hclindustrysaas.com
HTML metadata
Technology
- CMS
- Drupal
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
Third-party hosts loaded (5)
- mktdplp102cdn.azureedge.net×3
- cdn.cookielaw.org×2
- cdn.lineicons.com×1
- static.addtoany.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Amazon Registrar, Inc.
- Created
- 2021-06-30
- Expires
- 2026-06-30 40 days left
- Updated
- 2026-05-13
- Name servers
-
- ns-1206.awsdns-22.org
- ns-1745.awsdns-26.co.uk
- ns-376.awsdns-47.com
- ns-718.awsdns-25.net
DNS records live
- NS
-
- ns-1206.awsdns-22.org
- ns-1745.awsdns-26.co.uk
- ns-376.awsdns-47.com
- ns-718.awsdns-25.net
- MX
-
- 10 inbound-smtp.us-west-2.amazonaws.com.hclindustrysaas.com
- TXT
-
_sxx5u6jvsh4cn6odt8fwzw9egysvwcvhgc4nkrh8bvdxpy05vgtd4137wsb6qzwry56q900vgcqy4dtv82tr0v8ktcl479g
- Verified for
-
- Dynamics 365
Email authentication weak
- SPF
-
v=spf1 -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 141 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
ALLOW-FROM https://content.hclindustrysaas.com- permissions-policy
geolocation=(self), notifications=(*), microphone=(self), fullscreen=(self), payment=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'self' data: *.lineicons.com *.dynamics.com *.azureedge.net *.addtoany.com *.cdnfonts.com *.hclindustrysaas.com *.googletagmanager.com *.googleadservices.com *.cookielaw.org *.windows.net *.google-analytics.com *.doubleclick.net *.google.com *.google.co.in *.onetrust.com *.clarity.ms https://leads.intelliservice.ai wss://leads.intelliservice.ai 'unsafe-inline' 'unsafe-eval', script-src 'self' *.addtoany.com *.azureedge.net *.intelliservice.ai *.googletagmanager.com *.cookielaw.org *.google-analytics.com *.google.com *.googleadservices.com *.clarity.ms https://leads.intelliservice.ai 'unsafe-inline', img-src 'self' *.dynamics.com *.hclindustrysaas.com *.intelliservice.ai *.windows.net *.google-analytics.com *.google.com *.google.co.in *.doubleclick.net *.clarity.ms https://cdn.cookielaw.org data:, frame-src 'self' *.hclindustrysaas.com *.addtoany.com *.dynamics.com, connect-src 'self' *.intelliservice.ai *.dynamics.com *.cookielaw.org *.google-analytics.com *.doubleclick.net- strict-transport-security
max-age=31536000; includeSubDomains
Links to (9)
- camworks.com×4
- dfmpro.com×4
- glovius.com×4
- facebook.com×4
- hcl-software.com×4
- hcl.com×4
- hcltech.com×4
- linkedin.com×4
- twitter.com×4