bernardisrl.com
HTML metadata
Technology
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (9)
- f.machineryhost.com×11
- cdn.widgetwhats.com×1
- cdnjs.cloudflare.com×1
- i.machineryhost.com×1
- i.system.machinio.com×1
- kit.fontawesome.com×1
- s3.amazonaws.com×1
- www.facebook.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
- Address
- Via Volpiano, 13, 10034 Chivasso TO, Italy
Registration
- Registrar
- Amazon Registrar, Inc.
- Created
- 2003-06-11
- Expires
- 2027-06-11 375 days left
- Updated
- 2026-05-16
- Name servers
-
- ns-1060.awsdns-04.org
- ns-1772.awsdns-29.co.uk
- ns-358.awsdns-44.com
- ns-909.awsdns-49.net
DNS records live
- NS
-
- ns-1060.awsdns-04.org
- ns-1772.awsdns-29.co.uk
- ns-358.awsdns-44.com
- ns-909.awsdns-49.net
- MX
-
- 0 bernardisrl-com.mail.protection.outlook.com
- Verified for
-
- Microsoft 365
Email authentication weak
- SPF
-
v=spf1 include:spf.protection.outlook.com include:amazonses.com -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R12
Expires in 32 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src * 'unsafe-inline' 'unsafe-eval' data: blob:; report-uri /csp_report- strict-transport-security
max-age=315360000; includeSubDomains; preload