ordinalo.net

.net crawl

First seen 2026-05-29 · Last seen 2026-05-31 · ok HTTP/1.1 200 1048 ms crawled 2026-05-31

FR · 178.32.137.20 · AS16276 OVH SAS

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
Ordinalo - Il tuo take away ovunque - Sito Internet e App
Description
Con ORDINALO hai un software take away e food delivery in un solo gestionale. Software asporto e gestione consegne a domicilio tutto in uno!
Language
it
Canonical
https://www.ordinalo.net/
Translations
  • it

Open Graph

url
https://www.ordinalo.net/
title
Ordinalo - Il tuo take away ovunque - Sito Internet e App
site name
https://www.ordinalo.net
description
Con ORDINALO hai un software take away e food delivery in un solo gestionale. Software asporto e gestione consegne a domicilio tutto in uno!

Technology

Server
Apache
jQuery
3.5.1
Stack
PHP
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts

Third-party hosts loaded (4)

  • cdn.tnx.it×17
  • www.facebook.com×2
  • fonts.gstatic.com×1
  • www.googletagmanager.com×1

Social

Contact

Email
Phone

Registration

Registrar
Tucows Domains Inc.
Created
2014-06-03
Expires
2026-06-03 0 days left
Updated
2025-06-02
Name servers
  • ns1.tnx.it
  • ns2.tnx.it
  • ns3.tnx.it

DNS records live

NS
  • ns1.tnx.it
  • ns2.tnx.it
  • ns3.tnx.it
MX
  • 10 mail3.tnx.it
Verified for
  • Apple
  • Brevo
  • Google
  • Meta

Email authentication strong

SPF
v=spf1 mx a include:_spf.tnx.it include:spf.sendinblue.com ~all
softfail (~all)
DMARC
v=DMARC1; p=quarantine; sp=quarantine; rua=mailto:dmarc@mailinblue.com!10m; ruf=mailto:dmarc@mailinblue.com!10m; rf=afrf; pct=100; ri=86400
policy: quarantine · sp=quarantine
DKIM
  • mail: k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed

Certificate (current)

R13
from 2026-04-07 to 2026-07-06
Expires in 34 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://www.ordinalo.net/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
script-src 'self' 'unsafe-eval' 'unsafe-hashes' 'unsafe-inline' *.tnx.it *.ordinalo.net ssl.google-analytics.com www.google-analytics.com www.googletagmanager.com/gtag/js googleads.g.doubleclick.net td.doubleclick.net www.googletagmanager.com/debug/ js.stripe.com/; frame-src 'self' td.doubleclick.net www.googletagmanager.com/ js.stripe.com/ www.youtube-nocookie.com/;

Links to (6)

Linked from (1)