visura.it
HTML metadata
Technology
- Server
- Apache
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (6)
- fonts.googleapis.com×3
- bnr.elmobot.eu×1
- fonts.gstatic.com×1
- service.force.com×1
- www.facebook.com×1
- www.googletagmanager.com×1
Social
Contact
DNS records live
- NS
-
- ns-1116.awsdns-11.org
- ns-1883.awsdns-43.co.uk
- ns-56.awsdns-07.com
- ns-756.awsdns-30.net
- MX
-
- 10 visura-it.mail.protection.outlook.com
- TXT
-
7abde06c798e7e820e4e09234d580ea8395779e7189721d067
- Verified for
-
- Apple
- GlobalSign
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 mx a:mx1.visura.it a:smtpacc.visura.it ip4:81.173.37.60 ip4:81.173.37.80 ip4:95.110.170.12 include:musvc.com include:spf.protection.outlook.com include:_spf.salesforce.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@visura.it ;ruf=mailto:dmarc@visura.it; rf=afrf; pct=100policy: none (monitoring only) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArEVBoiiQeXZT2QNYyzgHL9BcrIw7x7ZbQcT0vRg8bofc9kj2JMxm6Ci9YkpHxa0a0kOte5KQEJswTB… - selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC14UDJNGJ7ryF7svfMi6CJ9STiQzu7958FgpYbjkSyNlnV2gZwq11ibzgAedtmMXGd7DzW8E7IyNIJtJ2fFF… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPCE3FY+FRgI08woQ0XDcl9lxp6Jlky76fNL2AkLoTZJQnpKsznbI8GAVB7HgLOcv7HCd8EkTWJfhyZOIMMp…
selectors probed - google:
Certificate (current)
GlobalSign RSA OV SSL CA 2018
Expires in 40 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
base-uri 'self' 'unsafe-eval'; default-src 'self' www.visura.it tinextagroup.my.site.com *.salesforceliveagent.com *.force.com *.salesforce.com www.googletagmanager.com *.google-analytics.com static.hotjar.com script.hotjar.com ws.hotjar.com content.hotjar.io integrations.us-east.assistant.watson.appdomain.cloud web-chat.global.assistant.watson.appdomain.cloud www.google.com www.gstatic.com www.privacylab.it bnr.elmobot.eu cns.elmobot.eu tinexta.intervieweb.it cdnjs.cloudflare.com fonts.gstatic.com googleads.g.doubleclick.net connect.facebook.net www.googletagmanager.com 'unsafe-inline' 'unsafe-eval' data:;style-src 'self' https://tinextagroup.my.site.com *.force.com https://fonts.googleapis.com 'unsafe-inline';media-src *;frame-ancestors 'self' https://*.visura.it https://*.lextel.it https://*.visurasoftware.it;font-src 'self' data: https://fonts.gstatic.com; frame-src 'self' *.force.com https://www.visura.it https://www.lextel.it https://td.doubleclick.net https://www.googletagmanage- strict-transport-security
max-age=300