hzyapu.com

.com crawl

First seen 2026-06-03 · Last seen 2026-06-03 · ok HTTP/1.1 200 2627 ms crawled 2026-06-03

CN · 121.46.198.184 · AS140717 UNICOM JiangSu Suzhou IDC network

Reputation 54/100 wrong cert multiple spf records dmarc monitor-only

Classifying

HTML metadata

Title
输送线-输送机-提升机-辊简-浙江亚普自动化装备科技股份有限公司
Description
浙江亚普自动化装备科技股份有限公司是一家实力雄厚的辊筒制造厂家,提供高质量的货架和输送线等产品和售后安装服务.我们拥有丰富的经验和成熟的技术,为客户提供竞争力的货架价格和可靠的输送线解决方案.合作热线:13341583065.
Canonical
http://www.hzyapu.com/

Open Graph

url
http://www.hzyapu.com
title
输送线-输送机-提升机-辊简-浙江亚普自动化装备科技股份有限公司
description
浙江亚普自动化装备科技股份有限公司是一家实力雄厚的辊筒制造厂家,提供高质量的货架和输送线等产品和售后安装服务.我们拥有丰富的经验和成熟的技术,为客户提供竞争力的货架价格和可靠的输送线解决方案.合作热线:13341583065.

Technology

Server
openresty
CMS
Gatsby

Third-party hosts loaded (4)

  • img03.71360.com×22
  • sitecdn.71360.com×7
  • cmsimg01.71360.com×1
  • img01.71360.com×1

Contact

Phone

Registration

Registrar
Alibaba Cloud Computing Ltd. d/b/a HiChina (www.net.cn)
Created
2012-03-01
Expires
2027-03-01 269 days left
Updated
2025-05-07
Name servers
  • dns11.hichina.com
  • dns12.hichina.com

DNS records live

NS
  • dns11.hichina.com
  • dns12.hichina.com
MX
  • 10 hzmx02.mxmail.netease.com
  • 10 mxbiz2.qq.com
  • 5 hzmx01.mxmail.netease.com
  • 5 mxbiz1.qq.com

Email authentication weak

SPF
v=spf1 include:spf.163.com -all
strict (-all) · multiple SPF records
DMARC
v=DMARC1; p=none; fo=1; ruf=mailto:dmarc@qiye.163.com; rua=mailto:dmarc_report@qiye.163.com
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current) wrong cert

TrustAsia DV TLS RSA CA 2025
from 2025-11-24 to 2026-11-24
Expires in 172 days

HTTP security headers

Header hygiene 70/100 Checked over plain HTTP: http://www.hzyapu.com/

present
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • checked over plain HTTP
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
strict-origin
x-frame-options
deny
x-content-type-options
nosniff
content-security-policy
default-src * blob:; img-src * data: blob:; connect-src * wss: blob: resource:; frame-src *;script-src * 'unsafe-eval' 'unsafe-inline' blob:; style-src * 'unsafe-inline'; font-src * data:;

Linked from (1)