ca-vita.it
HTML metadata
Technology
- CDN
- Amazon CloudFront
- CMS
- Next.js
- JS framework
- Next.js
- Fonts
-
- Google Fonts
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (3)
- cdn.ablyft.com×1
- fonts.googleapis.com×1
- www.youtube.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- a1-241.akam.net
- a18-64.akam.net
- a28-65.akam.net
- a5-66.akam.net
- chenar.credit-agricole.fr
- ramses.credit-agricole.fr
- MX
-
- 10 mail.cagroupsolutions.it
- 20 cavita-it0e.mail.protection.outlook.com
- TXT
-
6ck0f2inphs8bco9csqpggmsaMS=6FEB2C58F66EFFD8F68D732AAA2280D71BCFE372
- Verified for
-
- Dynatrace
- GlobalSign
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 ip4:91.240.166.113 ip4:213.215.199.244 ip4:193.41.85.0/24 include:musvc.com include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com,mailto:rua@dmarc.ca-gip.fr; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.compolicy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCB5nREaGrcj8hF2DdTTm2VQsv2QaTQcgA3/XVnXAzr0igl2ciApuu0fy7bu+ieAFIVIKfGE3qrpFiHPJGcdN… - selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxSgjKLE44FziiykoPWdmZXIVqJMCIONi/dMcTrXBUsGdQ1K3PPzCvE622aMzdLRwx3KbkKe3qqVSTL… - mail:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDWTtKCtq3rSHXiiGgk/1EE/k9MSdIpKMUT2SGnjU/O/kmX/u4mM/WPQV9jLj0c7wJRnQWKv78IWhQShZQ1AW…
selectors probed - google:
Certificate (current)
R13
Expires in 71 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.ca-vita.it; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.cookiebot.com *.acsbapp.com *.sentry.io *.webranking.biz *.newrelic.com *.nr-data.net *.google.com *.gstatic.com *.g.doubleclick.net *.googletagmanager.com *.google-analytics.com *.ablyft.com *.ca-vita.it; style-src 'self' 'unsafe-inline' *.google.com *.googletagmanager.com *.googleapis.com *.ablyft.com *.ca-vita.it; font-src 'self' *.gstatic.com *.ca-vita.it; img-src 'self' *.gstatic.com *.googletagmanager.com *.cookiebot.com *.google.com *.google.it *.google-analytics.com *.g.doubleclick.net *.ablyft.com data: *.ca-vita.it; frame-src 'self' *.google.com *.googletagmanager.com *.youtube.com *.cookiebot.com *.kuula.co *.ca-vita.it; connect-src 'self' *.sentry.io *.nr-data.net *.cookiebot.com *.google.com *.google-analytics.com *.google.it *.googleadservices.com *.g.doubleclick.net *.acsbapp.com *.ablyft.com *.ca-vita.it;- strict-transport-security
max-age=63072000; includeSubDomains; preload