wascogreenergy.com

.com crawl

First seen 2026-04-22 · Last seen 2026-05-13 · ok HTTP/1.1 200 4373 ms crawled 2026-05-16

MY · 103.6.196.113 · AS46015 Exa Bytes Network Sdn.Bhd.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Wasco Greenergy Berhad
Description
Wasco Greenergy Berhad is the renewable energy arm of Wasco Berhad. Formed from the integration of Wasco Thermal and Wasco AgroTech, we deliver complete EPCC steam energy systems (including biomass boilers, gas fired boilers, and HRSGs) — as well steam turbine generator sets and palm oil milling equipment.
Language
en
Canonical
https://wascogreenergy.com/

Technology

Server
LiteSpeed
Fonts
  • Google Fonts

Third-party hosts loaded (3)

  • fonts.googleapis.com×2
  • fonts.gstatic.com×1
  • www.insage.com.my×1

Contact

Phone

Registration

Registrar
Web Commerce Communications Limited dba WebNic.cc
Created
2024-02-15
Expires
2029-02-15 1001 days left
Updated
2025-10-08
Name servers
  • ns135.mschosting.cloud
  • ns136.mschosting.cloud

DNS records live

NS
  • ns135.mschosting.cloud
  • ns136.mschosting.cloud
MX
  • 0 wascogreenergy-com.mail.protection.outlook.com
Verified for
  • Microsoft 365

Email authentication partial

SPF
v=spf1 include:spf.protection.outlook.com include:spf-au.emailsignatures365.com -all
strict (-all)
DMARC
v=DMARC1; p=none;
policy: none (monitoring only)
DKIM
  • default: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxRQYjXRX5GpVitVrSHCXiVlwhkqngN2JcXHAZgpUv64A/Rr8S3KwXVFxxMs06ZmsT6A4Tm94mQ+0h2…
selectors probed

Certificate (current)

R13
from 2026-04-09 to 2026-07-08
Expires in 48 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://wascogreenergy.com/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • missing frame protection
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-content-type-options
nosniff
content-security-policy
default-src 'self'; upgrade-insecure-requests; script-src 'self' https://www.googletagmanager.com https://www.google-analytics.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com; font-src 'self' https://fonts.gstatic.com; img-src 'self' https://www.google-analytics.com https://www.googletagmanager.com data:; connect-src 'self' https://www.google-analytics.com; frame-src 'self' https://www.insage.com.my https://insage.com.my; frame-ancestors 'self'; object-src 'none'; base-uri 'self';
strict-transport-security
max-age=31536000; includeSubDomains; preload

Linked from (1)