bancocajasocial.com
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (7)
- cdnjs.cloudflare.com×6
- www.googletagmanager.com×4
- fonts.cdnfonts.com×3
- assets.adobedtm.com×1
- cdn.evgnet.com×1
- www.facebook.com×1
- www.google.com×1
Social
Contact
Registration
- Registrar
- Hello Internet Corp
- Created
- 2000-04-20
- Expires
- 2027-04-20 335 days left
- Updated
- 2026-04-23
- Name servers
-
- dns.telecom.com.co
- dns1.telecom.com.co
DNS records live
- NS
-
- dns.telecom.com.co
- dns1.telecom.com.co
- MX
-
- 10 cluster1.us.messagelabs.com
- 100 bancocajasocial-com.mail.protection.outlook.com
- 20 cluster1a.us.messagelabs.com
- TXT
-
Show 8 TXT records
_2vyvrtjxqkqqmzsoed44axurj4hl9c4v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email include:spf.messagelabs.com ~allgoogle-site-verification=48fKqjuSbMi57lSeAXFo-3PR5OPUNT2sqmLe8kj2dFwv=DMARC1; p=none; rua=mailto:seguridadinformatica@bancocajasocial.com;ruf=mailto:seguridadinformatica@bancocajasocial.comMS=ms97094224F0U6N59127facebook-domain-verification=1fzelchn3c0cnx6z0a5qyn76cwlore_dkbwhlghojulut6g8keqkkfkmljfr8b
Certificate (current)
DigiCert EV RSA CA G2
Expires in 66 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline' https://www.google-analytics.com bancocajasocial.us-6.evergage.com cdn.evgnet.com/beacon/bancocajasocial/production/scripts/ image.email.bancocajasocial.co https://www.bancocajasocial.com.seg.js https://www.google.com https://www.googleadservices.com https://*.googletagmanager.com https://tagmanager.google.com https://static.ads-twitter.com https://connect.facebook.net https://cdnjs.cloudflare.com https://analytics.tiktok.com https://static.hotjar.com https://www.google.com/recaptcha/api.js https://www.gstatic.com https://stg.bancocajasocial.co https://stg.bancocajasocial.co.seg.js https://bancocajasocial.co https://*.adobeaemcloud.com https://*.google.com https://*.googleapis.com https://assets.adobedtm.com https://documentservices.adobe.com https://www.facebook.com https://t.co https://analytics.twitter.com https://apps.mypurecloud.com https://apps.mypurecloud.com/genesys-bootstrap/genesy- strict-transport-security
max-age=31536000; includeSubDomains; preload