bialetti.com

.com crawl

First seen 2026-05-12 · Last seen 2026-05-18 · ok HTTP/1.1 200 2549 ms crawled 2026-05-18

US · 151.101.1.154 · AS54113 Fastly, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Bialetti Official Store
Description
Bialetti: the essence of Italian coffee culture.
Language
en
Canonical
https://www.bialetti.com/ee_en/
Translations
  • de-de
  • en-us
  • es-es
  • fr-fr
  • it-it
  • ja-jp

Technology

CMS
Gatsby
Analytics
  • Google Tag Manager
Fonts
  • Adobe Fonts
  • Google Fonts

Third-party hosts loaded (4)

  • www.googletagmanager.com×2
  • fonts.googleapis.com×1
  • rum.hlx.page×1
  • use.typekit.net×1

Social

Contact

Phone

Registration

Registrar
Register SPA
Created
2000-05-17
Expires
2027-05-17 362 days left
Updated
2026-05-18
Name servers
  • ns1.register.it
  • ns2.register.it

DNS records live

NS
  • ns1.register.it
  • ns2.register.it
MX
  • 10 mail.register.it
TXT
Show 5 TXT records
  • 880nbtcpkjhrv2ue3m796oh81u
  • google-site-verification=T6l9B1wXKbnFRtpoafH1dUC7xesqkSSbrJ9ch-s6EAg
  • klaviyo-site-verification=TUXqzi
  • google-site-verification=5zISRZXhOQFe4HbjH7yG5Ur4l8Qsk8LDjcAh5NH4WkU
  • google-site-verification=0q0F8LmWUwg1WvoHddHxyrwpyozyPHkdFUNWT-Krt_M

Email authentication partial

SPF
v=spf1 include:spf.webapps.net ~all
softfail (~all)
DMARC
v=DMARC1; p=none
policy: none (monitoring only)
DKIM
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA9mbMdrqfXzg1tATie0Hzb6qD0hMFrhuQ/zHWpCdeVJLLkqL5OJNPbfOxO9O/8HH4OL3koBXZXgt3737ggn…
  • s2: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0xshUVf4ukq9jy4xzX9gafio+T0MkyiuQtvGNfxqN1yH9LKO6NOcWHf1Y3DFx0cT3NjE9eUoiu2XzhjQcX…
selectors probed

Certificate (current)

R12
from 2026-05-06 to 2026-08-04
Expires in 77 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.bialetti.com/ee_en?___store=ee_en&___from_store=it_it

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
font-src www.paypalobjects.com fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com *.googleapis.com data: *.fontawesome.com maxcdn.bootstrapcdn.com *.cloudflare.com *.twitter.com *.twimg.com *.trustedshops.com *.google.com *.youtube.com *.development.scalapay.com *.staging.scalapay.com *.integration.scalapay.com *.scalapay.com *.stripe.com *.stripecdn.com klarna.com *.klarna.com *.klarnacdn.net *.klarnaevt.com *.link.com *.amazon.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com *.bialetti.com *.twitter.com *.google.com *.youtube.com maps.googleapis.com 'self' 'unsafe-inline'; frame-ancestors www.gstatic.com *.stripe.com stripe.com *.link.com *.amazon.com 'self'; frame-src fast.amc.demdex.net *.adobe.com geostag.cardinalcomm
strict-transport-security
max-age=31557600

Links to (2)

Linked from (1)