herbshk.com

.com crawl

First seen 2026-06-01 · Last seen 2026-06-04 · ok HTTP/1.1 200 2144 ms crawled 2026-06-02

US · 104.21.20.112 · AS13335 Cloudflare, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
开云手机在线登陆入口-开云(中国)
Description
开云手机在线登陆入口属于医药行业领先企业,形成多产品协同布局,具备持续研发能力与市场影响优势。开云手机入口-开云(中国)该企业主营医药科技创新与药品制造业务,覆盖多疾病治疗领域,具备稳定经营与研发创新能力。开云手机在线登陆入口-开云(中国)该企业建立现代化科研体系,汇聚生物制药及医学人才,推进创新药与高端制剂项目开发。开云手机在线登陆入口-开云(中国)该企业建立现代化研发实验体系,推进创新药与高端制剂开发,核心专利储备持续扩大。
Language
zh-CN
Canonical
https://www.herbshk.com/

Technology

CDN
Cloudflare

Third-party hosts loaded (1)

  • cdn.ali-cdnx.com×1

Contact

Phone

Registration

Registrar
Gname.com Pte. Ltd.
Created
2024-09-24
Expires
2026-09-24 111 days left
Updated
2026-05-11
Name servers
  • adi.ns.cloudflare.com
  • josh.ns.cloudflare.com

DNS records live

NS
  • adi.ns.cloudflare.com
  • josh.ns.cloudflare.com

Email authentication no MX

SPF
not published
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

E8
from 2026-05-11 to 2026-08-09
Expires in 65 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://herbshk.com/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
Header values
referrer-policy
strict-origin-when-cross-origin
permissions-policy
geolocation=(), microphone=(), camera=()
x-content-type-options
nosniff
content-security-policy
default-src 'self' https: http: data: blob: *; base-uri 'self'; object-src 'none'; frame-ancestors 'self' *; frame-src 'self' * https: http: data: blob: *; img-src 'self' data: https: http: blob: * 'unsafe-inline'; style-src 'self' 'unsafe-inline' https: http: data: blob: *; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://libs.baidu.com https://res.wx.qq.com https://cdn.jsdelivr.net https://cdnjs.cloudflare.com https: http: *; connect-src 'self' * https: http: ws: wss:; font-src 'self' data: https: http: blob: *; media-src 'self' https: http: blob: *;
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (8)

Linked from (2)