managepci.com
HTML metadata
Technology
Third-party hosts loaded (2)
- static.zdassets.com×1
- us01-prod-sair-static-assets.s3.amazonaws.com×1
Registration
- Registrar
- Amazon Registrar, Inc.
- Created
- 2021-12-02
- Expires
- 2026-12-02 195 days left
- Updated
- 2025-10-28
- Name servers
-
- ns-1349.awsdns-40.org
- ns-1810.awsdns-34.co.uk
- ns-58.awsdns-07.com
- ns-956.awsdns-55.net
DNS records live
- NS
-
- ns-1349.awsdns-40.org
- ns-1810.awsdns-34.co.uk
- ns-58.awsdns-07.com
- ns-956.awsdns-55.net
- MX
-
- 10 mx3.sysnet.ie
- 20 mx4.sysnet.ie
- TXT
-
55ecbfbf-6459-419c-a0d5-612fc2557bb1
- Verified for
-
Email authentication partial
- SPF
-
v=spf1 mx include:mail.zendesk.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:6fd7926ed8d1761@rep.dmarcanalyzer.com; ruf=mailto:6fd7926ed8d1761@for.dmarcanalyzer.com; fo=1;policy: none (monitoring only) - DKIM
-
- mail:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCqhqF7Pt1Poj9ouTLnceysYR/BqTkTsZrJzGFPUOll/1G9+u5Vcvqx9JOh5GKeaR0Jcgretvqb/M9UDOkOJr…
selectors probed - mail:
Certificate (current)
SSL.com RSA SSL subCA
Expires in 259 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- permissions-policy
accelerometer=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), midi=(), usb=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.sysnet.ie *.sysnetgs.com player.vimeo.com data:; frame-ancestors 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://static.zdassets.com https://ekr.zdassets.com https://ekr.zendesk.com https://*.zendesk.com https://api.smooch.io https://media.smooch.io https://zendesk-eu.my.sentry.io https://*.twilio.com wss://*.zendesk.com wss://api.smooch.io wss://voice-js.roaming.twilio.com ; connect-src 'self' ws: data: https://static.zdassets.com https://ekr.zdassets.com https://ekr.zendesk.com https://*.zendesk.com https://api.smooch.io https://media.smooch.io https://zendesk-eu.my.sentry.io https://*.twilio.com wss://*.zendesk.com wss://api.smooch.io wss://voice-js.roaming.twilio.com assurance.sysnetgs.com *.demdex.net; img-src 'self' data: us01-prod-sair-static-assets.s3.amazonaws.com eu01-prod-sair-static-assets.s3-eu-west-1.amazonaws.com adservice.google.com *.sysnet.ie *.demdex.net ad.doubleclick.net stats.g.doubleclick.net https://*.gravatar.com https://sta- strict-transport-security
max-age=31536000; includeSubDomains- cross-origin-opener-policy
same-origin-allow-popups