ptcvt.com
HTML metadata
Technology
- CMS
- WordPress 7.0
- jQuery
- 1.11.2 known XSS (<3.5)
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- fonts.googleapis.com×2
- www.facebook.com×1
- www.google.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- eNom, LLC
- Created
- 2010-07-20
- Expires
- 2026-07-20 44 days left
- Updated
- 2025-07-02
- Name servers
-
- armando.ns.cloudflare.com
- sandy.ns.cloudflare.com
DNS records live
- NS
-
- armando.ns.cloudflare.com
- sandy.ns.cloudflare.com
- MX
-
- 0 mx.usa.net
- TXT
-
duo_sso_verification=j98isjo3dtDDI5nCIN16hhFz2b7p7xTq0xnXjthcSyRwWiB7AUX5KitZucGc8IFrmailerlite-domain-verification=8fe64f9411350ab35c2a6a834b88a4255163d4cf
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 mx ip4:216.116.87.142/32 include:spf.usa.net ip4:208.75.120.0/22 ip4:142.0.177.6/24 ip4:68.232.131.30/19 include:spf.cocci.com include:spfref.jackhenry.com include:spf.cashedge.com ip4:64.222.231.2/32 include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dcb003f7891a4553a061282a3017f243@dmarc-reports.cloudflare.net,mailto:xkc1phi9@ag.us.dmarcian.com, mailto:melmore@ptcvt.com; adkim=r; aspf=r; sp=none; pct=100policy: quarantine · sp=none - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDXBPN6j4LVBq34gGu1MRPEW955X6Udz4qR+kAD+/WrWjO3ZYjx3WntOCLD6QSznK2ypkWBMlEtYedE7uRsia… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4Ayke0t9KkcDSgHe5tCPge+OYGKXEeMv7WaJb7Fs5SbWx37AqXJ1EGjmBN/LGv6ydbrcZ9i7I2gV7h6TUs… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCpPgRVBeiC4H858X6/+wMQwvitXsyVh2iwKkVkVE6zLfdj2/CEis6oabDxM6LoCW0lyUk0Wj6e5/3/+UhbZeLH8L…
selectors probed - selector1:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 106 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- weak content type protection
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN, SAMEORIGIN- permissions-policy
geolocation=(), midi=(), sync-xhr=(), accelerometer=(), gyroscope=(), magnetometer=(), payment=(), camera=(), microphone=(), usb=(), xr-spatial-tracking=(), fullscreen=(self)- x-content-type-options
nosniff, nosniff- content-security-policy
default-src https://* 'unsafe-inline' data:; script-src https: 'unsafe-inline' 'unsafe-eval' blob:; worker-src blob: 'self'; child-src blob: 'self' https://www.googletagmanager.com; frame-src 'self' https://www.onlinebanktours.com https://www.google.com https://www.googletagmanager.com https://cdn.userway.org/ https://www.youtube.com https://www.digindemo.com/; connect-src https: wss: 'self'; img-src https://* data:;- strict-transport-security
max-age=63072000; includeSubdomains; preload
Links to (12)
Linked from (1)
Use this data via API
Everything on this page for ptcvt.com is available as JSON from the indexo.dev REST & MCP API.
curl "https://indexo.dev/api/v1/domains/ptcvt.com" \ -H "X-API-Key: idx_..."