chervo.com
HTML metadata
Technology
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- rum.hlx.page×1
- static.klaviyo.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
- Address
- Via Max valier, 22, 39040, Castelrotto, BZ, Italia
Registration
- Registrar
- Register SPA
- Created
- 1996-10-11
- Expires
- 2026-10-10 131 days left
- Updated
- 2025-10-11
- Name servers
-
- ns1.register.it
- ns2.register.it
DNS records live
- NS
-
- ns1.register.it
- ns2.register.it
- MX
-
- 10 chervo-com.mail.protection.outlook.com
- TXT
-
klaviyo-site-verification=Wa5TJx
- Verified for
-
- GlobalSign
- Meta
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 ip4:37.186.133.66 include:spf.protection.outlook.com include:mail.zendesk.com -allstrict (-all) - DMARC
-
v=DMARC1;p=none;rua=mailto:edp@chervo.compolicy: none (monitoring only) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsJkz/Y7WMr2rRH923hSWGhARvDn6yLQMUYg2x+bdFFEhFUIOFvESQKS0QyFY9IlBEkiV7eVNp97xIGT9CC… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC6HyYd6yhHq92eJv+1ONHcbWv8fdP45OLVsbCyH4xQ3JzFgcVsLc8v3ACaFwKeC07J1ErY4K8Xbp4cx8f/BhwTtD…
selectors probed - s1:
Certificate (current)
R12
Expires in 30 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- findings
-
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
upgrade-insecure-requests;- strict-transport-security
max-age=31536000- content-security-policy-report-only
font-src *.googleapis.com *.gstatic.com 'self' data: *.doubleclick.net *.facebook.com *.googlesyndication.com *.tiktok.com *.iubenda.com *.criteo.com *.klaviyo.com applepay.cdn-apple.com *.klarnacdn.net maxcdn.bootstrapcdn.com *.thron.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.facebook.com *.googlesyndication.com *.tiktok.com int-ecommerce.nexi.it coll-ecommerce.nexi.it ecommerce.nexi.it 'self' 'unsafe-inline'; frame-ancestors https://api.clerk.io https://cdn.clerk.io 'self'; frame-src geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com www.paypal.com www