dentaltrey.it
HTML metadata
Technology
- CMS
- WordPress
- Stack
- PHP
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (5)
- app.usercentrics.eu×3
- privacy-proxy.usercentrics.eu×3
- www.googletagmanager.com×2
- api.usercentrics.eu×1
- js.hs-scripts.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1.v004od-vm.sphostserver.com
- ns2.v004od-vm.sphostserver.com
- MX
-
- 10 mxa-001d3a01.gslb.pphosted.com
- 10 mxb-001d3a01.gslb.pphosted.com
- TXT
-
qs8ase14aschqoji8lapteqetb4a365b90aa384757b2b2cd1f268f2c84MS=85BD412DBFB7A0D2F9756D2ABF2062008F0A313C
- Verified for
-
- GlobalSign
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 mx ip4:52.166.59.178 include:spf.protection.outlook.com include:_spf.google.com include:spf-001d3a01.pphosted.com include:amazonses.com include:8880391.spf01.hubspotemail.net include:_spf.general.transactional-mail-a.com ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=none;policy: none (monitoring only) - DKIM
-
- k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed - k1:
Certificate (current)
R12
Expires in 39 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- missing Content Security Policy
- weak frame protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
CROSS-ORIGIN- x-content-type-options
nosniff- strict-transport-security
max-age=31557600- content-security-policy-report-only
font-src www.paypalobjects.com fonts.gstatic.com use.typekit.net *.googleapis.com *.gstatic.com data: *.fontawesome.com https://fonts.bunny.net *.alothemes.com *.magepow.com 'self' data: data: 'self' 'unsafe-inline'; form-action pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com 'self' 'unsafe-inline'; frame-ancestors www.gstatic.com 'self'; frame-src fast.amc.demdex.net *.adobe.com bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com www.paypalobjects.com player.vimeo.com https://www.google.com/recaptcha/ www.google.com *.weltpixel.com 'self' 'unsafe-inline'; img-src data: assets.adobedtm.com amcglobal.sc.omtrdc.net dpm.demdex.net cm.everesttech.net *.adobe.com widgets.magentocommerce.com www.googleadservices.com *.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net *.analytics.google.com www.googletagmanager.com t.paypal.com www.paypal.com www.paypalobjects.com f