syfe.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (7)
- cdn.prod.website-files.com×68
- www.googletagmanager.com×3
- app.optibase.io×1
- cdn.jsdelivr.net×1
- d3e54v103j8qbb.cloudfront.net×1
- static.zdassets.com×1
- www.datadoghq-browser-agent.com×1
Social
Contact
- Address
- 8 Cross Street #21-01 Manulife Tower, 048424, Singapore, SG
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2004-05-28
- Expires
- 2028-05-28 739 days left
- Updated
- 2024-05-23
- Name servers
-
- alan.ns.cloudflare.com
- fay.ns.cloudflare.com
DNS records live
- NS
-
- alan.ns.cloudflare.com
- fay.ns.cloudflare.com
- MX
-
- 10 aspmx.l.google.com
- 20 alt1.aspmx.l.google.com
- 30 alt2.aspmx.l.google.com
- 40 aspmx2.googlemail.com
- 50 aspmx3.googlemail.com
- TXT
-
Show 19 TXT records
figma-domain-verification=0af33d83c0083695a47698be185805a1ed6eb0cfa2879bf276a4ccb0dad1a7b1-1760069952imf1j2pjs7i003rdvhg6psotdvDirectFedAuthUrl=https://accounts.google.com/o/saml2/idp?idpid=C00sdzx4xcursor-domain-verification-xf4m0b=P5wiI3vZxNeeQ7lgzsFI2xakdgoogle-site-verification=KvMdlSQUnFpNrDiw-eBOvJ59RS-R5taM_jDAgWNX4p8et4lu115lo83efad8cm6m7k13DirectFedAuthUrl=https://accounts.google.com/o/saml2?idpid=C00sdzx4xanthropic-domain-verification-hdn60e=ZDV62XjleKes5hxO8ZjmHXfwegoogle-site-verification=fueIth66Ls86-s59gbVqfO53S8Sq7O8vu21AsZ0T8uEgoogle-site-verification=yQOa5rEgvM38-D57KGTtu-Nvuoks8MKHPnSwYQ5TZtsnkvvvpcek8d6kj4ddaleh0gfaratlassian-domain-verification=8a6b/7DAGtfEdwgoStlbqky1HODIDdRk6jwSQIe4htQDDhgbKLAmDF/JmrpzNJqJli5AjCxN6EjE44iz/RVTzwgh7w83kHyAWz35Tx/5yWU=bw=ZkjqfnKfolOP1jOrcDCWVk9KGERsOkQxFIg7NV4Hlm4Lfacebook-domain-verification=10c4q6q8mgzcwh2rx85spi0vbms8g0google-site-verification=iURu7nDod18qCWJjxkP7aFpwlDic-8JlTnP7uVV0B44google-site-verification=EqOJ4Dbu-Bkysp5pVWAG8f6xr3L4wOV394fYGBgretMgoogle-site-verification=A-Mv25LucVm_A_7vdpNVU6-AA-XXkbYeyI8xKqSub6Ygoogle-site-verification=4-U7LwkXIEmPKgkkhPBVIQBynAVyRCIbelUNOec_VqA
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com include:sendgrid.net include:amazonses.com include:mail.zendesk.com include:fdspfus.freshemail.io ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:082fcc2f66b84ae3acb3bb41f75f4623@dmarc-reports.cloudflare.net,mailto:dmarc-alerts@syfe.com; aspf=r; adkim=r;policy: quarantine - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxOmk7Ss8jbV/QxA9NBHFyajLoIEpGXo8IzbPzgptGNICRCLuIbns0UN0eqkZA3Uhgdp1alAuHangLw… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwwe6neeumAxHX/U5B885qhB0kpwP0Z+i4j7rCZVb/2nIza3Rxuk3Ufp+1zwYE2bmgPZdr5z+SIuBp5PTgO… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDpZjd+rwfPIHazFk5Pra/aVXW1XhKHQDUkN4rQ5Ka8FSGjtXKGsds1ai8ME/jv9a3NkQQSV4Ga4EWNYsrfieo6XU…
selectors probed - google:
Certificate (current)
WE1
Expires in 34 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN, sameorigin- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self', default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://app.optibase.io https://cdn.pendo.io https://npmcdn.com https://challenges.cloudflare.com https://assets.syfe.com https://analytics.tiktok.com https://*.website-files.com/ https://unpkg.com https://cdn.jsdelivr.net https://cdnjs.cloudflare.com https://*.cloudfront.net https://accounts.google.com https://appleid.cdn-apple.com https://www.gstatic.com https://www.redditstatic.com https://www.google.com https://static.ads-twitter.com https://*.srv.stackadapt.com https://qvdt3feo.com https://*.g.doubleclick.net https://*.google-analytics.com https://*.bing.com https://*.googletagmanager.com https://*.yahoo.com https://*.yahoodns.net https://*.yimg.com sp.analytics.yahoo.com s.yimg.com https://fonts.gstatic.com https://www.google.com.hk https://www.google.com.au https://s.yimg.com https://www.buzzsprout.com https://www.googleoptimize.com https://*.outbrain.com https://calendly.com https://www.- strict-transport-security
max-age=31536000; includeSubDomains; preload
Links to (7)
- apple.com×2
- facebook.com×2
- google.com×2
- instagram.com×2
- linkedin.com×2
- whatsapp.com×2
- x.com×2
Linked from (1)
- yolo.io×2