stifflex.it
HTML metadata
Technology
- Server
- LiteSpeed
- jQuery
- 1.11.3 known XSS (<3.5)
- Fonts
-
- Google Fonts
Third-party hosts loaded (2)
- fonts.googleapis.com×1
- www.facebook.com×1
DNS records live
- NS
-
- multidominio-cp1.vhosting-it.com
- sdns1.vhosting-it.com
- sdns2.vhosting-it.com
- sdns3.vhosting-it.com
- sdns4.vhosting-it.com
- MX
-
- 0 stifflex.it
- TXT
-
mx=managedcaa=managed
Email authentication weak
- SPF
-
v=spf1 +a +mx +ip4:185.116.60.10 +ip6:2a0c:79c0:1:a::4 include:relay-wl.vhosting-it.com ~allsoftfail (~all) · multiple SPF records - DMARC
-
v=DMARC1; p=none;,policy: none (monitoring only) - DKIM
-
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArpcgcaRLVeO8U3D/p9Cjlat3rVyvdVxnx5ODNX67gsoNCbV4c7MtzMjS31qtJ1o4xs23sMH5calYaw…
selectors probed - default:
Certificate (current)
R12
Expires in 43 days
HTTP security headers
- present
-
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- missing Content Security Policy
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff