ageallianz.it
HTML metadata
Technology
- Server
- nginx
- CMS
- Gatsby
Third-party hosts loaded (1)
- assets.adobedtm.com×1
Contact
- Phone
DNS records live
- NS
-
- dns3.fastweb.it
- dns4.fastweb.it
- MX
-
- 0 ageallianz-it.mail.protection.outlook.com
- TXT
-
Show 4 TXT records
_dkez8u1x2hov690hr50xpppny6i2u3wnxfnmz170s7bxr7tczcvtzwv99n6g43hQuoVadis=5bbe6ad9-4d0f-4c7f-a640-65c566bbc7d7_oi3jwdotix6p4syler8jcgxysmnze5r
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:t.contactlab.it include:turbo-smtp.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; fo=1; ri=3600; rua=mailto:Rua-allianz@allianz.com; ruf=mailto:Ruf-allianz@allianz.compolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAu5v+GABWx1DYy4GhIU9VM/Lodzdjd6UhwjANgIUaXd3ziaG6XSAA+w43p+UGfWYShsmXsV7MTJkGOK… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2J2rAhtYJdNdEVnQxbCUistl0YyqMq5q9lZjM6R5fs0YUEjybuoXPg0cJT9eXRG5JLnEL0wmujwKRD…
selectors probed - selector1:
Certificate (current)
DigiCert QV TLS ICA G1
Expires in 61 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
same-origin, strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
geolocation=(), sync-xhr=(), speaker=(self), fullscreen=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' www.ageallianz.it ageallianz.it ageallianz-cmsallianz.prodigys.it assets.adobedtm.com code.jquery.com cdnjs.cloudflare.com onemarketingazeu.sc.omtrdc.net fonts.googleapis.com maps.googleapis.com fonts.gstatic.com maps.gstatic.com www.google.com www.googletagmanager.com *.googlesyndication.com cdn.cookielaw.org www.facebook.com web.facebook.com connect.facebook.net dpm.demdex.net azeu.demdex.net assets.adobedtm.com s7.addthis.com cm.everesttech.net www.youtube.com youtube.com www.youtu.be youtu.be www.youtube-nocookie.com img.youtube.com i.ytimg.com eu.acsbapp.com eu-cdn.acsbapp.com accesswidget-log-receiver.acsbapp.com *.doubleclick.net data:; style-src 'unsafe-inline' 'self' fonts.googleapis.com; form-action 'self' fastquote.allianz.it; report-uri /csp-report- strict-transport-security
max-age=63072000; includeSubDomains; preload- cross-origin-opener-policy
same-origin