hoya.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- Apache
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- ajax.googleapis.com×2
- www.googletagmanager.com×1
Registration
- Registrar
- 1API GmbH
- Created
- 1996-01-31
- Expires
- 2027-02-01 258 days left
- Updated
- 2026-01-13
- Name servers
-
- tzjpnmd02.hoya.com
- tzsinmd02.hoya.com
DNS records live
- NS
-
- tzjpnmd02.hoya.com
- tzsinmd02.hoya.com
- MX
-
- 10 hoya-com.mail.protection.outlook.com
- TXT
-
Show 11 TXT records
ms-domain-verification=545568cc-8211-433c-83d4-d2893d9d7a09brevo-code:980c2ba958702270d3e74d9d465cb073MS=ms36685148onetrust-domain-verification=5bfc62aa422446fdb3900d99c5dc6d3eenvisioning-domain-verification-z4mxrc=joaYQtxszuPwA59DWPWSZhbmLMS=ms45219063Foxit-domain-verification=59123ef57a05dc8e975580b4e4d8c3cbapple-domain-verification=ECTtVdfCX2qeBy8oj7045lttlve0oln3o92h0j12j3smartsheet-site-validation=m5TgdtGyub2Zn5YcsfkaWVhJ5c1cx6osatlassian-domain-verification=uHD9lqPrj4cffLNbYSb4V85Cs1FD923YNs/2DSc03owk1ota2snoGbQ2Nt0MDWvE
Email authentication strong
- SPF
-
v=spf1 include:fsspfus.freshemail.io include:_spf.salesforce.com include:spf.mailjet.com include:spfa.hoya.com include:sendgrid.net include:servers.mcsv.net include:spf.protection.outlook.com ip4:147.154.189.192/26 ip4:102.221.51.105 -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc.rua@hoya.com; ruf=mailto:dmarc.ruf@hoya.compolicy: quarantine - DKIM
-
Show 6 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCpkuooXFAUbbu1fKk3ekvj9hPDhlfABs+H7JZweTyd5Ii/U42Olv27ioUn7HzNFsaf3h3GJF2H/en4j1CmcW… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxsGwiSsr+NO3CMOsV21efVq6otQDKQ3jpBygnP8N3w/J3I1/mrjz+K4aPKxAOew/xKdShrRjdRGYFgxnCk… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5KPURFqDHcZO8ln06BiZhJbvDw7Rv/pPhUPu/g2ttYclL5ZTLUn2mRGFXD1kIH7Bw9LqC30aJ7gi5HdA67… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - selector1:
Certificate (current)
FujiSSL RSA Domain Validation Secure Server CA 2
Expires in 244 days
HTTP security headers
- present
-
- content-security-policy
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ *.gstatic.com *.vimeo.com ssl4.eir-parts.net *.google.com *.syncsearch.jp *.googletagmanager.com https:; object-src 'none'; base-uri 'none'; style-src 'self' 'unsafe-inline' ssl4.eir-parts.net *.google.com; frame-src 'self' https://www.google.com/recaptcha/ https://recaptcha.google.com/recaptcha/ *.vimeo.com *.syncsearch.jp *.gstatic.com; frame-ancestors 'self' *.syncsearch.jp *.google.com