bsbrodnica.pl

.pl crawl

First seen 2026-05-28 · Last seen 2026-05-31 · ok HTTP/1.1 200 594 ms crawled 2026-05-31

US · 104.20.17.22 · AS13335 Cloudflare, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Klienci Indywidualni - Bank Spółdzielczy w Brodnicy
Language
pl
Canonical
https://www.bsbrodnica.pl/klienci-indywidualni/
Translations
  • pl

Technology

CDN
Cloudflare
CMS
Gatsby
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts

Third-party hosts loaded (6)

  • cdn.bsbox.pl×19
  • fonts.googleapis.com×3
  • actionbot-proxy-bsbrodnica.14zlh4oa1wbn.eu-de.codeengine.appdomain.cloud×1
  • cdn-cookieyes.com×1
  • fonts.gstatic.com×1
  • www.googletagmanager.com×1

DNS records live

NS
  • dns.home.pl
  • dns2.home.pl
  • dns3.home.pl
MX
  • 0 bsbrodnica-pl.mail.protection.outlook.com
TXT
  • ms58979853.msv1.invalid
  • e768c287bc6f90ab40de533014e22c9199adb0fec7aa73cc38a037cf1a4b3cf
Verified for
  • Microsoft 365

Email authentication strong

SPF
v=spf1 ip4:89.161.250.144 ip4:195.245.69.9 include:spf.protection.outlook.com mx -all
strict (-all)
DMARC
v=DMARC1; p=reject;adkim=s;aspf=s;rua=mailto:dirs@bsbrodnica.pl
policy: reject (enforced)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCVAXi9phe/6BS0o3R1YPmG2Eab9+MjwJn/IgNtVYpWv45fj874Q4gBx9sGRUhEahua9OFXxGOhWJHA/E/wKe…
  • selector2: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCwwNPbGLNY83XcTRmKg52nJgl+XqOxGyCZion8Wgr2vQtNHt2bR0Mg+PaayZORSSimXeAqr3iOBjQEvzYTqW…
  • dkim: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq5dxz7Fovle+e7EjLDRWxPf1jYOx/Ba0YKTZf7Uqoj1/roGD2GklpIDWiESA5EgE2qYFk3E2HfG9hb…
selectors probed

Certificate (current)

Certum EV TLS G2 R39 CA
from 2026-03-30 to 2026-10-15
Expires in 137 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.bsbrodnica.pl/klienci-indywidualni/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
same-origin
x-frame-options
SAMEORIGIN
permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=(), camera=(), display-capture=(), document-domain=(), encrypted-media=(), fullscreen=(), geolocation=(), gyroscope=(), interest-cohort=(), magnetometer=(), microphone=(), midi=(), payment=(), usb=()
x-content-type-options
nosniff
content-security-policy
connect-src 'self' https://*.googleapis.com https://*.gstatic.com https://*.google-analytics.com https://*.analytics.google.com https://*.googletagmanager.com https://*.google.com www.googletagmanager.com www.google.com https://*.google.com https://*.g.doubleclick.net https://googleads.g.doubleclick.net https://ad.doubleclick.net https://www.googleadservices.com https://pagead2.googlesyndication.com https://google.com https://stats.g.doubleclick.net wss://actionbot-proxy-bsbrodnica.14zlh4oa1wbn.eu-de.codeengine.appdomain.cloud/websocket/api https://actionbot-proxy-bsbrodnica.14zlh4oa1wbn.eu-de.codeengine.appdomain.cloud *.cookieyes.com cdn-cookieyes.com; style-src 'self' 'unsafe-inline' https://googletagmanager.com https://tagmanager.google.com https://fonts.googleapis.com https://actionbot-proxy-bsbrodnica.14zlh4oa1wbn.eu-de.codeengine.appdomain.cloud; default-src 'self'; img-src 'self' https://cdn.bsbox.pl https://*.googleapis.com https://*.gstatic.com https://*.google-analytics.com
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (2)

Linked from (1)