sompo-asia.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Instra Corporation Pty Ltd.
- Created
- 2016-02-03
- Expires
- 2027-02-03 259 days left
- Updated
- 2026-01-18
- Name servers
-
- ns1.instradns.com
- ns2.instradns.com
- ns3.instradns.com
DNS records live
- NS
-
- ns1.instradns.com
- ns2.instradns.com
- ns3.instradns.com
- MX
-
- 1 sompoasia-com01c.mail.protection.outlook.com
- TXT
-
Show 14 TXT records
_globalsign-domain-verification=DCdkXQGElsYiex8eZSx0KKaEXYepYCuZEKrWsMm2tAglobalsign-domain-verification=36f90519f4eb3d65c22fcdfb8568602c_globalsign-domain-verification=SX0l4jz4gV2_wGwH7ny-YnKpUjlkvZCnOCCr2pkxFoMS=ms11740046atlassian-domain-verification=cK05x2gSLV4m8O98UBGEVMxXRnGVyEPimBd7IVCBSfMLFC6VigTI63ZretaD2Soqglobalsign-domain-verification=486F29FD36108A39EAB8DD622EAAA375globalsign-domain-verification=345a46e23c4598f78fe459b138ec31b5google-site-verification=C3v8EeoMnl9yXgeEAJOSVQbJ_qrEzrTHacCGSTjc6Dgglobalsign-domain-verification=85a994d270d916aac5bd99f6e6a91fdaglobalsign-domain-verification=6c9005b2a7cc05331d3871ac42f9f10bworkplace-domain-verification=q31ldE1kJDRvhKLt77T8aeokV3x9zcdocusign=1c64e165-9775-4b1c-bfed-f8544e01543aMS=F6048DBFD9FB1995B65A7902949E445A9AE6A705globalsign-domain-verification=8411BE97D87C6E7E666C351B06766311
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:u55700294.wl045.sendgrid.net -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:helpdesk@sompo-asia.compolicy: quarantine - DKIM
- no key found at common selectors
Certificate (current)
Sectigo Public Server Authentication CA EV R36
Expires in 319 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=(), battery=(), camera=(), cross-origin-isolated=(), display-capture=(), document-domain=(), encrypted-media=(), execution-while-not-rendered=(), execution-while-out-of-viewport=(), fullscreen=(self "https://www.youtube.com"), geolocation=(), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), navigation-override=(), payment=(), picture-in-picture=(self "https://www.youtube.com"), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(), usb=(), web-share=(), xr-spatial-tracking=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' https://*.recaptcha.net https://*.gstatic.com https://cdn.jsdelivr.net https://*.googletagmanager.com https://*.google-analytics.com https://*.ckeditor.com https://www.youtube.com https://*.mastercard.com https://www.google.com https://*.google.com https://cdnjs.cloudflare.com/ https://*.zdassets.com https://*.zendesk.com; style-src 'self' 'unsafe-inline' data: https://cdn.jsdelivr.net https://cdnjs.cloudflare.com; img-src 'self' data: https://img.youtube.com https://*.zendesk.com https://*.googletagmanager.com; frame-src 'self' https://*.recaptcha.net https://*.gstatic.com https://www.youtube.com https://youtu.be https://*.mastercard.com https://www.google.com https://*.google.com; frame-ancestors 'self'; font-src 'self' data:; connect-src 'self' https://*.googletagmanager.com https://*.google-analytics.com https://img.youtube.com https://*.zdassets.com https://*.zendesk.com wss://*.zendesk.com https://cdn.jsdelivr.net; report-uri /report-csp-viol- strict-transport-security
max-age=31536000; includeSubDomains; preload