dolorelax.it
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- Apache
- jQuery
- 3.4.1 known XSS (<3.5)
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (4)
- cdnjs.cloudflare.com×2
- it-gmtdmp.mookie1.com×1
- www.facebook.com×1
- www.googletagmanager.com×1
DNS records live
- NS
-
- ns1.register.it
- ns2.register.it
- MX
-
- 10 dolorelax-it.mail.protection.outlook.com
- TXT
-
pX4b6tLyBmP5MyV7Bf1BEI8OsEVed8cJ6B6l/MH9G9D0EC3QXGPJQzWxwkyX/P/LadF6bYaTJyUOZSCTODGwIQ==171785adc2f542fc9e66ff7945b58a35
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 include:coswell.biz -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:AlertCyberSecurity@dolorelax.it; ruf=mailto:AlertCyberSecurity@dolorelax.it; fo=1;aspf=r;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApVRqCG/Z9icjzKRAzW9E1hnE67/gwBhCzEptKWD7qTJ3+0bgdgaMAe4Y79Z21f+cP8XtMNR9hHUXQg…
selectors probed - selector1:
Certificate (current)
R12
Expires in 39 days
HTTP security headers
- present
-
- strict-transport-security
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- short HSTS max-age
- missing Content Security Policy
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- strict-transport-security
max-age=3600; includeSubdomains;