wayin.ai
HTML metadata
Technology
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (5)
- dc4ujhw2ggyxi.cloudfront.net×7
- d25vgoj2qecagr.cloudfront.net×4
- analytics.ahrefs.com×1
- challenges.cloudflare.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2023-12-28
- Expires
- 2033-12-28 2780 days left
- Updated
- 2025-07-22
- Name servers
-
- ns01.domaincontrol.com
- ns02.domaincontrol.com
DNS records live
- NS
-
- ns01.domaincontrol.com
- ns02.domaincontrol.com
- MX
-
- 10 mxbiz2.qq.com
- 5 mxbiz1.qq.com
- TXT
-
v=spf1 include:spf.mail.qq.com -all
Certificate (current)
Amazon RSA 2048 M04
Expires in 137 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- cross-origin-opener-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- content-security-policy
frame-ancestors 'self' https://player.twitch.tv; script-src 'self' https://player.twitch.tv https://accounts.google.com/gsi/client https://googleads.g.doubleclick.net https://challenges.cloudflare.com https://www.googletagmanager.com https://analytics.ahrefs.com https://www.clarity.ms https://scripts.clarity.ms https://www.youtube.com https://*.facebook.com https://*.facebook.net https://s.ytimg.com https://www.redditstatic.com https://js.stripe.com 'unsafe-inline' 'unsafe-eval'- cross-origin-opener-policy
same-origin
Links to (5)
- cloudfront.net×1
- google.com×1
- linkedin.com×1
- x.com×1
- youtube.com×1