oxy.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
Third-party hosts loaded (3)
- cdn.cookielaw.org×2
- online.flippingbook.com×2
- www.googletagmanager.com×1
Social
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 1992-02-17
- Expires
- 2027-02-18 275 days left
- Updated
- 2026-02-14
- Name servers
-
- udns1.cscdns.net
- udns2.cscdns.uk
DNS records live
- NS
-
- udns1.cscdns.net
- udns2.cscdns.uk
- MX
-
- 100 oxy-com.mail.protection.outlook.com
- TXT
-
Show 20 TXT records
google-site-verification=MEsYU36XN9PRE-REAEfAj2tunX5aTNWjMGykADRnvP0paloaltonetworks-site-verification=71aa944e7792f65a9b3a30bd4d4d825ac9a3043cdf7a9c5c7bc70a113955f804_jqoa485a2yq5vod51xj5fe04cq15rvlMS=ms10295424google-site-verification=-201uJz1i8m7OKPbxMURVGORWIhwJjtQ6amdM60WSLIv=spf1 ip4:54.165.18.212 ip4:18.158.220.29 ip4:50.31.39.13 ip4:144.94.1.41 ip4:54.240.86.33 ip4:54.240.86.34 ip4:199.248.165.6 ip4:199.248.165.7 ip4:170.189.193.7 ip4:170.189.193.6 ip4:159.183.182.141 include:spf_amer.taleo.net include:emailopen.com include:spf.protection.outlook.com include:_spf1.mailgun.org include:_spf2.mailgun.org include:_spf-sfdc.successfactors.com include:spf1.successfactors.com ~allapple-domain-verification=csCvywOuRz65r2jHdocusign=a479f2ce-9e3b-4aee-8f45-5626a92263770g4mvmq33cfv7qr295gzhvwlnv0kcdvxBl3Q72h893ToN6idlLDpTw2531mN/XEAZOB9Wv0M9+oREQkGoP6mZ5BTc8ONFzhEwAvz6c6uxg5oXVJXOIBi4Q==docusign=69d70191-bb13-45e5-9cdc-2e8c4c48ec0bhcp-domain-verification=271c9c7a44dc702a7c4e56c1c7b050f75e86aafb1c5ca0a5e5f408e1816ea594adobe-idp-site-verification=497c301f9ad0a28255f469c397f5feedcfda45b9c174893ac197e50616bcd62464ba16e2-9649-4c60-895b-c3e91b29e906_q4bekubd92c0tuwuvj3efoclsy5sm4zworkplace-domain-verification=HEvdGaIJQLDH4hoZGBEAZyWNlfPS9Yairtable-verification=d914bb53274abf9995898b86f9cc91adcisco-ci-domain-verification=3a4d28325b5bab74b5e915ef29a39767b8e0326673d5aa537f4bf64ba90eba5az2jfc8t3c5m6pm83s6f3dgxb0srbpjy9ibmid=a3b93106-8b85-42f7-8d8c-3212b200854e
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 213 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
no-referrer-when-downgrade- permissions-policy
accelerometer=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.episerver.net *.jquery.com *.google-analytics.com *.doubleclick.net *.googleapis.com *.gstatic.com *.google.com player.vimeo.com; frame-ancestors 'self' https://occidentalpetroleum.gcs-web.com/ *.oxy.com https://oxyinc.sharepoint.com/ https://forms.office.com/; script-src 'self' *.youtube.com/ https://js.monitor.azure.com *.cookielaw.org *.clarity.ms *.aptrinsic.com api.campaign.episerver.net www.google-analytics.com *.google.com *.gstatic.com ajax.googleapis.com cdnjs.cloudflare.com *.googletagmanager.com dl.episerver.net *.vo.msecnd.net dc.services.visualstudio.com code.jquery.com maxcdn.bootstrapcdn.com cdn.jsdelivr.net ecwportal.vertexsmb.com/ 'unsafe-inline' 'unsafe-eval' *.adroll.com *.cloudfront.net *.flippingbook.com connect.facebook.net; connect-src 'self' *.cookielaw.org https://geolocation.onetrust.com *.clarity.ms *.aptrinsic.com api.campaign.episerver.net pui.episerver.net *.doubleclick.net dc.services.visualstudio.com www.google-analytics.com auth.ver- strict-transport-security
max-age=31536000; includeSubDomains; preload