cctm.xyz
Amazon Registrar, Inc.
unsigned
Yes
cctm.xyz is a domain that appears to be used for tracking and analytics purposes, likely for payment portals or checkout processes. It's been registered since 2021 and is managed by Go Daddy, LLC. The domain has a transfer state that prohibits updates, renewals, and deletions. The scripts served from this domain are used for phone number formatting, tracking, and user behavior monitoring, and integrate with third-party services like Optimizely and VWO.
Data on this page is collected by cside's crawler, which monitors third-party scripts across the public web.
CallTrackingMetrics
Category: marketing
Description
CallTrackingMetrics (CTM) is a call tracking and conversation analytics platform that uses dynamic number insertion (DNI) to attribute phone calls, chats, forms, and texts to specific marketing campaigns. The cctm.xyz domain serves CTM's t.js tracking script that performs phone-number swapping/formatting and visitor behavior tracking on client sites.
AI Review
The scripts associated with ctm.com and its subdomain tctm.xyz focus on user interaction tracking and call attribution through a module that links incoming calls to unique identifiers for marketing analytics. While this data collection aims to enhance customer service and optimize marketing strategies, it also raises significant privacy risks, particularly in a PCI compliance context. The monitoring of customer interactions could inadvertently collect sensitive information, especially if it overlaps with payment-related communications. Despite the lack of recent alerts indicating operational stability, the inherent risks tied to the tracking and monitoring of user behavior cannot be overlooked. There is a fundamental tension between the vendor's objective to leverage data to improve business intelligence and the necessity to minimize exposure of identifiable customer data. As these scripts likely operate in environments where sensitive data might be processed, it is crucial for stakeholders to ensure that any collected data is appropriately managed to respect user privacy and adhere to stringent data protection regulations.
Script hostnames
No meta tags found.
Enabled
cctm.xyz is one of thousands of third-party scripts on the web.
Most sites run dozens of third-party scripts and can't say what each one does. cside monitors every script on your site and catches the ones that change or turn malicious.
| Hostname | Type | TTL | Priority | Content |
|---|---|---|---|---|
| cctm.xyz | NS | 172800 | ns-1303.awsdns-34.org. | |
| cctm.xyz | NS | 172800 | ns-1760.awsdns-28.co.uk. | |
| cctm.xyz | NS | 172800 | ns-70.awsdns-08.com. | |
| cctm.xyz | NS | 172800 | ns-942.awsdns-53.net. | |
| cctm.xyz | A | 60 | 52.54.9.67 | |
| cctm.xyz | A | 60 | 54.197.239.207 | |
| cctm.xyz | SOA | 900 | ns-942.awsdns-53.net. awsdns-hostmaster.amazon.com. 1 7200 900 1209600 86400 |
FAQ
Frequently Asked Questions
This domain is analyzed as part of cside's domain directory to identify third-party scripts and their purposes. The summary provides information about what services, tools, or scripts this domain hosts, helping website owners understand which third-party services are being loaded on their sites.
The risk score is calculated based on multiple security factors including SSL certificate validity, DNSSEC status, domain registration details, and historical security data. A higher score indicates lower risk, while a lower score suggests potential security concerns that should be investigated.
The SSL certificate information shows whether the domain uses HTTPS encryption, when the certificate was issued, when it expires, and who issued it. This helps verify the domain's security posture and identify potential certificate-related vulnerabilities that could affect your website's security.
Third-party script domains can be compromised or used maliciously. By monitoring domain information like registration details, SSL certificates, and DNS records, you can identify suspicious changes, expired certificates, or domains that may pose security risks to your website and users.
Domain information is regularly scanned and updated to provide the most current security intelligence. The last scanned timestamp shows when the most recent analysis was performed, ensuring you have up-to-date information about the domain's security status.
If you identify a high-risk domain loading scripts on your website, you should investigate why it's being used, verify its legitimacy, and consider removing or replacing it if it's not essential. Use cside's platform to monitor and block suspicious third-party scripts to protect your users from potential security threats.
Subscribe to our newsletter to get the full picture
Stay updated with our latest news, offers and blog posts. Subscribe for exclusive updates delivered straight to your inbox.
Your inbox stays chill, we pop in monthly.