belfiusprivate.be

.be crawl

First seen 2026-05-27 · Last seen 2026-05-30 · ok HTTP/1.1 200 870 ms crawled 2026-05-30

BE · 141.96.1.100 · AS25367 Proximus Luxembourg S.A.

Reputation 100/100

Classifying

HTML metadata

Title
Belfius Private
Language
nl
Canonical
https://www.belfiusprivate.be/nl
Translations
  • fr
  • nl

Open Graph

url
https://www.belfiusprivate.be/nl
title
Belfius Private
locale
nl
site name
Belfius Private

Technology

Cookie consent
  • OneTrust

Third-party hosts loaded (1)

  • cdn.cookielaw.org×1

DNS records live

NS
  • ns1.belfius.com
  • ns2.belfius.com
TXT
  • _d13tmhqc7j58i3mpp0nmwhr7rkh99cn
  • _i4xa9ax427xbisl1svhokbrby5n4nin
  • v=spf1ip4:141.96.0.129-all
Verified for
  • Google

Email authentication no MX

SPF
v=spf1ip4:141.96.0.129-all
missing all
DMARC
v=DMARC1;p=reject;sp=none;pct=100;fo=1;rua=mailto:report@belfius.be;ruf=mailto:report@belfius.be
policy: reject (enforced) · sp=none
DKIM
no key found at common selectors

Certificate (current)

DigiCert Global G2 TLS RSA SHA256 2020 CA1
from 2025-09-16 to 2026-09-14
Expires in 105 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.belfiusprivate.be/nl

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
Header values
referrer-policy
strict-origin-when-cross-origin
permissions-policy
geolocation=(), camera=(), microphone=()
x-content-type-options
nosniff
content-security-policy
default-src 'self'; frame-src https://belfius.be https://*.belfius.be https://uat-www.belfius.be https://*.cookielaw.org https://www.youtube.com https://player.vimeo.com; script-src 'self' https://cdn.cookielaw.org https://www.youtube.com https://s.ytimg.com https://player.vimeo.com https://f.vimeocdn.com 'unsafe-inline'; style-src 'self' 'unsafe-inline' https://cdn.cookielaw.org https://f.vimeocdn.com; font-src 'self' data: https://cdn.cookielaw.org https://f.vimeocdn.com; img-src 'self' data: blob: https: https://cdn.cookielaw.org https://i.ytimg.com https://i.vimeocdn.com; media-src 'self' https: blob: https://*.mediakind.com; connect-src 'self' https: https://cdn.cookielaw.org https://geolocation.onetrust.com;
strict-transport-security
max-age=63072000; includeSubDomains; preload

Links to (2)

Linked from (2)