — bundles and optimizes the JavaScript and CSS assets for dunelm.com.
Tag Manager: Google Tag Manager — manages marketing and analytics tags without code changes for dunelm.com.
Payments: PayPal and Klarna — processes payment transactions for dunelm.com.
CRM: Salesforce — manages customer relationships and sales pipelines for dunelm.com.
CDN: Fastly — accelerates content delivery by caching assets at edge locations worldwide for dunelm.com.
Hosting: Vercel — provides the server infrastructure for dunelm.com.
Fonts: Google Fonts — delivers web fonts for typography for dunelm.com.
We also extracted the following tracking identifiers: Google Tag Manager container GTM-KSRKGQG. These IDs can be used to identify other websites operated by the same organization.
Framework
UI Library
CSS Framework
Build Tool
Tag Manager
🏷️ Google Tag Manager(95%)
Payments
💳 PayPal(95%)💳 Klarna(95%)
CRM
CDN
Hosting
Fonts
Tracking IDs
dunelm.com Performance, Speed & Core Web Vitals
🤖 AI Summary
dunelm.com delivers its homepage in 14104ms (server response time), which is considered slow by industry standards. The total page weight is 1138 KB, and we detected 122 resource requests loading assets from 10 third-party domains. A high number of third-party domains can significantly impact page load time due to additional DNS lookups and TLS handshakes required for each domain.
The website uses Gzip compression for text-based assets, achieving an estimated 60.0% reduction in transfer size. This reduces bandwidth usage and improves page load times, especially for visitors on slower connections.
Asset minification status: 0 out of 1 CSS files and 0 out of 6 JavaScript files are minified. Minifying the remaining 7 unminified file(s) could further reduce page weight by 10-30% for those assets. Minification is a best practice that reduces download sizes without affecting functionality.
From an environmental perspective, each page view of dunelm.com produces approximately 0.56g of CO₂, earning a carbon rating of D. The website's carbon footprint could be reduced by optimizing images, enabling compression, reducing third-party scripts, and leveraging caching. For reference, the average web page produces about 0.5g of CO₂ per page view. The page weight of 1138 KB is the primary factor in this calculation.
Core Web Vitals data from the Chrome User Experience Report (CrUX) is not available for dunelm.com. This typically means the site doesn't have enough real-world Chrome user traffic to generate statistically significant field data, or the domain is not included in the CrUX dataset. Core Web Vitals (LCP, INP, CLS) are important Google ranking factors that measure real user experience.
Core Web Vitals data not available
Requires CrUX API key configuration
Carbon Footprint
CO₂ per page view0.56g
RatingD
Page Weight & Optimization
HTML Size1138 KB
CompressionGzip
Compression Savings~60.0%
CDNNo
Total Requests122
3rd Party Domains10
CSS Minified0/1
JS Minified0/6
dunelm.com DNS Records, Email Authentication & Domain Registration
🤖 AI Summary
dunelm.com resolves to the IPv4 address 151.101.194.133, but does not support IPv6. IPv6 adoption is increasingly important as IPv4 address space becomes exhausted, and some ISPs and regions are transitioning to IPv6-only connectivity. The domain has 4 A record(s) configured.
The domain name system is managed by 4 name servers: ns-1362.awsdns-42.org, ns-1793.awsdns-32.co.uk, ns-278.awsdns-34.com, and ns-738.awsdns-28.net. Having 4 name servers provides good redundancy — if one fails, the others can continue serving DNS queries. The choice of name servers often indicates the DNS hosting provider or CDN service being used.
Email for dunelm.com is handled by mimecast.com with 2 MX records configured: eu-smtp-inbound-1.mimecast.com and eu-smtp-inbound-2.mimecast.com. Multiple MX records provide failover redundancy — if the primary mail server is unavailable, email will be routed to the next available server.
SPF (Sender Policy Framework) is configured, which specifies which mail servers are authorized to send email on behalf of this domain. This helps prevent email spoofing and improves email deliverability. DMARC (Domain-based Message Authentication, Reporting and Conformance) is configured with a reject policy — the strongest setting, instructing receiving servers to reject unauthorized emails entirely. DKIM (DomainKeys Identified Mail) is configured, adding a cryptographic signature to outgoing emails that receiving servers can verify to confirm the email hasn't been tampered with in transit.
DNSSEC is not enabled for dunelm.com. While not critical for most websites, DNSSEC adds an important security layer by ensuring DNS responses haven't been tampered with during transit. Enabling DNSSEC is recommended for domains handling sensitive data or financial transactions.
Our subdomain enumeration scan discovered 2 active subdomains for dunelm.com: status.dunelm.com and www.dunelm.com. Active subdomains can reveal the organization's infrastructure, including development environments, API endpoints, and third-party service integrations.
