bellaitalia.co.uk
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Nuxt
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (5)
- images.ctfassets.net×12
- cdnjs.cloudflare.com×1
- netapi.bigtablegroup.com×1
- videos.ctfassets.net×1
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- nadia.ns.cloudflare.com
- sam.ns.cloudflare.com
- MX
-
- 10 bellaitalia-co-uk.mail.protection.outlook.com
- TXT
-
Show 6 TXT records
0ed1fe018aaebfa2229bf849a1affe733ts885a0pttkp5abcurulttk0kd7po367nrgkolbjs0qck1ns39qdmZ+IwkdD6zQTxMcWOMErxbGCPMkBJSXbeZ+R7JKoeXC1+UVT7K5GkfloO8IPXvw0HUNPRaDxFphw2dDBdLbQg==k=rsa; t=y; p=MHwwDQYJKoZIhvcNAQEBBQADawAwaAJhAMA/GdadTSlGHJn6JW2x5aM3UpOC0/ywsrrWQrDymGylS4aC4Z6Oi+LyyLjPkEeR+dehylszkdM8MqQCbtsmV/+rKtX4M1YizCFYG9pkbz7lnZh14xi1whDbf3l3uy5GVQIDAQABmadaslbupdiish3va1cml8timm
- Verified for
-
- Meta
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:_spf.eu.mailgun.org ip4:74.121.49.231 include:shops.shopify.com include:mailer.shopifyemail.com include:txdltd.co.uk -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc_agg@vali.email;policy: reject (enforced) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAz/fdB/bvtJTdmBFUimLJdIJDT1hnzOzp5EECG+ZnZOw8VLAqPRBZrizlVYmInfibG9nbK8Qqi0YVf7Ak/y… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDiMxTT5IP0uF3pHGi3Mx/DZ+6jWVD+0aW7h0GAPW5YYVNijerf27KrPb6Lmr2iRSxS2vY7USNwVW3kGNVw+CBfgr…
selectors probed - s1:
Certificate (current)
E7
Expires in 62 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
camera=(), microphone=(self "https://web.lovebite.app"), geolocation=(self)- x-content-type-options
nosniff- content-security-policy
style-src 'self' 'unsafe-inline' *.googleapis.com *.google-analytics.com *.gstatic.com *.tenkites.com tkmenus.com atlas.microsoft.com *.cdn-cookieyes.com *.liveres.co.uk *.braintreegateway.com *.sevenrooms.com *.googleads cdn.co-buying.com https://cdnjs.cloudflare.com/ajax/libs/intl-tel-input/17.0.13/css/intlTelInput.css https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.5.1/css/all.min.css *.instagram.com; font-src 'self' data: *.googleapis.com *.google-analytics.com *.gstatic.com *.tenkites.com tkmenus.com atlas.microsoft.com *.liveres.co.uk *.braintreegateway.com *.googleads cdn.co-buying.com *.instagram.com https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.5.1/webfonts/fa-v4compatibility.ttf https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.5.1/webfonts/fa-v4compatibility.woff2 https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.5.1/webfonts/fa-regular-400.ttf https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.5.1/webfonts/fa-brands-400.woff2 https://cdnjs.cloudflar- strict-transport-security
max-age=31536000; preload