tim.it
HTML metadata
Technology
- Server
- envoy
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
Third-party hosts loaded (8)
- corporate.tim.ticdn.it×4
- cdn.cookielaw.org×3
- track.adform.net×3
- assets.adobedtm.com×2
- maps.googleapis.com×1
- s1.adform.net×1
- telecomitalia.tt.omtrdc.net×1
- www.googletagmanager.com×1
Social
Contact
DNS records live
- NS
-
- dns.tim.it
- dns3.interbusiness.it
- MX
-
- 10 mx.tim.it
- TXT
-
Show 5 TXT records
google-site-verification=VdSBDBFTW_G9ZGcV3DTfSPs3DzyE8vB-yaSomeLpC6Egoogle-site-verification=sgtzGmTHCyI2iXyMOWKzUHDhwdqQxmbMflv0bV1B8ig_apv8fn5noiid2utbzagn2v0wbggrjjkgoogle-site-verification=9MhJb1MnCzMSuhpl30_PO53enUVxgjUGOtCN0h_-EnEgoogle-site-verification=N4-ByIT22F5bn4QnUVOVLdCUSE4Maz_CHKs7d4VCV7U
Email authentication weak
- SPF
-
v=spf1 ip4:217.169.118.0/26 include:eu.khoros-mail.com include:auth.msgapp.com ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
TI Trust Technologies OV CA
Expires in 82 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- weak frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN, SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
object-src 'none'; frame-ancestors *.tim.it;- strict-transport-security
max-age=31536000; preload