heycan.com
HTML metadata
Technology
- Server
- Tengine
Third-party hosts loaded (4)
- lf3-s.vlabstatic.com×14
- sf1-cdn-tos.douyinstatic.com×2
- lf-c-flwb.bytetos.com×1
- lf-security.bytegoofy.com×1
Registration
- Registrar
- Alibaba Cloud Computing (Beijing) Co., Ltd.
- Created
- 2016-02-29
- Expires
- 2027-02-28 283 days left
- Updated
- 2026-01-25
- Name servers
-
- dns1.hichina.com
- dns2.hichina.com
DNS records live
- NS
-
- dns1.hichina.com
- dns2.hichina.com
- CNAME
-
- heycan.com.w.cdngslb.com
- Verified for
-
- GlobalSign
Email authentication no MX
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
RapidSSL TLS RSA CA G1
Expires in 245 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- cross-origin-opener-policy
- cross-origin-embedder-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
script-src 'strict-dynamic' 'unsafe-inline' 'unsafe-eval' https 'self' 'wasm-unsafe-eval' 'report-sample' data: blob: 'nonce-55f8b866ddf4e6c68c0ae55f690d5d28-argus'; upgrade-insecure-requests ; block-all-mixed-content ;- strict-transport-security
max-age=31536000- cross-origin-opener-policy
same-origin; report-to="slardar"- cross-origin-embedder-policy
credentialless; report-to="slardar"