coccodi.it
HTML metadata
Technology
- Server
- Apache
- CMS
- Drupal
- jQuery
- 1.9.1 known XSS (<3.5)
- Analytics
-
- Google Tag Manager
- Social widgets
-
- Twitter Widget
Third-party hosts loaded (6)
- ajax.googleapis.com×3
- apis.google.com×1
- platform.twitter.com×1
- tinyurl.com×1
- www.facebook.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1.register.it
- ns2.register.it
- MX
-
- 10 libraesva02.niscent.com
- 20 mail2.niscent.net
Email authentication partial
- SPF
-
v=spf1 mx a a:mail.nuovacoccodi.it a:ap.niscent.net a:authsmtp.nuovacoccodi.it ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:info@coccodi.it; ruf=mailto:info@coccodi.it; sp=none; ri=86400policy: none (monitoring only) · sp=none - DKIM
-
- dkim:
v=DKIM1;k=rsa;t=s;s=email;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtl8WzadWzedCxk/2YnOIj3k1KqA0hISj4HEr4byibopFH1LEFVoHiDk37/2gZzbB37qc…
selectors probed - dkim:
Certificate (current)
R13
Expires in 47 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- short HSTS max-age
- weak content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
sameorigin- x-content-type-options
nosniff, nosniff- content-security-policy
frame-ancestors 'self'; autoplay 'true'- strict-transport-security
max-age=3600