biomat-shop.it

.it crawl

First seen 2026-05-14 · Last seen 2026-05-19 · ok HTTP/1.1 200 11282 ms crawled 2026-05-19

AT · 193.58.164.132 · AS202516 web-crossing GmbH

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
BIOMAT®-Shop - per consumatori attenti all'ambiente
Description
Nel nostro negozio online troverete prodotti sostenibili e compostabili che vi aiuteranno nei vostri sforzi di sostenibilità.
Language
it
Translations
  • en-be
  • en-it
  • en-nl
  • fi
  • fr-be
  • it-it
  • nl-be
  • nl-nl

Technology

Server
Apache
CMS
Gatsby
Analytics
  • Google Tag Manager
Cookie consent
  • Usercentrics
Third-party hosts loaded (9)
  • www.biomat-shop.com×7
  • privacy-proxy.usercentrics.eu×3
  • www.biomat-shop.be×3
  • www.googletagmanager.com×3
  • www.biomat-shop.nl×2
  • app.usercentrics.eu×1
  • integrations.etrusted.com×1
  • widgets.trustedshops.com×1
  • www.biomat-shop.fi×1

Social

Contact

Email
Phone

DNS records live

NS
  • dns1.inter.at
  • dns2.epag.net
  • dns3.inter.at
TXT
  • brevo-code:18b1039a83e7b45cb36fc3230489e1fe
  • google-site-verification=_a8_BdB7QCYg7V4Eb9Xe4RJ7ylNyT7crbkd2FFH5Hww

Email authentication no MX

SPF
not published
DMARC
v=DMARC1; p=none; rua=mailto:rua@dmarc.brevo.com
policy: none (monitoring only)
DKIM
  • mail: k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed

Certificate (current)

RapidSSL TLS RSA CA G1
from 2026-01-11 to 2027-01-11
Expires in 236 days

HTTP security headers

Header hygiene 45/100 Checked live page: https://www.biomat-shop.it/it/

present
  • content-security-policy-report-only
  • x-frame-options
  • x-content-type-options
findings
  • missing HSTS
  • missing Content Security Policy
  • weak frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN, SAMEORIGIN
x-content-type-options
nosniff
content-security-policy-report-only
font-src https://*.gstatic.com *.gstatic.com *.fontawesome.com https://widgets.trustedshops.com fonts.googleapis.com fonts.gstatic.com *.website-files.com data: 'self' 'unsafe-inline'; form-action pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.adyen.com pay.google.com payments-eu.amazon.com *.amazon.de *.cardinalcommerce.com *.paypal.com 3ds-secure.cardcomplete.com www.clicksafe.lloydstsb.com pay.activa-card.com *.wirecard.com acs.sia.eu *.touchtechpayments.com www.securesuite.co.uk rsa3dsauth.com *.monzo.com *.arcot.com *.wlp-acs.com * 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com player.vimeo.com https://www.google.com/recaptcha/ *.adyen.com pay.google.com *.paypal.com *.google.com *.google.com.ua *.google.co.uk *.google.nl *.google.be *.google.de td.doubleclick.net www.googletagmanager.com www.google.com/recaptcha/ www.paypal

Links to (8)

Linked from (4)