xplants.it

.it user

First seen 2026-05-16 · Last seen 2026-05-16 · ok HTTP/1.1 200 198 ms crawled 2026-05-16

IT · 89.118.107.132 · AS8968 BT Italia S.p.A.

Reputation 100/100

sector tech type homepage

HTML metadata

Title
xPlants.it Srl - Mantova, Padova, Reggio Emilia, Verona: siti web | e-commerce | App
Description
xPlants.it, società informatica che si occupa di sviluppare siti, e-commerce, applicazioni web personalizzate e App nelle zone di Padova, Mantova, Reggio Emilia e Verona. I principali prodotti: xtro, xPepper (e-commerce e gestionale web), xOrange (gestione commesse) e xLemon (gestione contatti)
Language
it

Technology

Server
nginx
Analytics
  • Google Tag Manager
Cookie consent
  • Iubenda
Third-party hosts loaded (8)
  • xplants.cdn.xpl.io×8
  • cdn.iubenda.com×1
  • cs.iubenda.com×1
  • use.typekit.com×1
  • www.facebook.com×1
  • www.google.com×1
  • www.googletagmanager.com×1
  • www.iubenda.com×1

Contact

Email
Phone

DNS records live

NS
  • ns-1489.awsdns-58.org
  • ns-1685.awsdns-18.co.uk
  • ns-304.awsdns-38.com
  • ns-955.awsdns-55.net
MX
  • 20 colin.xplants.net
TXT
  • openai-domain-verification=dv-xrh4jR2WVvJSjSCkgLt7njXy
  • apple-domain-verification=oumaqrtYXLdrBQVl
  • google-site-verification=gF730CfDePh0mlX4rjB-YXRnupzlcs5nYMZGAtE0XbA

Email authentication strong

SPF
v=spf1 include:xplants.net -all
strict (-all)
DMARC
v=DMARC1; p=reject; rua=mailto:postmaster@xplants.it; fo=1
policy: reject (enforced)
DKIM
  • mail: v=DKIM1; h=sha256; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAybZSwgKCF+bTi5WCqjobjwd8MsXEJwtPBAzlgYHxWg34vZR7xTVVxu8RGiEGrSo99zUV…
selectors probed

Certificate (current)

R12
from 2026-05-02 to 2026-07-31
Expires in 72 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://xplants.it/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • short HSTS max-age
  • CSP allows unsafe inline scripts/styles
  • missing Permissions Policy
Header values
referrer-policy
same-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src https: data: 'unsafe-inline' 'unsafe-eval'
strict-transport-security
max-age=0

Links to (1)