istitutoitalianoprivacy.it
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- jQuery
- 3.7.1
- Social widgets
-
- Twitter Widget
Third-party hosts loaded (2)
- gmpg.org×1
- platform.twitter.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- cullen.ns.cloudflare.com
- rose.ns.cloudflare.com
- MX
-
- 10 mx01.cbsolt.net
- 20 mx02.cbsolt.net
Email authentication strong
- SPF
-
v=spf1 ip4:77.39.211.61 +a +mx +ip4:89.46.225.172 +ip4:94.130.225.194 +include:spf-c.cbsolt.net +include:turbo-smtp.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; pct=100; ruf=mailto:dmarc-ruf@ictlc.com; rua=mailto:dmarc-rua@ictlc.com;policy: quarantine - DKIM
-
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAr+BKVboqDDe3F+APyOJYDArTOEm+kzqQgoCYwhyWIU5KruwiXJutoHzeHt86r6dJgLhJnh87ii48mv…
selectors probed - default:
Certificate (current)
E7
Expires in 52 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' font-src data: blob: *.twitter.com fburl.com ps.w.org s.w.org secure.gravatar.com *.youtube.com *.youtu.be *.googleapis.com *.gstatic.com *.istitutoitalianoprivacy.it istitutoitalianoprivacy.it;- strict-transport-security
max-age=10886400; includeSubDomains; preload
istitutoitalianoprivacy.it