cyolo.io

.io crawl

First seen 2026-04-25 · Last seen 2026-05-19 · ok HTTP/1.1 200 1114 ms crawled 2026-05-19

US · 146.190.13.121 · AS14061 DigitalOcean, LLC

Reputation 100/100

Classifying

HTML metadata

Title
Remote Privileged Access for OT and Cyber-Physical Systems | Cyolo
Description
Cyolo provides remote privileged access for OT and cyber-physical systems, enabling employees and third-party vendors to connect securely to critical assets.
Language
en
Canonical
https://cyolo.io

Open Graph

url
https://cyolo.io
title
Home
locale
en_US
site name
Cyolo
description
Cyolo provides remote privileged access for OT and cyber-physical systems, enabling employees and third-party vendors to connect securely to critical assets.

Technology

Server
nginx
Fonts
  • Adobe Fonts
Social widgets
  • YouTube Embed
Third-party hosts loaded (8)
  • cyolo-statamic.sfo3.digitaloceanspaces.com×87
  • app.cdn.lookbookhq.com×2
  • insightcdn.net×1
  • js.hsforms.net×1
  • kit.fontawesome.com×1
  • px.ads.linkedin.com×1
  • use.typekit.net×1
  • www.youtube-nocookie.com×1

Social

DNS records live

NS
  • ns-1064.awsdns-05.org
  • ns-1637.awsdns-12.co.uk
  • ns-400.awsdns-50.com
  • ns-728.awsdns-27.net
MX
  • 0 cyolo-io.mail.protection.outlook.com
TXT
Show 11 TXT records
  • MS=ms83299858
  • anthropic-domain-verification-87qsd9=ORSMkJxiC9JSXKBmzKC1ADjNZ
  • atlassian-domain-verification=ysAaMtnCRKcilVzPs90jA/yNLuisAX2q23brnYZhSWlY0u0CnrdO14k9bkVMhqNa
  • google-site-verification=Bz0SHN1pK4SQdvOx_bxLYAzP4HMjLq_9JF02ZW5qTis
  • google-site-verification=RbYGwUyducRotsBYid9IchF-o1pYsD-6rjSHWXRsSPU
  • google-site-verification=k7IJjmKCQ-GoGsmdEsIGB_XPM217luz0pnBRB7EcMmQ
  • kueh5405piqk3qs1okcto0ipun
  • miro-verification=241f54263341bc65aa6521e3f6e94816cc96622a
  • openai-domain-verification=dv-Sw3IZ4x5dPVm05ap3nLG8FnW
  • opine-verification=dfb6f9fa-d0e8-4bef-b07f-4ad2de17ddd3
  • smartsheet-site-validation=plYajPux0I-CkJzsGPJBD4fgQyW9JM-R

Email authentication strong

SPF
v=spf1 include:spf.protection.outlook.com include:7608544.spf02.hubspotemail.net include:spf.mindmatrix.net -all
strict (-all)
DMARC
v=DMARC1; p=quarantine; sp=quarantine; adkim=s; aspf=s; fo=1; ruf=mailto:dmarcreports@cyolo.io; rua=mailto:dmarcreports@cyolo.io
policy: quarantine · sp=quarantine
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDAU4a8IMltRDSMK289BuIlEzAvNV+ulNteeTL0U9/+0WlsmbuhoAwPdJwGTE+dRzRQHOmt2kAfFxY2gvbXTY…
  • selector2: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC6Wl0FE1Js/DF0UkpX3HKDiSi8rvpz4DZTtRiBaVDfTbRip8zzCHdHvS49MY2WEt9wMoNJo7Y3dPJJvROwbq…
  • smtpapi: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed

Certificate (current)

E7
from 2026-04-09 to 2026-07-08
Expires in 50 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://cyolo.io/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-opener-policy
  • cross-origin-embedder-policy
  • cross-origin-resource-policy
findings
  • CSP uses wildcard sources
  • missing frame protection
Header values
referrer-policy
strict-origin-when-cross-origin
permissions-policy
accelerometer=(self), ambient-light-sensor=(self), autoplay=(self), battery=(self), camera=(self), cross-origin-isolated=(self), display-capture=(self), document-domain=*, encrypted-media=(self), execution-while-not-rendered=*, execution-while-out-of-viewport=*, fullscreen=*, geolocation=(self), gyroscope=(self), magnetometer=(self), microphone=(self), midi=(self), navigation-override=(self), payment=(self), picture-in-picture=*, publickey-credentials-get=(self), screen-wake-lock=(self), sync-xhr=*, usb=(self), web-share=(self), xr-spatial-tracking=(self)
x-content-type-options
nosniff
content-security-policy
frame-ancestors 'self' http://cyolo.pathfactory.com https://cyolo.pathfactory.com http://*.cyolo.io https://*.cyolo.io; upgrade-insecure-requests
strict-transport-security
max-age=31536000; includeSubDomains; preload
cross-origin-opener-policy
unsafe-none
cross-origin-embedder-policy
unsafe-none
cross-origin-resource-policy
cross-origin

Links to (3)

Linked from (1)