ulstandards.com

.com crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 1264 ms crawled 2026-05-18

US · 3.19.43.159 · AS16509 Amazon.com, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
UL SCCL :: Logon

Technology

Cookie consent
  • Osano

Third-party hosts loaded (3)

  • cmp.osano.com×1
  • maxcdn.bootstrapcdn.com×1
  • www.recaptcha.net×1

Registration

Registrar
PDR Ltd. d/b/a PublicDomainRegistry.com
Created
2002-02-22
Expires
2027-02-22 278 days left
Updated
2026-01-21
Name servers
  • ns-1146.awsdns-15.org
  • ns-1639.awsdns-12.co.uk
  • ns-23.awsdns-02.com
  • ns-517.awsdns-00.net

DNS records live

NS
  • ns-1146.awsdns-15.org
  • ns-1639.awsdns-12.co.uk
  • ns-23.awsdns-02.com
  • ns-517.awsdns-00.net
MX
  • 1 aspmx.l.google.com
  • 10 alt3.aspmx.l.google.com
  • 10 alt4.aspmx.l.google.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
TXT
Show 4 TXT records
  • 2i6027njhldtm2m3gk8mq93g02
  • amazonses:/XPPLPrG1YHEbZ4SCoV6rdTQplQ0lAA9gr459fR4WHs=
  • google-site-verification=1qNkeUAGwt-MQc3hOhI__bZuYsmXBhal9BqiMEzabfM
  • qksagm8mgmhb6jo20v94a1d1ps

Email authentication partial

SPF
v=spf1 ip4:96.84.127.81 ip4:66.209.212.90 ip4:66.209.212.94 ip4:50.20.30.15 ip4:192.0.0.40 ip4:52.14.45.89 ip4:10.0.0.141 a:omx.cbeyond.com a:smtp.cbeyond.com include:_spf.google.com include:amazonses.com ~all
softfail (~all)
DMARC
v=DMARC1; p=none
policy: none (monitoring only)
DKIM
  • google: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4/QZGdzj5DDqIcs99ASskDrbVOmQeGRWTgvwFTq0C2cH9fLZhzFTfhRusp/wJQE5WYPIKwEgih7Kq2…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqYf86q19xNeLDWXE7K/S/sGZudCLrvg07lGcqXN5RNJAUWMnVq470HMDg0UFHfFG9G+APjS7hAWxmUW0nD…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDOoPUfZZGpmmFAndzXGGmkmjVxoFsf/3j72rCF6zmhO5E6jBxmH2zvihKU5SSTSwCYvCW9+KXbPycTskM376ZUEm…
selectors probed

Certificate (current)

Amazon RSA 2048 M04
from 2025-10-31 to 2026-11-30
Expires in 194 days

HTTP security headers

Header hygiene 60/100 Checked live page: https://ulstandards.com/unsecured/Logon.aspx?ReturnUrl=%2f

present
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self' *.audioeye.com *.osano.com *.google-analytics.com *.hotjar.com *.hotjar.io *.cloudfront.net *.cookielaw.org *.jquery.com *.googletagmanager.com *.stats.g.doubleclick.net *.g.doubleclick.net *.analytics.google.com *.google.com data:; style-src 'self' *.audioeye.com *.osano.com *.aspnetcdn.com *.googleapis.com *.hotjar.com *.bootstrapcdn.com *.cookielaw.org *.jquery.com 'unsafe-hashes' 'unsafe-inline'; script-src 'self' *.audioeye.com *.osano.com *.cookielaw.org *.aspnetcdn.com *.jquery.com *.recaptcha.net *.gstatic.com *.gstatic.cn *.hotjar.com *.googletagmanager.com *.google-analytics.com *.clicktale.net 'unsafe-hashes' *.cdngc.net blob: 'unsafe-inline' 'unsafe-eval' *.jsdelivr.net; frame-src 'self' *.audioeye.com *.googletagmanager.com *.youtube.com *.hotjar.com *.recaptcha.net *.osano.com; font-src 'self' *.audioeye.com *.gstatic.com *.gstatic.cn *.bootstrapcdn.com *.osano.com data:; frame-ancestors 'self' *.googletagmana

Links to (3)

Linked from (1)