DNS Records
A
151.101.194.133
151.101.130.133
151.101.2.133
151.101.66.133
NS
ns-1362.awsdns-42.org
ns-1793.awsdns-32.co.uk
ns-278.awsdns-34.com
ns-738.awsdns-28.net
MX
eu-smtp-inbound-1.mimecast.com
eu-smtp-inbound-2.mimecast.com
Email & Authentication
MX Providermimecast.com
Registrar—
Organisation—
Country—
Contact—
Registered—
Expires—
Domain Age—
IPv6 SupportNo
Subdomains (2 found)
status.dunelm.com www.dunelm.com
dunelm.com Page Content, Images & Accessibility
🤖 AI Summary
The homepage of dunelm.com contains 441 words of visible text content. This is a moderate amount of content. The page is structured with 14 H2 headings, 5 H3 headings, 0 H4 headings.
The page includes 33 images. 1 images (3%) are missing alt text attributes, which is a significant concern for both accessibility and SEO. Screen readers rely on alt text to describe images to visually impaired users, and search engines use alt text to understand image content. Only 97% of images have proper alt text — we recommend adding descriptive alt attributes to all images.
The link structure consists of 92 internal links pointing to other pages on the same domain and 4 external links pointing to third-party websites. There are 6 external JavaScript files, 1 CSS stylesheets, and 1 iframes on the page.
The site implements the following web standards and features: XML Sitemap (helps search engines discover all pages), Schema.org structured data (Organization, SearchAction, and WebSite), and Progressive Web App (PWA) manifest (enabling app-like installation).
Notable missing features: robots.txt. Adding these could improve search engine discoverability and rich result eligibility.
We detected the following payment methods accepted on dunelm.com: Visa, Mastercard, Discover, Apple Pay, Google Pay, and Klarna. Offering multiple payment options including credit cards and digital wallets improves customer trust and can increase conversion rates.
The website has social media presence across 5 platforms: Facebook (@DunelmUK), Twitter (@DunelmUK), Instagram (@dunelmuk), Linkedin (@dunelm-soft-furnishings-ltd), and Pinterest (@dunelmuk). An active social media presence is a positive trust indicator and helps build brand awareness and customer engagement.
Content Structure
H1—
H2 Tags14
H3 Tags5
H4 Tags0
H5 Tags0
H6 Tags0
Internal Links92
External Links4
Assets & Features
JavaScript Files6
JS Minified0/6
CSS Files1
CSS Minified0/1
Iframes1
Images33
Missing Alt1
SitemapYes ✓
Robots.txtNo
PWAYes ✓
AMPNo
RSS FeedNo
Schema.org Types
OrganizationSearchActionWebSite
Payment Methods Detected
💳 Visa💳 Mastercard💳 Discover💳 Apple Pay💳 Google Pay💳 Klarna
Social Media Presence
Facebook: @DunelmUKTwitter: @DunelmUKInstagram: @dunelmukLinkedin: @dunelm-soft-furnishings-ltdPinterest: @dunelmuk
dunelm.com SEO Analysis, Meta Tags & Open Graph
🤖 AI Summary
The title tag for dunelm.com is well-optimized at 51 characters: "Dunelm | The UK's Leading Home Furnishings Retailer". The length falls within the ideal range for Google search results, ensuring the full title is displayed without truncation.
The meta description is 137 characters (well-optimized): "Welcome to Dunelm, the UK's leading home furnishing retailer. Shop for bedding, curtains, furniture, beds and mattresses...". Google typically displays up to 155-160 characters of the meta description in search results. A compelling meta description with a clear call-to-action can significantly improve click-through rates from search results.
The canonical url is correctly set to https://www.dunelm.com/, preventing duplicate content issues, the page language is declared as en, the meta robots directive is set to index, follow, and a favicon is configured.
No Open Graph tags are configured. When someone shares a link to dunelm.com on social media, the platform will have to guess the title, description, and image — often producing unattractive or inaccurate previews. Adding OG tags is essential for social media marketing.
The site implements Schema.org structured data with the following types: Organization, SearchAction, and WebSite. Structured data helps search engines understand the page content and can enable rich results (featured snippets, knowledge panels, star ratings) in Google search results, which can significantly increase click-through rates.
Google SERP Preview
Dunelm | The UK's Leading Home Furnishings Retailer
https://dunelm.com
Welcome to Dunelm, the UK's leading home furnishing retailer. Shop for bedding, curtains, furniture, beds and mattresses today at Dunelm.
Meta Tags
TitleDunelm | The UK's Leading Home Furnishings Retailer...
Title Length51 chars
Meta Desc Length137 chars
H1—
Languageen
Canonicalhttps://www.dunelm.com/
Meta Robotsindex, follow
Meta Keywordsnot set
Schema.org & Social
Schema TypesOrganization, SearchAction, WebSite
OG Type—
OG ImageNot set
Twitter Card—
FaviconSet ✓