palazzoli.com
HTML metadata
Technology
- Server
- nginx
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Iubenda
- Fonts
-
- Google Fonts
Third-party hosts loaded (7)
- cdn.iubenda.com×2
- www.googletagmanager.com×2
- cs.iubenda.com×1
- fonts.googleapis.com×1
- fonts.gstatic.com×1
- www.facebook.com×1
- www.google.com×1
Social
Contact
- Phone
Registration
- Registrar
- Tucows Domains Inc.
- Created
- 1996-09-25
- Expires
- 2027-09-24 480 days left
- Updated
- 2025-12-18
- Name servers
-
- ns1.dnsitalia.net
- ns2.dnsitalia.net
- nsct.dnsitalia.net
- nsrm.dnsitalia.net
DNS records live
- NS
-
- ns1.dnsitalia.net
- ns2.dnsitalia.net
- nsct.dnsitalia.net
- nsrm.dnsitalia.net
- MX
-
- 1 palazzoli-com.mail.protection.outlook.com
- TXT
-
sending_domain860283=987be000e9ea6a589315eec9afcaf48e62468b84e9b75c850542c34af9a9141100D5J000000EeMN=1TBSW00000000cj
- Verified for
-
- Meta
Email authentication weak
- SPF
-
v=spf1 mx:palazzoli.it include:musvc.com include:palazzoli.it include:spf.protection.outlook.com ip4:62.97.59.238 -allstrict (-all) - DMARC
- not published
- DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC0R8cQghBMiduW3dUkWGgEyYC5wwaPsjz83pvaITU9wHjCh0g7jOmruceLeFSHpoM29iXz1vSneWDHkx5nso… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCyAf2kvY3EvHhgHnBKgGo2bP0jh8KsFftH+O+Mmu9ZywER0mFLVLelGMLZ1Kuz2yb+Hjlw/D8SolDdm8qUBz…
selectors probed - selector1:
Certificate (current)
R13
Expires in 16 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.google.com *.googleapis.com *.googletagmanager.com *.gstatic.com *.iubenda.com *.fontawesome.com *.google-analytics.com *.jquery.com *.bootstrapcdn.com cdnjs.cloudflare.com *.hotjar.com *.facebook.net *.facebook.com; object-src 'self'; style-src 'self' 'unsafe-inline' *.googleapis.com *.jquery.com *.fontawesome.com *.bootstrapcdn.com cdnjs.cloudflare.com; img-src 'self' data: blob: *.gstatic.com *.google-analytics.com *.googletagmanager.com *.googleapis.com *.jquery.com *.iubenda.com *.facebook.com; frame-src 'self' *.google.com *.iubenda.com *.youtube-nocookie.com *.hotjar.com; font-src 'self' data: *.gstatic.com *.fontawesome.com *.bootstrapcdn.com script.hotjar.com; connect-src 'self' blob: *.google.com *.google-analytics.com *.hotjar.com *.hotjar.io wss://*.hotjar.com *.iubenda.com *.doubleclick.net *.facebook.com maps.googleapis.com
Links to (6)
- stral.it×1
- linkedin.com×1
- lewden.com×1
- iubenda.com×1
- instagram.com×1
- facebook.com×1