vaillant.it

.it crawl

First seen 2026-06-02 · Last seen 2026-06-02 · ok HTTP/1.1 200 760 ms crawled 2026-06-02

DE · 195.179.164.34 · AS61157 PlusServer GmbH

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Vaillant | Caldaie, Pompe di Calore e Climatizzatori
Description
Oltre 150 anni di esperienza nelle soluzioni di riscaldamento e climatizzazione per il comfort domestico e oltre 500 centri di assistenza tecnica in Italia.
Language
it
Translations
  • it

Open Graph

url
http://www.vaillant.it/home/
title
Vaillant. Riscaldamento e climatizzazione per il comfort domestico.
country-name
it_IT

Technology

Stack
Java

Third-party hosts loaded (5)

  • cdn01l.vaillant-group.com×9
  • cdn.optimizely.com×2
  • 20722443p.rfihub.com×1
  • cdn.consentmanager.net×1
  • logx.optimizely.com×1

Social

Contact

Phone
Address
Via Benigno Crespi, 70, 20159, Milano, Italia

DNS records live

NS
  • a.prim-ns.de
  • a.sec-ns.net
  • c.sec-ns.de
  • m.sec-ns.de
  • n.sec-ns.net
MX
  • 10 vaillant-it.mail.protection.outlook.com
TXT
Show 4 TXT records
  • _8jcmbcnwdwe6x86x7nmdlmn2wzqplln
  • js6s50dzdtr6h56w2k32cxkknvh9cwjz
  • mfHEGvXiHnpy/gMj2ts54ifxGFCPp4zSeXX30vZHYzF+6cgftM05FBLQZ9w4N5bwqFT5/7hVNrj/q3I9t3TmiA==
  • j015zm094mkjxgzqzzmb0bs11h3nv9m0
Verified for
  • Brevo
  • GlobalSign
  • Microsoft 365

Email authentication partial

SPF
v=spf1 mx ip4:57.66.132.25 ip4:57.66.132.26 ip4:57.66.132.12 ip4:57.66.211.122 ip4:57.66.211.126 ip4:57.66.211.130 ip4:57.66.211.134 include:spf.protection.outlook.com -all
strict (-all)
DMARC
v=DMARC1; p=none; rua=mailto:rua@dmarc.brevo.com
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

GlobalSign GCC R6 AlphaSSL CA 2025
from 2026-02-24 to 2027-03-28
Expires in 298 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.vaillant.it/home/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
no-referrer-when-downgrade
x-frame-options
SAMEORIGIN
permissions-policy
geolocation=(self "https://cat.vaillant.it" "https://cat.hermann-saunierduval.it")
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: cdn01l.vaillant-group.com *.adalyser.com *.adform.com *.adform.net *.adroll.com *.bing.com *.consentmanager.net *.contentsquare.net *.criteo.com *.doubleclick.net *.facebook.com *.facebook.net *.g.doubleclick.net *.glp8.net *.google.ad *.google.ae *.google.al *.google.am *.google.as *.google.at *.google.az *.google.ba *.google.be *.google.bf *.google.bg *.google.bi *.google.bj *.google.bs *.google.bt *.google.by *.google.ca *.google.cat *.google.cd *.google.cf *.google.cg *.google.ch *.google.ci *.google.cl *.google.cm *.google.cn *.google.co.ao *.google.co.bw *.google.co.ck *.google.co.cr *.google.co.id *.google.co.il *.google.co.in *.google.co.jp *.google.co.ke *.google.co.kr *.google.co.ls *.google.co.ma *.google.co.mz *.google.co.nz *.google.co.th *.google.co.tz *.google.co.ug *.google.co.uk *.google.co.uz *.google.co.ve *.google.co.vi *.google.co.za *.google.co.zm *.google.co.zw *.google.com *.google.com.af
strict-transport-security
max-age=63072000; preload

Links to (6)

Linked from (2)