ibs.it
HTML metadata
Technology
- CMS
- Ghost
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
- Fonts
-
- Google Fonts
Third-party hosts loaded (7)
- appleid.cdn-apple.com×1
- cdn.cookielaw.org×1
- fonts.googleapis.com×1
- fonts.gstatic.com×1
- media.algorecs.com×1
- www.googletagmanager.com×1
- www.googletagservices.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns-1362.awsdns-42.org
- ns-1875.awsdns-42.co.uk
- ns-439.awsdns-54.com
- ns-627.awsdns-14.net
- MX
-
- 0 ibs-it.mail.protection.outlook.com
- TXT
-
Show 7 TXT records
globalsign-domain-verification=X9PH8l2GzsXUU7f2HlbgpiXU7Sm093E1yHPZmGBAMEgoogle-site-verification=LHHmxsgsfiCpxNfHUaNpF-8H7hJwHgyCuyFlrehOrYMgoogle-site-verification=kO-f_FmvDgXe1N1quSr50kaU5iB-bg2SVgXyGUQTIAMgoogle-site-verification=pLhhJXOIj0AVt0rqLNJqjVBeq8NUNNNFQ0btI-sakvEmailru-verification: 469bbeb00e911c23MS=ms39990668ZOOM_verify_ZQOCOqyRT7uINnifnRay7w
Email authentication partial
- SPF
-
v=spf1 ip4:193.27.202.0/23 ip4:10.8.0.48 ip4:34.242.184.246 ip4:137.117.173.151 include:miraklmx.azure.ibs.it include:t.contactlab.it include:spf.protection.outlook.com include:_spf.salesforce.com include:spf.mirakl.net include:em2585.ibs.it mx ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzUaSDKBMqT+4Aup9FekGYA38Lsq884s8txmNiT5UMyBPFj8BxFY3KElaYtsgdNa3OjdY/z96ldjEFJ… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwpwRUsDw63mdX8lgz5kwmBFOJkttuME4p9pW+vKx83rJlRXP0stCxSWANmGS1ba2j8dhDTlPPzYXH8qLv8… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC8dzbWxNDPo7XxxhuOOZaIeFRFg9iKo+oeO/gf0CFOHxzVc9LxFflhBFtrfuV59lrJ6OxqXjuHKBR8uIzHwBbaiz…
selectors probed - selector1:
Certificate (current)
R13
Expires in 34 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN, DENY- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.ibs.it 'unsafe-inline' 'unsafe-eval' *.visualstudio.com *.awin1.com yourcitynolimits.com edgeshoppingstatic.azureedge.net appleid.cdn-apple.com *.lafeltrinelli.it maxcdn.bootstrapcdn.com mozbar.moz.com *.calicluo.com *.stoploco.com *.colloquiumz.com eu.klarnaevt.com api.clean-blocker.com js.klarna.com *.jsdelivr.net *.bing.com api.blocksly.org a.twiago.com *.thebrighttag.com jadserve.postrelease.com jwpltx.com trends.revcontent.com fibs-prd-apim-gw.life-cloud.net europe.directline.botframework.com europe.directline.botframework.com *.lacedefe.com s.ad.smaato.net *.zunelrish.com *.demdex.net s.kelkoogroup.net *.go-mpulse.net http://p2c.xplace.de code.jquery.com sync.aralego.com creativecdn.com *.creativecdn.com *.3lift.com trk.lgw.io insights.algolia.io alemobility.com icecat.biz tapestry.tapad.com *.algolianet.com *.tradedoubler.com *.socdm.com *.tradetracker.com *.tradetracker.net ray.st i.liadm.com the.sciencebehindecommerce.com tafopo.navahididi.com g.alicdn.com- strict-transport-security
max-age=300; includeSubDomain