volksbank.it
HTML metadata
Technology
- CDN
- Cloudflare
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (4)
- cdnjs.cloudflare.com×6
- ajax.aspnetcdn.com×1
- consent.cookiebot.com×1
- www.google.com×1
Social
Contact
- Phone
- Address
- st. Nr. 0012973
DNS records live
- NS
-
- dns1.inet2.it
- dns2.inet2.it
- dns3.inet2.it
- MX
-
- 1 volksbank-it.mail.eo.outlook.com
- TXT
-
Show 8 TXT records
ms=F765CC38B68FC240907E1D5D28571953BBCD818Fms-domain-verification=4f611302-10ff-4b6a-8008-d738ee88aafb4c6a3346cba6dad258e9f0447a0a3e1bdc6bd66a0a827be059atlassian-domain-verification=5uxC9U99Azh0LSXNwDSweJubiM76s6OkPHY438ZbhWlw5rKpwZayiYcHn3cUWwSBapple-domain-verification=cdTMQg9G9OZcmZ5Bhave-i-been-pwned-verification=ca35d1f3061c4c2897ec13d58d0ef47bgoogle-site-verification=3u09XjbrRE1XVwmoUiafdfIpA2g_0FB_wdrBCxpkjeYgoogle-site-verification=n-_BgcFknUnChqcfakxUbEowG1ACJl_ywPwl3AfwYpE
Email authentication strong
- SPF
-
v=spf1 mx ip4:2.228.40.224/27 ip4:93.62.51.0/28 ip4:31.193.56.0/21 ip4:217.29.160.12 ip4:185.161.193.17 ip4:94.231.207.43 ip4:94.231.207.50 include:spf.protection.outlook.com include:musvc.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; sp=quarantine; adkim=s; aspf=s; rua=mailto:rua_54d1764f4486e2b4@eu.report.letsdmarc.com,mailto:xus4bjzj@ag.eu.dmarcadvisor.com; ruf=mailto:xus4bjzj@fr.eu.dmarcadvisor.compolicy: quarantine · sp=quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1LKnnOs3qhuupBdb+0Qrtt90t6z7SLwikU/Sbrg06ffr9AisZ/U1T3Gez84kyxSihd0wRIryWsJx27… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4Od0f9aK2iKj8Y79jyuXiO/N6/VUu3KMPTYrgLeU8RDGIp/J4EsC3J3tSanfzE5oj9pCVWeZedXEGw…
selectors probed - selector1:
Certificate (current)
DigiCert EV RSA CA G2
Expires in 68 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-embedder-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(), microphone=(), camera=()- x-content-type-options
nosniff- content-security-policy
img-src 'self' www.volksbank.it www.facebook.com www.linkedin.com maps.googleapis.com maps.gstatic.com www.google.com www.googletagmanager.com googleads.g.doubleclick.net img.youtube.com curator-assets.b-cdn.net platform-cdn.sharethis.com media.corporate-ir.net px.ads.linkedin.cn beincontact.becloudsolutions.com i.vimeocdn.com l.sharethis.com imgsct.cookiebot.com scontent-iad3-2.xx.fbcdn.net scontent-iad3-1.xx.fbcdn.net media.licdn.com data:; script-src 'self' 'unsafe-inline' 'unsafe-eval' volksb.stage.fullsix.it www.volksbank.it consent.cookiebot.com unpkg.com apps.mypurecloud.de cdn.matomo.cloud ajax.aspnetcdn.com pi.pardot.net rum-static.pingdom.net platform-api.sharethis.com consentcdn.cookiebot.com www.hotjar.com static.doubleclick.net googleads.g.doubleclick.net www.adform.net maps.googleapis.com www.googleapis.com jnn-pa.googleapis.com maps.gstatic.com www.gstatic.com www.google.com ssl.google-analytics.com www.google-analytics.com www.googletagmanager.com www.youtube.com www.fa- strict-transport-security
max-age=15552000- cross-origin-opener-policy
same-origin- cross-origin-embedder-policy
same-origin- cross-origin-resource-policy
same-origin