tropjoin.com

.com crawl

First seen 2026-05-08 · Last seen 2026-05-15 · ok HTTP/1.1 200 3069 ms crawled 2026-05-14

CN · 8.134.168.63 · AS37963 Hangzhou Alibaba Advertising Co.,Ltd.

Reputation 100/100

Classifying

HTML metadata

Title
天津铸源健康科技集团有限公司【官方网站】
Description
天津铸源健康科技集团成立于2008年,是一家集健康产品研究、开发、生产、销售、服务于一体的大型综合性集团企业,前身为1994年成立的一家大型制药企业,集团总部大厦位于天津市,总建筑面积约25000平方米,总投资约6亿元。
Language
zh

Technology

Server
Tengine

Third-party hosts loaded (1)

  • gcdn.meidianbang.cn×78

Contact

Phone

Registration

Registrar
Alibaba Cloud Computing (Beijing) Co., Ltd.
Created
2011-12-13
Expires
2026-12-13 207 days left
Updated
2025-04-23
Name servers
  • dns10.hichina.com
  • dns9.hichina.com

DNS records live

NS
  • dns10.hichina.com
  • dns9.hichina.com
MX
  • 10 hzmx02.mxmail.netease.com
  • 5 hzmx01.mxmail.netease.com
CNAME
  • cdn-ali.72dns.net

Email authentication strong

SPF
v=spf1 include:spf.163.com -all
strict (-all)
DMARC
v=DMARC1; p=quarantine; fo=1; ruf=mailto:dmarc@qiye.163.com; rua=mailto:dmarc_report@qiye.163.com
policy: quarantine
DKIM
  • default: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCe1RnLGsmw5ilS8gIagXUottysq+FzQC4NZKQmZsnZYYKv6l2/OEbHuKieodp9B0AFpgX1Tcw68kwHeBb3OI…
selectors probed

Certificate (current)

Encryption Everywhere DV TLS CA - G2
from 2025-08-26 to 2026-08-26
Expires in 98 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://tropjoin.com/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-opener-policy
  • cross-origin-embedder-policy
  • cross-origin-resource-policy
findings
  • CSP allows unsafe inline scripts/styles
  • missing frame protection
Header values
referrer-policy
strict-origin-when-cross-origin
permissions-policy
camera=(self), microphone=(self), geolocation=(self)
x-content-type-options
nosniff
content-security-policy
frame-ancestors 'self'; default-src 'self' http: https: ws: wss:; script-src 'self' http: https: 'unsafe-eval' 'unsafe-inline'; img-src 'self' http: https: data:; style-src 'unsafe-inline' http: https:; font-src 'self' http: https: data:;
strict-transport-security
max-age=15768000
cross-origin-opener-policy
same-origin
cross-origin-embedder-policy
cross-origin
cross-origin-resource-policy
cross-origin

Links to (1)

Linked from (2)