landrover.it
HTML metadata
Technology
- CDN
- Akamai
- Server
- Apache
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (30)
- modules.jaguarlandrover.com×4
- www.landrover.ch×4
- jlr.scene7.com×3
- www.landrover-armenia.com×3
- www.landrover-kazakhstan.com×3
- www.landrover-lebanon.com×3
- www.landrover-maroc.com×3
- land-rover.md×2
- www.landrover-algerie.com×2
- www.landrover-azerbaijan.com×2
- www.landrover-egypt.com×2
- www.landrover-georgia.com×2
- www.landrover-iraq.com×2
- www.landrover-jordan.com×2
- www.landrover-oman.com×2
- www.landrover-palestine.com×2
- www.landrover-qatar.com×2
- www.landrover-saudi.com×2
- www.landrover-tunisie.com×2
- www.landrover-uae.com×2
- www.landrover.be×2
- www.landrover.ca×2
- www.landrover.com×2
- www.landrover.com.mx×2
- www.landrover.lv×2
- www.landrover.no×2
- www.landrover.pl×2
- www.landrover.se×2
- www.landrover.sk×2
- www.landroverbahrain.com×2
Social
Contact
- Phone
DNS records live
- NS
-
- a1-28.akam.net
- a16-67.akam.net
- a18-64.akam.net
- a26-65.akam.net
- a5-66.akam.net
- a7-67.akam.net
- MX
-
- 0 landrover-it.mail.protection.outlook.com
- Verified for
-
- GlobalSign
Email authentication partial
- SPF
-
v=spf1 include:spf.protection.outlook.com include:spf.realsender.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; pct=100; fo=1; ri=3600; rua=mailto:ef3000ee@inbox.ondmarc.com; ruf=mailto:ef3000ee@inbox.ondmarc.com;policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
GlobalSign ECC OV SSL CA 2018
Expires in 104 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' data: blob: tt.omtrdc.net *.akstat.io akstat.io *.go-mpulse.net go-mpulse.net *.amazon-adsystem.com amazon-adsystem.com *.amazonaws.com amazonaws.com s3-eu-west-1.amazonaws.com *.bing.com bing.com *.virtualearth.net ssl.ak.dynamic.tiles.virtualearth.net virtualearth.net *.btttag.com btttag.com c212.net cloudflare.com *.decibelinsight.net wss://collection.decibelinsight.net decibelinsight.net g.doubleclick.net *.doubleclick.net doubleclick.net fls.doubleclick.net *.facebook.com *.facebook.net facebook.com facebook.net *.fanplayr.com fanplayr.com *.gigya.com gigya.com *.google.com *.google.de *.google.it *.googlesyndication.com *.gstatic.com *.youtube-nocookie.com google.co.uk google.com google.de google.it googlesyndication.com gstatic.com youtube-nocookie.com googleadservices.com *.googleapis.com googleapis.com *.googletagmanager.com googletagmanager.com *.google-analytics.com google-analytics.com *.jaguar.com jaguar.co.uk jaguar.com *.b- strict-transport-security
max-age=15768000 ; includeSubDomains