evergreenlife.it

.it crawl

First seen 2026-06-03 · Last seen 2026-06-04 · ok HTTP/1.1 200 661 ms crawled 2026-06-04

DE · 143.42.56.241 · AS63949 Akamai Connected Cloud

Reputation 89/100 weak security headers dmarc monitor-only

Classifying

HTML metadata

Title
Evergreen Life Products
Language
en

Technology

Server
Apache
CMS
Gatsby
Stack
PHP
Analytics
  • Google Tag Manager
Cookie consent
  • Iubenda
Fonts
  • Adobe Fonts
  • Google Fonts
Social widgets
  • YouTube Embed

Third-party hosts loaded (6)

  • cdn.iubenda.com×4
  • fonts.googleapis.com×1
  • pro.fontawesome.com×1
  • use.typekit.net×1
  • www.googletagmanager.com×1
  • www.youtube.com×1

Social

DNS records live

NS
  • ns-1104.awsdns-10.org
  • ns-1632.awsdns-12.co.uk
  • ns-318.awsdns-39.com
  • ns-765.awsdns-31.net
MX
  • 0 evergreenlife-it.mail.protection.outlook.com
Verified for
  • Brevo
  • Google
  • Microsoft 365

Email authentication partial

SPF
v=spf1 include:spf.protection.outlook.com a:life.evergreenlife.it include:spf.brevo.com include:spf-de.emailsignatures365.com mx ~all
softfail (~all)
DMARC
v=DMARC1; p=none; rua=mailto:rua@dmarc.brevo.com
policy: none (monitoring only)
DKIM
Show 4 DKIM selectors
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
  • mail: k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAp7ft9JO0Y3DM7J/pGduX6/OcqHFjV1ojA9w6kGRDj0qYoyIQvMGRGe51NC6w3UpZGzYzmGXNYS6GaPjpDv…
  • s2: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAw1FvaXsfeqzwU+/rUz9U4DjNq2n/BFV8tz5H9IhbUIaKq/imVaQhrW08SOhWO7X27MmWkGVQrcfp2gvLkl…
selectors probed

Certificate (current)

R12
from 2026-05-16 to 2026-08-14
Expires in 70 days

HTTP security headers

Header hygiene 45/100 Checked live page: https://www.evergreenlife.it/eu_en/

present
  • content-security-policy-report-only
  • x-frame-options
  • x-content-type-options
findings
  • missing HSTS
  • missing Content Security Policy
  • weak frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN, SAMEORIGIN
x-content-type-options
nosniff
content-security-policy-report-only
font-src use.typekit.net fonts.gstatic.com *.fontawesome.com https://fonts.bunny.net *.alothemes.com *.magepow.com *.stripe.com *.stripecdn.com klarna.com *.klarna.com *.klarnacdn.net *.klarnaevt.com *.link.com *.amazon.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.cardinalcommerce.com *.paypal.com 3ds-secure.cardcomplete.com www.clicksafe.lloydstsb.com pay.activa-card.com *.wirecard.com acs.sia.eu *.touchtechpayments.com www.securesuite.co.uk rsa3dsauth.com *.monzo.com *.arcot.com *.wlp-acs.com * 'self' 'unsafe-inline'; frame-ancestors *.stripe.com stripe.com *.link.com *.amazon.com 'self'; frame-src fast.amc.demdex.net *.adobe.com *.youtube.com *.youtube-nocookie.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalco

Links to (3)

Linked from (1)