group-itm.com
HTML metadata
Technology
- Server
- nginx
- CMS
- Joomla
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (3)
- ca.turing.captcha.qcloud.com×1
- consent.cookiebot.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- COREhub, S.R.L.
- Created
- 2006-02-07
- Expires
- 2027-02-07 251 days left
- Updated
- 2026-02-08
- Name servers
-
- dnsfc1.interbusiness.it
- dnsfc2.interbusiness.it
DNS records live
- NS
-
- dnsfc1.interbusiness.it
- dnsfc2.interbusiness.it
- MX
-
- 5 mailsecurity2.meadinformatica.it
- 5 mailsecurity3.meadinformatica.it
- TXT
-
Show 4 TXT records
sending_domain1050062=e2e95abeeb0888300213c234bef5ad9b6dbb6d53244d87ce81219e8f5ba9fa74pardot1050062=993d35e31a8bd35224c0a862055a1533115eb02717895e87553a677118e7f79eqGLuUL3XMSijOEo4g8Lh57L53tHMigexgS7oaPFyBuJmpFWV8csrvtCmMsXV22P1+PSTu7Us5KK4lvwD/V4c7A==MS=8E84B042BDDD56D1864ED900871C115A37AAACDF
- Verified for
-
- Cisco
- Microsoft 365
Email authentication weak
- SPF
-
v=spf1 mx ip4:148.251.242.132 ip4:54.38.143.227 ip4:58.96.117.47 ip4:3.121.133.200 ip4:51.38.153.16 ip4:54.38.199.252 ip4:213.209.219.118 include:spf.meadinformatica.it include:spf.protection.outlook.com include:spf-de.emailsignatures365.com include:_spf.salesforce.com -allstrict (-all) - DMARC
- not published
- DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwebJnLM1TCyuro6CiXkPotlETbrSfcfJuUPoVcR9tt5q7vKSJLygBdl55QkBWoSARnPWU+fHG+RsqBRxt0… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwWvqmAWqLqKjx3eFZm2JL17bnqyOUQJqV9rDUwXsbUecnMLJOu8h1ru05aBX6oCsvRxoLzj3iPeGiSgBFG…
selectors probed - s1:
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 132 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.googletagmanager.com https://consent.cookiebot.com https://consentcdn.cookiebot.com https://ca.turing.captcha.qcloud.com https://global.turing.captcha.gtimg.com https://content.group-itm.com https://distributions.crowdin.net https://js.api.here.com https://pi.pardot.com; style-src 'self' 'unsafe-inline' https://global.turing.captcha.gtimg.com https://js.api.here.com; img-src 'self' https: data: blob:; font-src 'self' data:; connect-src 'self' https://www.googletagmanager.com https://region1.analytics.google.com https://stats.g.doubleclick.net https://consent.cookiebot.com https://consentcdn.cookiebot.com https://ca.turing.captcha.qcloud.com https://global.turing.captcha.gtimg.com https://www.turingfraud.net https://pi.pardot.com https://content.group-itm.com https://distributions.crowdin.net https://js.api.here.com https://vector.hereapi.com; frame-src 'self' https://consent.cookiebot.com https://consentcdn- strict-transport-security
max-age=31536000; includeSubDomains