ntucclub.com
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×2
Registration
- Registrar
- Dreamscape Networks International Pte Ltd
- Created
- 2001-02-05
- Expires
- 2029-02-05 976 days left
- Updated
- 2026-04-10
- Name servers
-
- ns1.vodien.com
- ns2.vodien.com
DNS records live
- NS
-
- ns1.vodien.com
- ns2.vodien.com
- ns3.vodien.com
- MX
-
- 1 ms13089794.msv1.invalid.outlook.com
Email authentication weak
- SPF
-
v=spf1 +a +mx +ip4:103.11.189.189 ?allneutral (?all) - DMARC
- not published
- DKIM
-
- dkim:
v=DKIM1; t=y; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4fju5dRLECYeUvZEy2idRbmGYamu6ezAU8wSqMiwYOy3nnud83HS1VLn5VDpWim8lTgQd3gQD… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvxHlYbcifBoDlsrT0xKH8n7xyYVuoAnJ6LMNhP0CUw1oWjF7eiCRfLN6wzCyd9vCs048BNv030vZgPY8pS… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC3P4wdxGytpTG21SEyIlHoNXnQSAfDnMtwyNUpWq9AOgTxOH43y8N1zZ5GY7gv8w4XXuKoZXF07coQcJbZ2xFneW…
selectors probed - dkim:
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 75 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src *.googleapis.com *.gstatic.com apis.google.com *.google-analytics.com connect.facebook.net ajax.aspnetcdn.com platform.twitter.com https://syndication.twitter.com/ https://s.ytimg.com https://publish.twitter.com *.twimg.com cdnjs.cloudflare.com maxcdn.bootstrapcdn.com apps.elfsight.com *.elfsight.com unpkg.com kendo.cdn.telerik.com www.youtube.com s.ytimg.com maps.googleapis.com cdn.jsdelivr.net ajax.googleapis.com www.googletagmanager.com d3e54v103j8qbb.cloudfront.net livechat.myalice.ai 'self' cdn.ampproject.org 'unsafe-inline' 'unsafe-eval'; style-src *.googleapis.com *.gstatic.com kendo.cdn.telerik.com maxcdn.bootstrapcdn.com use.fontawesome.com cdn.jsdelivr.net fonts.googleapis.com https://cdnjs.cloudflare.com 'self' 'unsafe-inline'; img-src www.redditstatic.com i.ytimg.com data: blob: *.fbcdn.net phosphor.utils.elfsightcdn.com static.elfsight.com www.google.com www.google.com.au www.google-analytics.com maps.gstatic.com maps.googleapis.com i.vimeocd- strict-transport-security
max-age=31536000;includeSubDomains