ristoratoridivicenza.it
HTML metadata
Technology
- Server
- nginx
- jQuery
- 3.6.0
- Stack
- PHP
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (7)
- cdnjs.cloudflare.com×2
- www.googletagmanager.com×2
- assets.pinterest.com×1
- code.jquery.com×1
- maxcdn.bootstrapcdn.com×1
- translate.google.com×1
- www.facebook.com×1
Social
DNS records live
- NS
-
- dns1.axera.it
- dns2.axera.it
- MX
-
- 10 mailsecurity.axera.it
- 10 mailsecurity2.axera.it
Email authentication weak
- SPF
- not published
- DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
R12
Expires in 70 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-eval' 'unsafe-inline' *.jquery.com *.bootstrapcdn.com *.pinterest.com *.gstatic.com *.cloudflare.com *.google.com translate.googleapis.com *.google-analytics.com connect.facebook.net *.telemar.it *.googleapis.com *.linearicons.com *.spreaker.com cookiehub.net www.cookiehub.net ascom.vi.it www.ascom.vi.it confcommerciovicenza.info www.confcommerciovicenza.info *.ytimg.com *.youtube.com *.googletagmanager.com www.esacformazione.it esacformazione.it *.doubleclick.net universitadelgustovicenza.it www.universitadelgustovicenza.it www.google-analytics.com coockiehub.net google.com www.google.com google.it www.google.it open.spotify.com; img-src * data: blob: 'self' 'unsafe-eval' 'unsafe-inline' www.confcommerciovicenza.info i.ytimg.com www.facebook.com www.google-analytics.com php.telemar.it www.google.com www.gstatic.com log.pinterest.com www.google.it www.confcommerciovicenza.info *.gstatic.com *.telemar.it; frame-src 'self' *.sitengine.it- strict-transport-security
max-age=63072000; includeSubDomains; preload