benellidefense.com
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- fonts.googleapis.com×2
- cdn-cookieyes.com×1
- fonts.gstatic.com×1
- www.googletagmanager.com×1
Contact
- Phone
Registration
- Registrar
- Ascio Technologies, Inc. Danmark - Filial af Ascio technologies, Inc. USA
- Created
- 2024-10-10
- Expires
- 2026-10-10 142 days left
- Updated
- 2025-10-11
- Name servers
-
- ns1-04.azure-dns.com
- ns2-04.azure-dns.net
- ns3-04.azure-dns.org
- ns4-04.azure-dns.info
DNS records live
- NS
-
- ns1-04.azure-dns.com
- ns2-04.azure-dns.net
- ns3-04.azure-dns.org
- ns4-04.azure-dns.info
- MX
-
- 5 as.benelli.it
- Verified for
-
Email authentication weak
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R12
Expires in 45 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
default-src 'self' ; connect-src 'self' log.cookieyes.com *.cdn-cookieyes.com cdn-cookieyes.com *.iubenda.com *.google-analytics.com *.googleapis.com *.hotjar.com *.hotjar.io; script-src 'self' 'unsafe-inline' 'unsafe-eval' cdn-cookieyes.com *.cdn-cookieyes.com *.vimeo.com *.doubleclick.net *.googleadservices.com *.hotjar.com *.hotjar.io *.gravatar.com *.google.com *.googleapis.com *.googletagmanager.com *.gstatic.com *.iubenda.com *.fontawesome.com *.google-analytics.com *.jquery.com *.bootstrapcdn.com; object-src 'self'; style-src 'self' 'unsafe-inline' *.iubenda.com *.gravatar.com *.googleapis.com *.jquery.com *.fontawesome.com *.bootstrapcdn.com; img-src 'self' data: ws: cdn-cookieyes.com placehold.co *.placehold.it *.hotjar.com *.google.it *.google.com *.doubleclick.net *.gravatar.com *.w.org *.youtube.com *.gravatar.com *.gstatic.com *.google-analytics.com *.googletagmanager.com *.googleapis.com *.jquery.com *.iubenda.c- strict-transport-security
max-age=31536000; includeSubDomains