hyperwallet.com
HTML metadata
Technology
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (5)
- www.paypalobjects.com×70
- goo.gl×1
- t.paypal.com×1
- www.datadoghq-browser-agent.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
- Address
- st Street, San Jose, California, 95131
Registration
- Registrar
- MarkMonitor Inc.
- Created
- 2000-02-04
- Expires
- 2026-10-19 152 days left
- Updated
- 2025-09-17
- Name servers
-
- ns-1117.awsdns-11.org
- ns-1777.awsdns-30.co.uk
- ns-340.awsdns-42.com
- ns-875.awsdns-45.net
DNS records live
- NS
-
- ns-1117.awsdns-11.org
- ns-1777.awsdns-30.co.uk
- ns-340.awsdns-42.com
- ns-875.awsdns-45.net
- MX
-
- 10 mx1.paypalcorp.com
- 10 mx2.paypalcorp.com
- TXT
-
yahoo-verification-key=sqgp/qWtl23y4belgXLbYr0fSWq2dBn7H76lFFRsOUQ=
Email authentication strong
- SPF
-
v=spf1 include:pl._spf.paylution.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:hwsysadmin@paypal.com; ruf=mailto:hwsysadmin@paypal.compolicy: reject (enforced) - DKIM
-
Show 5 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDCMKys830OpvPM5BTxD99LXoQlSc6/MpH5ck16ogK8dHTDmQJ1iGoF2hScmApPpk6cTvozVvAKnEV44Cq6Jh… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDkovIdnGbnIMY1uwFlisSvejxg0cKWFwgWVh8NMLOgNEuK/o2Dp1DJr14NqY43forT5sDxvpwWwv+5IdBPIc… - mail:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC2a7C+kulKvxYUExgh2au52xMWVNMnR4k8YnfSh86DyEGyjC+kQURWsBM6SrYKPd0wsga/jIiCdMx0WNJ9H8… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAx4oaa9VaUmeg83qtlzQdapqz8B9vO0lFoS/6gqC6LtUK32po953tr+NZ8PK1ISb83sRry+dtP20WaVj2xY… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDiQqup1+7+MfhcEs16jPjI1b7AV+5/5xJRD+lzwp/igJDmzheZ+/Q/doj2ysvYnffASy0N/R70RNoe/IOSv+MbWC…
selectors probed - selector1:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 57 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
Header values
- x-frame-options
SAMEORIGIN- permissions-policy
ch-ua-platform-version=(self "https://c.paypal.com"),ch-ua-arch=(self "https://c.paypal.com"),ch-ua-wow64=(self "https://c.paypal.com"),ch-ua-model=(self "https://c.paypal.com"),ch-ua-bitness=(self "https://c.paypal.com"),ch-ua-full-version=(self "https://c.paypal.com"),ch-ua-full-version-list=(self "https://c.paypal.com")- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://*.paypal.com https://*.paypalobjects.com 'unsafe-inline'; style-src 'self' https://*.paypal.com https://*.paypalobjects.com 'unsafe-inline'; script-src 'nonce-mDt7Wjhrx9BMRCx2FQHeQ9v3wCIsGs0P7oNb5bbsx4kh/BK0' 'strict-dynamic' 'unsafe-inline' https://*.paypal.com https://*.paypalobjects.com https://www.googletagmanager.com https://www.google-analytics.com; img-src 'self' https: data:; object-src 'none'; font-src 'self' https://*.paypal.com https://*.paypalobjects.com; frame-src 'self' https://*.paypalobjects.com https://*.paypal.com https://www.youtube-nocookie.com; connect-src 'self' 'unsafe-inline' https://*.paypal.com https://*.paypalobjects.com https://browser-intake-us5-datadoghq.com https://www.google-analytics.com https://www.googletagmanager.com https://analytics.google.com https://*.doubleclick.net; form-action 'self' https://*.paypal.com; base-uri 'self' https://*.paypal.com; upgrade-insecure-requests;; report-uri https://www.paypal.com/csplog/api/lo- strict-transport-security
max-age=63072000; includeSubDomains; preload