hostinato.it
HTML metadata
Technology
- CDN
- Cloudflare
- jQuery
- 1.11.2 known XSS (<3.5)
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (4)
- cdnjs.cloudflare.com×5
- cdn.jsdelivr.net×3
- www.googletagmanager.com×2
- js.hubspot.com×1
Social
Contact
- Phone
- Address
- Via XX Settembre, 30, 20025, Legnano, MI, IT
DNS records live
- NS
-
- dns1.regdom.it
- dns2.regdom.it
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
nordpass-domain-verification=8b9a7de2db43fa42a4d3da2e8d128d9a16a9ff7f197737972bcb86102a7f5147
- Verified for
-
- Brevo
Email authentication partial
- SPF
-
v=spf1 +a include:5120942.spf05.hubspotemail.net include:_spf.google.com include:spf.sendinblue.com +mx ip4:46.254.34.160 ip4:46.254.34.141 ip4:46.254.34.24 ip4:46.28.4.94 ip4:185.81.4.45 ip4:77.39.211.68 ip4:77.39.209.110 ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:rua@dmarc.brevo.compolicy: none (monitoring only) - DKIM
-
Show 4 DKIM selectors
- default:
v=DKIM1; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCwxsqGitimg8cRwiQDMbTIoSh4azgp7b1oDhjftObNuFZOg002uYEB7k/m3BE+eO6wUvQ4yS3vob0p2vlEO8P3vzqac… - google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAlN3zaK1G5poWNIWW8bNGBDYDEIfl1J59hOvnCahr3XmtVtadlTWE3RzRKH8UFvuHtvap+PpdYn1Q9j… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - default:
Certificate (current)
RapidSSL TLS RSA CA G1
Expires in 114 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- referrer-policy
- findings
-
- short HSTS max-age
- missing content type protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- content-security-policy
upgrade-insecure-requests- strict-transport-security
max-age=3628800; includeSubDomains; preload