conad.it
HTML metadata
Technology
Third-party hosts loaded (2)
- assets.adobedtm.com×1
- www.google.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1-06.azure-dns.com
- ns2-06.azure-dns.net
- ns3-06.azure-dns.org
- ns4-06.azure-dns.info
- MX
-
- 50 conad-it.mail.protection.outlook.com
- TXT
-
Show 16 TXT records
adobe-idp-site-verification=3056694b5c5bcecdcf69c9c0cd792e03e0cd65bf5d9e728ae3ae8a2fc9aad31dgn1c04wkn4syk22sm878bm8dbd838pztf46p4zc1fcjqh7lvtlfjnnlzzkb3smtrjzcn2k685hp3ls2n288n1zplb76hxqv757w9x3z17p81zxnr2x3lrztv6fgbrscyh4k9cbf8dyfqpgjnc26mr8k7wvy033mlnyy74qn9sxzrzk6f2ykpg356hrdqh92cf67pyv0pzxsx564lx7cdz3tmc7msv8s4nt1j1dqbc6s3ytjpn0grbntdwqgp9gyxcnfcz3flh3q1lg35ftn6c4y2874sjb2catlassian-domain-verification=cw2MHkY65pos8YFRzaYxh7QfLisZPPhHbDDq0l2GEcYftNq6DRRCiaD1m5QKcBa06vvmg39fkssx3gt051bbwvmwcng226nfyscz16909202xflx1605jr268pwdwlpfqmw63tcz458ml9xsb8j94qj4601mltjd_cjskp3c3ruk7n4ia4cp3v6y93viyvsf_b6cxfuxp3f1gm5y60sz4r4l9s6dqqup
Email authentication strong
- SPF
-
v=spf1 ip4:149.72.45.82 include:di-spf.ditechonline.it ip4:54.229.2.165 ip4:52.30.130.201 ip4:52.17.45.98 ip4:52.16.190.81 ip4:151.11.251.100 ip4:88.48.254.227 include:spf-prod.serijakala.it include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:jxy5nq2i@ag.eu.dmarcadvisor.com; ruf=mailto:jxy5nq2i@fr.eu.dmarcadvisor.compolicy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1a+QlIDeIFDxWX8XzyOlpDTMELToLmZp0jxOONaaM3gPTKqKhKk+yvoYvszeyOI1HUApWkU7jqe2cn… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArPW7KEbF7rpvaOysFmQO5XYWcqLhcYG1mZbm9xTH8j2xj0Awbdk5BS31vcRGSNFnVP9OswDyfwr5tn… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxKcZl6Gj+Qol1OUVZMbxr1G9nWZWVPzVBxV8HFld/RaNDX3Q/0FOz8dLu1nDXbRIz89vi3etuvKOEFyDww… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCdmG/z3RGCz3zQjAB9B4YbIAMKlSsxoxpyEn6ZbIVl2Yl4ZJYSA3dCcdMKTH+beuUJ0hQymwvI0C4/pVPWN1DpQB…
selectors probed - selector1:
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 187 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' data: blob: 'unsafe-inline' 'unsafe-eval' https: http://static.hotjar.com https://static.hotjar.com https://script.hotjar.com; object-src 'self' https:; style-src 'self' data: 'unsafe-inline' https:; img-src 'self' data: blob: https: https://script.hotjar.com http://script.hotjar.com; media-src 'self' data: blob: mediastream: https:; frame-ancestors 'self' *.conad.it *.nscdev.it *.nsctst.it *.nscpre.it *.nscbeta.it *.nscstg.it; frame-src 'self' data: https: https://vars.hotjar.com; font-src 'self' data: https: http://script.hotjar.com https://script.hotjar.com; connect-src 'self' data: https: http://*.hotjar.com:* https://*.hotjar.com:* https://vc.hotjar.io:* https://surveystats.hotjar.io wss://*.hotjar.com- strict-transport-security
max-age=31557600
Links to (7)
- apple.com×1
- chubb.com×1
- facebook.com×1
- instagram.com×1
- saporie.com×1
- whistlelink.com×1
- youtube.com×1