bbvaseguros.com.co

.co crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 1596 ms crawled 2026-05-18

SE · 2.16.175.96 · AS16625 Akamai Technologies, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
BBVA Seguros | Bienvenido a BBVA Seguros / BBVA Seguros Colombia
Description
description
Language
es-CO

Technology

CDN
Amazon CloudFront
CMS
WordPress
Social widgets
  • YouTube Embed

Third-party hosts loaded (4)

  • cdnjs.cloudflare.com×2
  • code.jquery.com×1
  • d3l7jhiu2gy1zw.cloudfront.net×1
  • www.youtube.com×1

Social

DNS records live

NS
  • a1-166.akam.net
  • a22-65.akam.net
  • a3-66.akam.net
  • a4-67.akam.net
  • a6-64.akam.net
  • a7-65.akam.net
  • ns1.bbvaedge.com
  • ns2.bbvaedge.com
MX
  • 1 aspmx.l.google.com
  • 10 alt3.aspmx.l.google.com
  • 10 alt4.aspmx.l.google.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
TXT
Show 7 TXT records
  • 83x2rhfpjyjsbd7q18gymkqjfkv3h79z
  • cqpxy6wqpx5hjz3506kgt9cl0wb82jlq
  • _i0wzcyroacuopjt9i8pu9tvj1wklanz
  • y44jpv15kh5d0fcqry5v31w8bjlkfwmm
  • _g0ud1x664462hd3d3kff9dpfm82tfb3
  • 5knj7g6hpvzkl9wk32bk0qcd6c086t6b
  • rc4cmkjwlsyg1x7k6pl13q6rgrvlvg5n

Email authentication strong

SPF
v=spf1 mx ip4:190.66.4.13 ip4:190.66.4.14 ip4:190.66.4.16 ip4:190.66.4.17 ip4:186.113.14.72 ip4:186.113.14.73 include:_spf.google.com ip4:213.236.6.13 ip4:213.236.6.14 include:mailcontrol.com -all
strict (-all)
DMARC
v=DMARC1;p=reject;pct=100;fo=1;ri=600;sp=reject;rua=mailto:bbva-colombia@rua.agari.com;ruf=mailto:bbva-colombia@ruf.agari.com
policy: reject (enforced) · sp=reject
DKIM
  • smtpapi: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O2J9N14hRprzByFwfQW76y…
selectors probed

Certificate (current)

DigiCert Global G2 TLS RSA SHA256 2020 CA1
from 2026-02-27 to 2026-09-14
Expires in 116 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.bbvaseguros.com.co/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
deny
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' code.jquery.com cdnjs.cloudflare.com www.googletagmanager.com *.google-analytics.com d3l7jhiu2gy1zw.cloudfront.net 'sha512-sMGqKZhtnSVHUcO7bEEnHPhSG+hGo/LI6fGlgVzp8peWK8B1kBMtIr2XgqmW2yHMdKHhZZ/VREmZw6fmIHd/Qw==' 'sha256-NoEu6HqchkdtVJAAnh5l4O+Qmatu64LOABUuSnS+faA=' 'sha256-6wRdeNJzEHNIsDAMAdKbdVLWIqu8b6+Bs+xVNZqplQw='; style-src 'self' cdnjs.cloudflare.com www.w3schools.com d3l7jhiu2gy1zw.cloudfront.net 'sha256-0EZqoz+oBhx7gF4nvY2bSqoGyy4zLjNF+SDQXGp/ZrY=' 'sha256-tOtsiLGzupAJfMHWJtAR9sGXv5zaa2T8T8hVxrDCTSw=' 'sha256-A25Nx21M7Q7hCe0YwzJvn1yi9HwqynHl2Ya4vmTJhyY=' 'unsafe-hashes'; font-src 'self' cdnjs.cloudflare.com; img-src 'self' data: www.google-analytics.com *.google.com.co *.google.es; frame-src *.youtube.com play.google.com; connect-src 'self' www.google-analytics.com analytics.google.com *.analytics.google.com stats.g.doubleclick.net; frame-ancestors 'self';
strict-transport-security
max-age=31536000; includeSubdomains;

Links to (12)

Linked from (1)