ytl.com
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- ytlpi-web-prod.azurewebsites.net×6
- fonts.googleapis.com×3
- fonts.gstatic.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
- Address
- 33rd Floor, Menara YTL, 205 Jalan Bukit Bintang, 55100, Kuala Lumpur, MY
Registration
- Registrar
- Shinjiru Technology Sdn Bhd
- Created
- 1998-12-11
- Expires
- 2029-12-04 1294 days left
- Updated
- 2025-02-05
- Name servers
-
- ns1.huskydns.com
- ns2.huskydns.com
DNS records live
- NS
-
- ns1.huskydns.com
- ns2.huskydns.com
- MX
-
- 0 ytl-com.mail.protection.outlook.com
- TXT
-
Show 10 TXT records
l5lmpsf7mgooqs1m3006q64vd2brevo-code:41c9aa960958bd0f4b83199a1d4963e8lhdcuebn10ktr4j0fe16l6o76j_sebfj2csgpobr9p1vx2ufa7yzqavhv4MS=ms570225009a1dcmd2sr9gif075p0d4h2jb87oils0j9h8bh1577jvhpqn4ebugoogle-site-verification=w7eVZsahZeoLoQaPGIATMDGczE1xZs8EFxMvik6VZlA_nokn13w1rie34ygxr6owbjhnen0womsMS=ms96225590
Email authentication strong
- SPF
-
v=spf1 include:enginemailer.org include:_spf.google.com ip4:183.78.1.141 ip4:183.78.1.140 ip4:183.78.1.139 ip4:183.78.1.138 include:spf.protection.outlook.com include:spf.mandrillapp.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:support@enginemailer.org,mailto:rua@ytl.com; ruf=mailto:support@enginemailer.org,mailto:ruf@ytl.com; fo=1policy: reject (enforced) - DKIM
-
Show 5 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDVnYKQHG6HY469Ztd6oSiwZ+r1Ts5HI0hdJ6uFBNexJJ9QzoAX2k10/benQiCj5G80/bySLerpNCqTH0UL1f… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA629mFAhXvBX9gXmzcBcFoDTkE816ieumXYMb0aS5K3AsCKcYMKv0Ln842SGDsT9b2ziWEHxF8kGlDs… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2oU/Cz9GvNoEjEY9NhrRqYHoPnIfiEiN7w/Elv7tA30kE+WF23rqdFjxgisLNGGOFEt3VxabM48lcpYk3D… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsIExm5Fazd3uighSBgjDiHoqc4ZNx924SK741Q41sYoJ7oxPge7/3e4qdf4+h8429TQL6nhW++riuhQP2J…
selectors probed - selector1:
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 91 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin- x-frame-options
SAMEORIGIN- permissions-policy
encrypted-media=(self *.soundcloud.com *.sndcdn.com)- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; frame-src 'self' *.googletagmanager.com *.doubleclick.net *.youtube.com *.bursamalaysia.com *.google.com *.soundcloud.com *.cloud.microsoft blob:; connect-src 'self' *.iconify.design *.simplesvg.com *.unisvg.com *.gstatic.com *.cloudflare.com *.googleapis.com *.facebook.com *.hotjar.com *.cloudfront.net *.googletagmanager.com *.google.com *.google.com.my *.doubleclick.net *.ads-twitter.com *.google-analytics.com *.quantserve.com *.tiktok.com *.enzymic.co *.jsdelivr.net *.adsrvr.org *.adbro.me *.quantcount.com *.hotjar.io *.googleadservices.com; font-src 'self' *.gstatic.com *.cloudflare.com *.googleapis.com data:; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.gstatic.com *.cloudflare.com *.googleapis.com *.facebook.com *.hotjar.com *.cloudfront.net *.googletagmanager.com *.ads-twitter.com *.clevertap-prod.com blob:; style-src 'self' 'unsafe-inline' *.gstatic.com *.cloudflare.com *.googleapis.com *.facebook.com *.jsdelivr.net; img-src 'self' *.azurewebsites.net data- strict-transport-security
max-age=31536000; includeSubDomains
Links to (5)
- facebook.com×1
- instagram.com×1
- linkedin.com×1
- x.com×1
- youtube.com×1