nayapay.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Cloudflare Insights
- Google Tag Manager
Third-party hosts loaded (4)
- ajax.googleapis.com×1
- static.cloudflareinsights.com×1
- www.facebook.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Web Commerce Communications Limited dba WebNic.cc
- Created
- 2015-12-04
- Expires
- 2027-12-04 564 days left
- Updated
- 2024-06-20
- Name servers
-
- dolly.ns.cloudflare.com
- terry.ns.cloudflare.com
DNS records live
- NS
-
- dolly.ns.cloudflare.com
- terry.ns.cloudflare.com
- MX
-
- 5 nayapay.in.tmes.trendmicro.com
- TXT
-
google-site-verification=sYQPsKGYRLtGX5d-8nVugP9Cw-3YCwqCbNWpGwnnHvYtmes=ad7325d34a6a1afc076806532e286d52trend-micro-v1-domain-verification.6eb56cb01cca29a136f93971b19a7029=1a1e6078-00e4-438b-90cf-da923315771d
Email authentication strong
- SPF
-
v=spf1 ip4:175.107.198.82 ip4:103.139.62.14 ip4:203.101.175.36 ip4:103.139.62.173 ip4:103.139.62.154 ip4:103.139.62.179 ip4:103.139.62.180 ip4:103.139.62.181 ip4:103.139.62.182 ip4:61.5.158.179 ip4:202.163.125.170 ip4:202.163.125.172 ip4:202.163.125.173 ip4:175.107.195.97 ip4:103.139.62.199 ip4:103.139.62.180 ip4:103.139.62.181 ip4:103.139.62.182 ip4:103.139.62.183 include:spf.tmes.trendmicro.com include:_spf.google.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:a237b95fa17d475bab1b71dc5f32e7a9@dmarc-reports.cloudflare.netpolicy: reject (enforced) - DKIM
-
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq/yyPGLT28H9tGy+uuCeQOSkAGzG8U84HoPH5oRcfL0M8ySBE/aLeFF6ISbzojYTZMHPOOisNUiqLM…
selectors probed - default:
Certificate (current)
RapidSSL TLS RSA CA G1
Expires in 60 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.typeform.com ; script-src 'self' 'unsafe-inline' *.typeform.com *.googletagmanager.com *.google.com *.facebook.net *.google-analytics.com *.googleapis.com static.cloudflareinsights.com; connect-src 'self' *.google-analytics.com ; img-src 'self' data: www.nayapay.com nayapay.com *.nayapay.com *.google-analytics.com *.facebook.com; style-src 'self' 'unsafe-inline' *.googleapis.com; base-uri 'self';form-action 'self'; font-src 'self' data: fonts.gstatic.com; frame-src staging.cyber.net.pk *.typeform.com;- strict-transport-security
max-age=31536000; includeSubDomains; preload
Links to (6)
- apple.com×1
- facebook.com×1
- google.com×1
- instagram.com×1
- linkedin.com×1
- x.com×1