willo.it
HTML metadata
Technology
- Server
- aruba-proxy
- CMS
- WordPress 5.6.17 legacy (latest 7.0)
- jQuery
- 1.7.2 known XSS (<3.5)
- Cookie consent
-
- Iubenda
- Fonts
-
- Google Fonts
Third-party hosts loaded (6)
- fonts.googleapis.com×5
- maps.googleapis.com×2
- www.google.com×2
- cdn.iubenda.com×1
- gmpg.org×1
- s.w.org×1
Social
Contact
- Phone
DNS records live
- NS
-
- dns.technorail.com
- dns2.technorail.com
- dns3.arubadns.net
- dns4.arubadns.cz
- MX
-
- 10 mx.willo.it
- TXT
-
Show 4 TXT records
v=DKIM1; h=sha256; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoOhAWzBuKQYXU6E3E9efq+DPvtkkvWPg3EtB+BT2cTrMGh6Xy00mXfPi/EzubRpbhHpv3b3k1d65Vyhmpp5O3HzTQyzIqYMMF5iF5y05D5aEux3pj/i1g5LkAOFE0Xdf+wnI8zppP2jP7IV4bwKPr1OnBqOjs8hfBWSEGaCSFD/aVbOdNldHiwSalzDL38E+IcT0KQB+BdutC2T9B5idcSPaBY57sC4hq31wpBlgNcYpIMDxOQN+E9E+TbgnlJYCOYsD5S0amYFivcJObjSGpdstMBfaM1ox5iEQVpEhLz5cwgohjrMst2us7G9eHZ6p2jR7X+/yTP8ryAAywzMJ5wIDAQABa55bmcrejqmp0hbgmu4j0atf95a=rsa-sha256; v=1; c=relaxed/relaxed; d=willo.it; q=dns/txt; s=mta; t=1737721815; x=1737729015; h=Content-Transfer-Encoding: Content-Type: Subject: Subject: Date: To: To: From: From: MIME-Version: Message-ID: Sender: Sender; bh=MQK8WrdQRIqY8C+WLbrajsF4LZcIo23YP/tG4cx71Ws=; b=E2r7Ey1rJEDJrUCKLgzaEZsbj8YLtUfqT288nYCtSQWQuiVc8250Q64Q8Fq0D6suZzlQPxNR8jOQnpUria50PJ3FREd8bO6EIgD2wuDNeuz/afzb8N1x+Q7ydtL9VPEIxcnnHW/VyFv0the7b4c2pjP3BDxT42RamKW9HEw43SM=v=sfp1 include: mailgun.org ~all
- Verified for
-
- Brevo
Email authentication weak
- SPF
-
v=spf1 mx a ip4:49.12.4.204 include:aruba.it include:_spf.google.com include: mailgun.org~allpermissive (+all) — anyone can send as this domain · multiple SPF records - DMARC
-
v=DMARC1; p=none; fo=1policy: none (monitoring only) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxkrjSc3/FzZOFiZS8BWQqehtz2XZkkjMqlSzP1F7MI+jvpiVUMa0ns5pEG01NsqFyesOuKgKkeVpXbxxxQ… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAx29I63FLEaOogL5+gBtXGt2BXOnaF+wTbNshqG9r40/DyW0kK9VHPB0aIbal5mAl8mFsA1mC7zITYyuo5u…
selectors probed - s1:
Certificate (current)
Actalis Domain Validation Server CA G3
Expires in 69 days
HTTP security headers
- findings
-
- missing HSTS
- missing Content Security Policy
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy