ansa.it
HTML metadata
Technology
- Server
- nginx
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
- Ads
-
- Google Ads (DoubleClick)
- Cookie consent
-
- Iubenda
Third-party hosts loaded (8)
- cdn.iubenda.com×4
- securepubads.g.doubleclick.net×3
- ads.talkscreativity.com×2
- secure.widget.cloud.opta.net×2
- embed.onefootball.com×1
- s.adplay.it×1
- sb.scorecardresearch.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns.ansa.it
- ns2.ansa.it
- ns3.ansa.it
- ns8.colt.net
- MX
-
- 0 ansa-it.mail.protection.outlook.com
- 30 mx.colt.net
- TXT
-
Show 6 TXT records
hZW0bftC0ekcB2m5E7d4Dovvnq9AZ3FEeUNVKHYNAs6+WYP9omIECARnVf/oihHbGfbeiJdQ+8RbJOwWeXXBxA==MS=A1B65BB19FD17211D467EEB653E961E062037C47google-site-verification=cOj_2B1Ozw6hgEt6-xKKHiUEGYWAatKFuVQKeUMiOXYMtPrN7h7xwS7rozfOADNzBwKklj27UvnQZMbnTgEAjQ=google-site-verification=sbAdkZ3FlauBSCk9SQNezbGmm5cx4oQo7IXptbO_BfIgoogle-site-verification=8ReM_cXqWyVhrMBlK7ndDTt-S3_urLwzMXYEJHHG9Yg
Email authentication partial
- SPF
-
v=spf1 a mx ip4:213.215.139.237 ip4:2.118.43.17 ip4:93.57.21.114 ip4:149.72.177.165 ip4:167.89.109.64 ip4:116.203.121.118 include:spf.protection.outlook.com include:amazonses.com include:spf.braintreegateway.com include:docebosaas.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; pct=100; adkim=r; aspf=rpolicy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDFk9DuYohJ4I6YKlLjjBNN6r6wdg4wgGyHqkKA2PPvCvvG9kB6ojf4wipLsucAcgUxAA1fOKz3nUH7ZbZTs2… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA322im1mfqpah/+GshDWs2E/IBaOxWWNP5aVWEWYAG4XmWGd5oB+2swYctjoQuTrnwMXeY8U1krg3rZdHQg… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDAgS1FynFmfSNr2G5y3vhmX5ynhLM2w47RDyeNNVkUEqAltREqNfpPevhWwlaVLPyhOrpq973csZf+0zbCb0iKQ5…
selectors probed - selector1:
Certificate (current)
Sectigo Public Server Authentication CA OV R36
Expires in 274 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- findings
-
- CSP allows unsafe inline scripts/styles
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- content-security-policy
upgrade-insecure-requests; default-src https: wss: data: blob: 'unsafe-inline' 'unsafe-eval'; media-src https: data: blob: 'unsafe-inline'; img-src https: data: blob: 'unsafe-inline' android-webview-video-poster: ;- strict-transport-security
max-age=31536000