hzyapu.com
HTML metadata
Technology
- Server
- openresty
- CMS
- Gatsby
Third-party hosts loaded (4)
- img03.71360.com×22
- sitecdn.71360.com×7
- cmsimg01.71360.com×1
- img01.71360.com×1
Contact
- Phone
Registration
- Registrar
- Alibaba Cloud Computing Ltd. d/b/a HiChina (www.net.cn)
- Created
- 2012-03-01
- Expires
- 2027-03-01 269 days left
- Updated
- 2025-05-07
- Name servers
-
- dns11.hichina.com
- dns12.hichina.com
DNS records live
- NS
-
- dns11.hichina.com
- dns12.hichina.com
- MX
-
- 10 hzmx02.mxmail.netease.com
- 10 mxbiz2.qq.com
- 5 hzmx01.mxmail.netease.com
- 5 mxbiz1.qq.com
Email authentication weak
- SPF
-
v=spf1 include:spf.163.com -allstrict (-all) · multiple SPF records - DMARC
-
v=DMARC1; p=none; fo=1; ruf=mailto:dmarc@qiye.163.com; rua=mailto:dmarc_report@qiye.163.compolicy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current) wrong cert
TrustAsia DV TLS RSA CA 2025
Expires in 172 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- checked over plain HTTP
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin- x-frame-options
deny- x-content-type-options
nosniff- content-security-policy
default-src * blob:; img-src * data: blob:; connect-src * wss: blob: resource:; frame-src *;script-src * 'unsafe-eval' 'unsafe-inline' blob:; style-src * 'unsafe-inline'; font-src * data:;
hzyapu.com