bigmat.it

.it crawl

First seen 2026-05-20 · Last seen 2026-05-30 · ok HTTP/1.1 200 2541 ms crawled 2026-05-27

US · 192.124.249.58 · AS30148 Sucuri

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
BigMat | Rivendite edili di materiali in tutta Italia
Description
Tutto il necessario per costruire e ristrutturare, per i professionisti dell'edilizia, in tutta Italia. Colorifici, showroom d'arredobagno, sanitari e finiture
Language
it-IT
Canonical
https://www.bigmat.it/

Open Graph

url
https://www.bigmat.it/
title
BigMat | Rivendite edili di materiali in tutta Italia
locale
it-IT
site name
BigMat
description
Tutto il necessario per costruire e ristrutturare, per i professionisti dell'edilizia, in tutta Italia. Colorifici, showroom d'arredobagno, sanitari e finiture

Technology

Server
Sucuri
Stack
PHP
Analytics
  • Google Tag Manager
Cookie consent
  • Iubenda
Fonts
  • Google Fonts
Third-party hosts loaded (7)
  • cdn.iubenda.com×3
  • fonts.googleapis.com×3
  • cdnjs.cloudflare.com×1
  • fonts.gstatic.com×1
  • www.facebook.com×1
  • www.google.com×1
  • www.googletagmanager.com×1

Social

Contact

Phone

DNS records live

NS
  • ns1.dnsitalia.net
  • ns2.dnsitalia.net
  • nsct.dnsitalia.net
  • nsrm.dnsitalia.net
MX
  • 5 le.bigmat.it
Verified for
  • Google
  • Microsoft 365

Email authentication partial

SPF
v=spf1 include:_spfpermissive.interhost.it a:vu000851.arubabiz.net ~all
softfail (~all)
DMARC
v=DMARC1; p=none; rua=mailto:postmaster@bigmat.it
policy: none (monitoring only)
DKIM
  • k2: v=DKIM1; k=rsa;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoY27YmRzUoX7vX6K/6N8r7QRvsW44GHRSPcpqRlLP8JqMRyY8OK1AzKQJWwBYChG/TgvJgpghbQADjY…
selectors probed

Certificate (current)

Starfield Secure Certificate Authority - G2
from 2026-04-26 to 2026-07-25
Expires in 54 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.bigmat.it/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • weak frame protection
  • weak content type protection
Header values
referrer-policy
strict-origin
x-frame-options
SAMEORIGIN, SAMEORIGIN
permissions-policy
accelerometer=(),autoplay=(),encrypted-media=(),fullscreen=*,geolocation=*,gyroscope=(),interest-cohort=(),magnetometer=(),payment=("https://*.paypal.com" "https://*.stripe.com"),sync-xhr=*,xr-spatial-tracking=()
x-content-type-options
nosniff, nosniff
content-security-policy
upgrade-insecure-requests;, default-src https: data: 'unsafe-inline' 'unsafe-eval'
strict-transport-security
max-age=15768000;includeSubdomains

Links to (7)

Linked from (7)