ecosagile.com

.com crawl

First seen 2026-05-05 · Last seen 2026-05-18 · ok HTTP/1.1 200 1586 ms crawled 2026-05-12

IT · 212.239.21.252 · AS3313 BT Italia S.p.A.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Software Gestione Risorse Umane HR | EcosAgile
Description
Software Gestione Risorse Umane HR in Cloud, disponibile Freemium per PMI. Soluzione SaaS completa di App, per la gestione del personale e dei progetti.
Language
en
Translations
  • en
  • es
  • fr
  • it

Technology

Cookie consent
  • Iubenda
Social widgets
  • YouTube Embed

Third-party hosts loaded (3)

  • cdn.iubenda.com×2
  • rum-static.pingdom.net×1
  • www.youtube.com×1

Social

Contact

Email
Phone

Registration

Registrar
Tucows Domains Inc.
Created
2008-11-06
Expires
2026-11-06 171 days left
Updated
2024-10-30
Name servers
  • dns.technorail.com
  • dns2.technorail.com
  • dns3.arubadns.net
  • dns4.arubadns.cz

DNS records live

NS
  • dns.technorail.com
  • dns2.technorail.com
  • dns3.arubadns.net
  • dns4.arubadns.cz
MX
  • 10 mx.ecosagile.com
TXT
Show 11 TXT records
  • google-site-verification=H8LkNLsDmdfkrZs1cEm7-_TjiKEB1mNB4hKFzs1e7Aw
  • MS=4E5EC191A8D9683F3C370C037D43A795DABEC222
  • 8k4djs5u487l5g51bdgohnohoj
  • inskv5gctal36kivkufh8a2gg3
  • 6hhg0impm5kbfavpdfvf2agfee
  • google-site-verification=oKBYS-W_sV9Q366HGDsGa--tyETkuFN8c70PIHEvrQI
  • google-site-verification=y2wiDiyS0BQ2NvZWCXDBuFXLll5tZ6ouabNFL96rP_w
  • scqlbuabjtknkthga0nfuqlv8n
  • f3bnrjvgf8v1139cg1rmo8183f
  • s8mckpbpgdshi82lc9jmvrc4ie
  • 1s57gro9t99dd45rfo5mbc6ueu

Email authentication partial

SPF
v=spf1 include:_spf.aruba.it ~all
softfail (~all)
DMARC
v=DMARC1; p=none; adkim=r; aspf=r;
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

Go Daddy Secure Certificate Authority - G2
from 2026-02-25 to 2027-03-29
Expires in 315 days

HTTP security headers

Header hygiene 75/100 Checked live page: https://ecosagile.com/ITA/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-content-type-options
nosniff
content-security-policy
default-src 'self'; img-src 'self' *.paypalobjects.com data: i.ytimg.com *.google.it www.googletagmanager.com; script-src 'self' www.googletagmanager.com *.google.com *.gstatic.com *.stripe.com *.paypal.com cdn.iubenda.com cs.iubenda.com *.godaddy.com rum-static.pingdom.net 'unsafe-inline' 'unsafe-eval'; style-src 'self' fonts.googleapis.com 'unsafe-inline'; font-src 'self' https://fonts.gstatic.com; frame-src 'self' *.ecosagile.com www.youtube.com *.google.com *.stripe.com *.paypal.com; connect-src 'self' cdn.iubenda.com idb.iubenda.com *.google.com *.google-analytics.com *.paypal.com *.doubleclick.net *.pingdom.net; frame-ancestors 'self' www.youtube.com;
strict-transport-security
max-age=31536000; includeSubDomains;

Links to (50)

Linked from (4)