bonfante.com

.com crawl

First seen 2026-05-24 · Last seen 2026-05-29 · ok HTTP/1.1 200 3412 ms crawled 2026-05-29

IT · 93.45.9.40 · AS12874 Fastweb

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Homepage Bonfante
Language
EN

Technology

Server
Microsoft-IIS
jQuery
3.2.1 known XSS (<3.5)
Stack
Java

Third-party hosts loaded (1)

  • unpkg.com×1

Social

Contact

Email
Phone

Registration

Registrar
Tucows Domains Inc.
Created
2003-06-21
Expires
2027-06-21 385 days left
Updated
2025-06-13
Name servers
  • ns1.dnsitalia.net
  • ns2.dnsitalia.net
  • nsct.dnsitalia.net
  • nsrm.dnsitalia.net

DNS records live

NS
  • ns1.dnsitalia.net
  • ns2.dnsitalia.net
  • nsct.dnsitalia.net
  • nsrm.dnsitalia.net
MX
  • 5 bonfante-com.mail.protection.outlook.com
TXT
  • 202512191629305u13w5zt7o20rkbougeqfqqmam3els8vwkf6lq1ht9757gkx8x
Verified for
  • Brevo
  • Microsoft 365

Email authentication partial

SPF
v=spf1 include:spf.protection.outlook.com include:_spfstrict.interhost.it -all
strict (-all)
DMARC
v=DMARC1; p=none; rua=mailto:rua@dmarc.brevo.com
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

RapidSSL TLS RSA CA G1
from 2025-12-19 to 2026-12-20
Expires in 202 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://bonfante.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
no-referrer-when-downgrade
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src *; style-src * 'unsafe-inline'; script-src * 'unsafe-inline' 'unsafe-eval'; img-src * data: 'unsafe-inline'; connect-src * 'unsafe-inline'; child-src *;
strict-transport-security
max-age=31536000; includeSubDomains

Links to (1)

Linked from (2)