bplajatico.it

.it crawl

First seen 2026-05-23 · Last seen 2026-05-31 · ok HTTP/1.1 200 1253 ms crawled 2026-05-28

US · 162.159.134.42 · AS13335 Cloudflare, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Banca Popolare di Lajatico
Language
it-IT
Canonical
https://www.bplajatico.it/

Technology

CDN
Cloudflare
CMS
WordPress
jQuery
3.7.1
Cookie consent
  • Cookiebot
Fonts
  • Google Fonts

Third-party hosts loaded (4)

  • consent.cookiebot.com×1
  • fonts.googleapis.com×1
  • www.google.com×1
  • www.gstatic.com×1

Social

Contact

Email
Phone

DNS records live

NS
  • dns.fccrt.it
  • dns2.fccrt.it
MX
  • 1 bplajatico-it.mail.protection.outlook.com
Verified for
  • Brevo
  • Microsoft 365

Email authentication partial

SPF
v=spf1 mx:cedacri.it ip4:217.71.64.0/20 a:relay1p.graffiti.it mx:phoenixspa.it ip4:40.92.0.0/15 ip4:40.107.0.0/16 ip4:52.100.0.0/15 ip4:52.102.0.0/16 ip4:52.103.0.0/17 ip4:104.47.0.0/17 ip4:93.174.64.0/22 ip4:93.174.68.0/23 ip4:93.174.70.0/24 ip4:158.58.140.0/24 ip4:185.34.84.0/24 ip4:93.94.32.0/22 ip4:93.94.37.0/24 ip4:93.94.38.0/24 ip4:46.254.177.0/24 ip4:2.228.53.204/32 include:spf.protection.outlook.com include:_spf.sicurezzapostale.it ~all
softfail (~all)
DMARC
v=DMARC1;p=none;pct=100;rua=mailto:1f0190178c@rua.easydmarc.eu;
policy: none (monitoring only)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAw9YDffaV3ZHa7bS13cr4p4sZFHqB8KzvbTe5ZuO0pu3gp5fl8gvWS7DiwIGxwstNkRsKSdeRAjlDe2…
  • mail: k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed

Certificate (current)

WE1
from 2026-04-15 to 2026-07-14
Expires in 44 days

HTTP security headers

Header hygiene 60/100 Checked live page: https://www.bplajatico.it/

present
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • missing HSTS
  • missing Content Security Policy
Header values
referrer-policy
no-referrer-when-downgrade
x-frame-options
sameorigin
permissions-policy
sync-xhr(), private-state-token-redemption=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com"), private-state-token-issuance=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com")
x-content-type-options
nosniff

Links to (7)

Linked from (4)