aldi.it
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- Apache
- CMS
- Joomla
- Ads
-
- Meta Pixel
- Cookie consent
-
- OneTrust
Third-party hosts loaded (9)
- s7g10.scene7.com×19
- service.force.com×2
- accounts.google.com×1
- apis.google.com×1
- appleid.cdn-apple.com×1
- assets.adobedtm.com×1
- cdn.cookielaw.org×1
- connect.facebook.net×1
- rum.hlx.page×1
Social
Contact
- Phone
DNS records live
- NS
-
- udns1.cscdns.net
- udns2.cscdns.uk
- MX
-
- 1 asgportal.in.tmes.trendmicro.eu
- TXT
-
Show 19 TXT records
bw=zT92COgflRJAcohtkCosaRouvCvp2jFrafWsYAD2mCJSapple-domain-verification=6HFwjhLtsC6TCEYxMS=ms53766982knowbe4-site-verification=9aaca5fa2bbaeb5acc2b965cacd4a4b9miro-verification=38ca58e3f143e17421169d4c41241f68462dddd4adobe-idp-site-verification=4813f4ab63fde94558b0581883685f00492480d445aacf979f4916eb28be60f1mentimeter-276cb59c-71d3-4078-81b7-c37a17c8d7f93ac1b9fc97604e45a204658c20a3a2d6tmes=aa3c92922268489fe3a1d3a5489a757c4wl8XLfvgTJtigpDCCJcnAXIxzqe/yT5/IGrCo6/NKqdCUmz43K+eguO7ZJAKwbXyfBANRF6d67eSbKZrIwjdA==knowbe4-site-verification=ff9339437acba116e403abeb2fdc35afDynatrace-site-verification=2d1fcf40-af96-4c03-939c-144e25c013fc__cj4uvecbfuph34doaleu37c3cjdocusign=47a0b44d-0093-4ce1-a51d-566c40fcd17bAJJUrDgNnUiluf8n43IOOJbcAKm8I8u/eaBjrOtQhFP5NbStBgnbpk+sfj87kP7QNvSqDRtz/B7pfFtI+X6o7g==google-site-verification=q7DJNYjsOHe9x53fkQdS16AnvvAMCJajWPl1nros9BEatlassian-domain-verification=cSRTDhs5UwDH4pea7XptFsuAk/N7XohIYFXb6raTgBq2N7luzhkuFEgm3qAbL0S7docusign=8eddd686-bcfb-4139-ada2-fbd78e198912facebook-domain-verification=w1skxfip1o5k2d54ls4xw4qkxzxlr9google-site-verification=jj46NlleLjt0mZbxTsS29ZQTXrbQU_-d-SRqLdxZFmw
Email authentication strong
- SPF
-
v=spf1 redirect=aldi.it.hosted.spf-report.comno all qualifier - DMARC
-
v=DMARC1; p=reject; fo=1; rua=mailto:df98d1c4@mxtoolbox.dmarc-report.com; ruf=mailto:df98d1c4@forensics.dmarc-report.compolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCwL/YCcO12n0EikOTgXJGMA/dXlNGFFXSPh2LhpV3tdm4kAhXfzKiaDl+upIMbBIxGMF7r0Uen1RyAW11nmb… - mail:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC2IQGbWCjbbCpcJyJJSmiJrSdiCPCnfQYjhsEDgaFvOWrDK2CHekW8A3LpX9Xlrj7oJKYdpD3MHMFBDJ0A6R… - s1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDY374qvygx7ks1ezwnlJV5UAqyrNNOm00O/HeOlSSwD6nZ/qsI6sbnZ4UAy5tIJLzuU339VWwkpESqdS8UQ0WdGDQ3F0t…
selectors probed - selector1:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 58 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-content-type-options
nosniff- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' assets.adobedtm.com *.salesforceliveagent.com service.force.com *.my.salesforce.com *.google.com *.facebook.net *.facebook.com *.omtrdc.net *.youtube.com *.ytimg.com *.doubleclick.net *.googleapis.com *.iesnare.com appleid.cdn-apple.com www.googletagmanager.com www.googleadservices.com activitymap.adobe.com qasfix-hofer.cs101.force.com cs101.salesforce.com https://www.googletagmanager.com/gtag/js *.bing.com https://s.pinimg.com/ct/core.js https://s.pinimg.com/ct/lib/main.2a04f3ee.js hofer.force.com hofer.secure.force.com static.lightning.force.com *.cookielaw.org *.onetrust.com s7g10.scene7.com tags.tiqcdn.com collect.tealiumiq.com *.my.salesforce-sites.com int-crm--c.vf.force.com *.googlesyndication.com https://rum.hlx.page *.mapbox.com https://locator.uberall.com; object-src 'none'; connect-src 'self' *.omtrdc.net *.demdex.net *.postcodeanywhere.co.uk *.facebook.com activitymap.adobe.com sitecatalyst.omniture.com qasfix-hofer.cs101.forc- strict-transport-security
max-age=63072000; includeSubdomains;