srilankabusiness.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- fonts.googleapis.com×1
- js.createsend1.com×1
- usrwy.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
- Address
- Nawam Mawatha,, 00200, Colombo-02,, Sri Lanka
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 1998-01-05
- Expires
- 2031-01-04 1691 days left
- Updated
- 2025-12-10
- Name servers
-
- ivy.ns.cloudflare.com
- lee.ns.cloudflare.com
DNS records live
- NS
-
- ivy.ns.cloudflare.com
- lee.ns.cloudflare.com
- MX
-
- 10 mx-01-us-west-2.prod.hydra.sophos.com
- 20 mx-02-us-west-2.prod.hydra.sophos.com
- TXT
-
Show 5 TXT records
ca3-6d63093b33164bd8aad5c7ce42dc0b6cfacebook-domain-verification=uh3jx1thcsi492asxtxy8dhl23zb2sgoogle-site-verification=c99Vr8C9fXnnkrIEHzKQ8cWRvBvhH2NcyrMs4ljqfgYsophos-domain-verification=143aec41766ce9e14f9e55a8cd98006ca92b80b1yandex-verification: 8a99dfb7398ff3a2
Email authentication partial
- SPF
-
v=spf1 include:_spf_uswest2.prod.hydra.sophos.com ip4:203.115.29.140 ip4:203.115.29.139 ip4:203.115.29.138 ip4:203.115.29.132 -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:re+luck2nz7tww@dmarc.postmarkapp.com;policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
WE1
Expires in 65 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- cross-origin-opener-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' gpcbh.gateway.mastercard.com *.googleapis.com *.gstatic.com *.crazyegg.com *.hotjar.com *.hotjar.io *.google-analytics.com *.google.com *.google.lk *.addthis.com *.youtube.com/iframe_api *.googletagmanager.com *.googleadservices.com *.facebook.net *.facebook.com *.doubleclick.net *.amazonaws.com *.youtube-nocookie.com *.youtube.com *.createsend1.com *.cloudflare.com api.userway.org autoexecs.ebeyonds.com *.edb.gov.lk cdn.userway.org *.srilankabusiness.com usrwy.com v1.addthisedge.com z.moatads.com i.pinimg.com *.googleusercontent.com *.cdninstagram.com *.fbcdn.net yt3.ggpht.com data: *.twimg.com stackpath.bootstrapcdn.com code.jquery.com cdn.jsdelivr.net www.clarity.ms createsend.com snap.licdn.com s.pinimg.com static.ads-twitter.com c.clarity.ms ct.pinterest.com px.ads.linkedin.com t.co analytics.twitter.com c.bing.com graph.instagram.com mc.yandex.com www.linkedin.com mc.yandex.ru wss://mc.yandex.ru; frame-ancestors 'self' https://dev- strict-transport-security
max-age=15552000; includeSubDomains; preload- cross-origin-opener-policy
same-origin-allow-popups