absbank.pl

.pl crawl

First seen 2026-06-01 · Last seen 2026-06-01 · ok HTTP/1.1 200 3531 ms crawled 2026-06-01

PL · 54.37.235.171 · AS16276 OVH SAS

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
KLIENCI INDYWIDUALNI - ABS Bank Spółdzielczy
Description
ABS Bank Spółdzielczy
Language
pl-pl
Generator
VerdIT

Technology

Server
nginx
CMS
Joomla
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts

Third-party hosts loaded (3)

  • cdn.jsdelivr.net×1
  • fonts.googleapis.com×1
  • www.googletagmanager.com×1

Social

DNS records live

NS
  • dns.wizja.net
  • dns2.wizja.net
  • ns1.wizjanet.pl
  • ns2.wizjanet.pl
MX
  • 10 mx.wizjanet.pl
TXT
  • ddd5a0f5b52c08e3af43fca3d29c78e47734f6ed5442cf7b1bb43df32eca825
  • sPR5wKU6f7BQhLfuvyNheA5NDnbo9BGM

Email authentication partial

SPF
v=spf1 +a +mx +a:absbank.wizjanet.pl ip4:91.234.217.0/24 ip4:91.217.242.0/24 -all
strict (-all)
DMARC
v=DMARC1; p=none; rua=mailto:rua@absbank.pl
policy: none (monitoring only)
DKIM
  • default: v=DKIM1; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDpapml+kt1rGAB9Vi1MpCzQjBE1xXOOTLypaAvLxjcIZxxHrk1v33R7yR2dWoff5hDm6k5j0PJRaY8ImrCqtjvb0do0…
selectors probed

Certificate (current)

Sectigo Public Server Authentication CA DV R36
from 2025-11-13 to 2026-11-14
Expires in 164 days

HTTP security headers

Header hygiene 95/100 Checked live page: https://www.absbank.pl/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-opener-policy
findings
  • CSP allows unsafe inline scripts/styles
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
geolocation=self
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.googletagmanager.com https://maps.googleapis.com https://cdn.jsdelivr.net https://code.jquery.com https://unpkg.com https://cdnjs.cloudflare.com https://widget.migam.org; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://cdn.jsdelivr.net https://cdnjs.cloudflare.com; img-src 'self' data: https://www.google.com https://maps.gstatic.com https://maps.googleapis.com https://widget.migam.org https://firebasestorage.googleapis.com; font-src 'self' https://fonts.gstatic.com; connect-src 'self' https://www.google-analytics.com https://www.googleapis.com https://maps.googleapis.com https://maps.gstatic.com https://firestore.googleapis.com https://europe-west1-migam-1beea.cloudfunctions.net https://cdnjs.cloudflare.com; frame-src 'self' https://maps.google.com https://bsi.gs-net.pl https://www.bsi.gs-net.pl; object-src 'none'; base-uri 'self'; form-action 'self'; upgrade-insecure-requests; frame-a
strict-transport-security
max-age=31536000; includeSubDomains; preload
cross-origin-opener-policy
same-origin

Links to (9)

Linked from (2)