waveshare.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
- Statcounter
Third-party hosts loaded (4)
- c.statcounter.com×1
- platform-api.sharethis.com×1
- secure.statcounter.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Alibaba Cloud Computing (Beijing) Co., Ltd.
- Created
- 2007-02-22
- Expires
- 2027-02-22 279 days left
- Updated
- 2025-10-15
- Name servers
-
- cory.ns.cloudflare.com
- tricia.ns.cloudflare.com
DNS records live
- NS
-
- cory.ns.cloudflare.com
- tricia.ns.cloudflare.com
- MX
-
- 10 hzmx02.mxmail.netease.com
- 5 hzmx01.mxmail.netease.com
- TXT
-
google-site-verification=ObeCvsrpz2Yf6fsDHrDY_eDCX6Dokl0m_ehJnYdAeGw
Email authentication strong
- SPF
-
v=spf1 include:spf.163.com include:mail.zendesk.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; fo=1; ruf=mailto:dmarc@qiye.163.com; rua=mailto:616f5e5a76134c74b6cdde794bf88a40@dmarc-reports.cloudflare.net,mailto:dmarc_report@qiye.163.compolicy: reject (enforced) - DKIM
-
- default:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCPhXUQ63nHHwr9GDkszBTfA8NqycCVLIKnIhWyMyVp2h7cfBVCoYJVySqhx7iw6o/K7f0bNNkd3jyvDJILNh…
selectors probed - default:
Certificate (current)
WE1
Expires in 63 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
sameorigin- content-security-policy
frame-ancestors 'self' *.doubleclick.net;frame-src 'self' *.youtube.com *.doubleclick.net *.googletagmanager.com *.gtimg.com *.sharethis.com;default-src 'self' 'unsafe-inline' 'unsafe-eval' *.statcounter.com *.sharethis.com *.googleapis.com *.gstatic.com *.company-target.com *.qcloud.com *.gtimg.com *.waveshare.com *.cloudflare.com *.googletagmanager.com googleads.g.doubleclick.net *.googleadservices.com;script-src 'self' 'unsafe-inline' 'unsafe-eval' *.statcounter.com *.sharethis.com *.googleapis.com *.gstatic.com *.company-target.com *.qcloud.com *.gtimg.com *.waveshare.com *.cloudflare.com *.googletagmanager.com googleads.g.doubleclick.net *.googleadservices.com;style-src 'self' 'unsafe-inline' 'unsafe-eval' *.statcounter.com *.sharethis.com *.googleapis.com *.gstatic.com *.company-target.com *.qcloud.com *.gtimg.com *.waveshare.com *.cloudflare.com *.googletagmanager.com googleads.g.doubleclick.net *.googleadservices.com;img-src * data: blob:;connect-src *