betterbanks.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (7)
- clients.lk-cs.com×5
- www.googletagmanager.com×3
- fonts.googleapis.com×2
- app-script.monsido.com×1
- fonts.gstatic.com×1
- tag.brandcdn.com×1
- www.facebook.com×1
Social
Contact
- Phone
- Address
- 5600 S.W. Adams St., 61607, Bartonville, Illinois, http://www.wikidata.org/entity/Q30
Registration
- Registrar
- Domain.com - Network Solutions, LLC
- Created
- 1996-07-01
- Expires
- 2026-06-30 41 days left
- Updated
- 2026-04-01
- Name servers
-
- ganz.ns.cloudflare.com
- maxine.ns.cloudflare.com
DNS records live
- NS
-
- ganz.ns.cloudflare.com
- maxine.ns.cloudflare.com
- MX
-
- 10 mx1.backlundinvestment.iphmx.com
- 10 mx2.backlundinvestment.iphmx.com
- TXT
-
MS=ms28068799SvbLqVS33Mmy7545Q0ear2WDnvQxqW2rG0lhvrJFikMdvBMOtlwpEL5KGrgLiBYq1Q4w6IdAGNh7Cbzd8juxuA==apple-domain-verification=7Gx3WDkmydWGXTAMcOQc-rYf5orcpYLW83iATTOu6V0
Email authentication strong
- SPF
-
v=spf1 a mx exists:%{i}.spf.backlundinvestment.iphmx.com ip4:165.212.127.4 ip4:136.175.63.175 ip4:68.232.131.30 ip4:68.232.140.103 ip4:68.232.143.79 ip4:68.232.149.148 include:spf1.netteller.com include:sendgrid.net a:mx1.jhahosted.com a:mx2.jhahosted.com include:spf-us.emailsignatures365.com -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;pct=100;policy: reject (enforced) - DKIM
-
- s2:
v=DKIM1; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC4J/RmB15oMZ28ZYsZxP1DKJsAB3wbOw81GTSHCWdmjSLa/lpJ1RL9uaCyqto6Ue+pmA1ftG/jyP+QUzwJcl6EVSPCb… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - s2:
Certificate (current)
E7
Expires in 42 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- content-security-policy
default-src 'unsafe-inline' 'unsafe-eval' 'self' data: blob: https://*.paylocity.com https://analytics.google.com https://cm.g.doubleclick.net https://idpix.media6degrees.com https://d1eoo1tco6rr5e.cloudfront.net https://insight.adsrvr.org https://www.facebook.com https://*.brandcdn.com https://connect.facebook.com https://bic.jotform.com https://cdn.jotfor.ms https://widgets.jotform.io https://app-widgets.jotform.io https://js.jotform.com https://*.jotform.com https://cdnjs.cloudflare.com wss://*.hotjar.com https://connect.facebook.net https://app-script.monsido.com https://match.adsrvr.org https://*.monsido.com https://cdn.jotfor.ms https://*.youtube-nocookie.com https://*.formstack.com https://*.googletagmanager.com https://netdna.bootstrapcdn.com https://platform.twitter.com https://*.ytimg.com https://*.typekit.net https://*.youtube.com https://www.google.com https://www.gstatic.com https://*.hotjar.io https://*.hotjar.com wss://*.hotjar.com https://maps.googleapis.com https://map- strict-transport-security
max-age=31536000