columbiabankonline.com

.com crawl

First seen 2026-04-23 · Last seen 2026-05-17 · ok HTTP/1.1 200 14798 ms crawled 2026-05-17

US · 104.20.47.34 · AS13335 Cloudflare, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Personalized Financial Solutions in NJ | Columbia Bank
Description
Serving New Jersey since 1927, Columbia Bank offers tailored financial solutions to meet your needs. Discover our personal and business banking services to achieve your financial goals with confidence.
Language
en
Canonical
https://www.columbiabankonline.com/

Open Graph

title
Personalized Financial Solutions in NJ
description
Serving New Jersey since 1927, Columbia Bank offers tailored financial solutions to meet your needs. Discover our personal and business banking services to achieve your financial goals with confidence.

Technology

CDN
Cloudflare
Analytics
  • Cloudflare Insights
  • Google Analytics
  • Google Tag Manager
Ads
  • Google Ads (DoubleClick)
  • Outbrain
  • Taboola
  • Xandr
Third-party hosts loaded (23)
  • app.five9.com×1
  • assets.juicer.io×1
  • cds-sdkcfg.onlineaccess1.com×1
  • columbiamediadev.blob.core.windows.net×1
  • d.adroll.com×1
  • d.adroll.mgr.consensu.org×1
  • eb2.3lift.com×1
  • ib.adnxs.com×1
  • idsync.rlcdn.com×1
  • pixel.advertising.com×1
  • static.cloudflareinsights.com×1
  • stats.g.doubleclick.net×1
  • sync.mathtag.com×1
  • sync.outbrain.com×1
  • sync.taboola.com×1
  • translate.google.com×1
  • ups.analytics.yahoo.com×1
  • www.facebook.com×1
  • www.google-analytics.com×1
  • www.google.co.in×1
  • www.google.com×1
  • www.googletagmanager.com×1
  • x.bidswitch.net×1

Social

Contact

Phone
Address
19-01 Route 208 North, 07410, Fair Lawn, NJ, US

Registration

Registrar
Network Solutions, LLC
Created
2001-07-25
Expires
2030-07-25 1528 days left
Updated
2022-03-17
Name servers
  • emma.ns.cloudflare.com
  • noel.ns.cloudflare.com

DNS records live

NS
  • ns1.columbiabankonline.com
  • ns2.columbiabankonline.com
MX
  • 10 mxa-00376801.gslb.pphosted.com
  • 5 mxb-00376801.gslb.pphosted.com
TXT
Show 11 TXT records
  • jrb4ol82gbvfuo73teussul2sm
  • cisco-ci-domain-verification=26968c51e82370ad672ba1c00c51b4628af2f431468cb75743a48517908f5b7d
  • atlassian-sending-domain-verification=d68f27a7-a02b-4558-a413-804b5f875fb1
  • scnv-verification=06b8da8e7da0ce6c7a5423451014a69e:07eaae919d4f8c2037ad82982d2ebb3d:b8b63fb8af924b488f0687d94a0b868d
  • v=DKIM1;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0EvxiJ7G7lANo40rv1kXpslN8E7fx/bzBMiMJBLgAYsZOR640gXmFK4Il4oXsHwSXvdXffM95YkJp/Y8IckzCSXADQMwE/BC3tUo3EPmM7lH+x9Kor++EdIFqH+asa1XSOwY14aVvycfagSDabT2LRc4EAZX4XgPXoOK6/vRS+Ekn+zU0VTxyIf7Ii01IR4pBJDOSf3y9nDcvLXdJ6KGvNWkB4aKnriF5rfLLDE1LKNUHabwebZ6ibaYjkStb2Ege7D2EcXF/YB461PCItr7OiKudChf4FWmKY+B2NbfR//EnfSSwciBGM8+yasHalDgelxz53Z51eu5McnLP9OEQQIDAQAB;t=s
  • m0rtibd5siqqoijj217t4okpe0
  • apple-domain-verification=LPfSFlbI3vwN0tdr
  • MS=ms99970616
  • atlassian-domain-verification=0vL3gkhN0o1mItFwKlEp85nlSmvJc5nFwh0BKOlSMJvA1piY36eHIC2V540jxXgJ
  • v=DMARC1; p=reject; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.com
  • MS=245FC2CE78867D6DE8A9003765F2592951E73752

Email authentication strong

SPF
not published
DMARC
v=DMARC1; p=reject; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.com
policy: reject (enforced)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnZRGtPz/oROqSPpLmdnkADI/Bzs7QcNJSIN6SoHosCqaRTnVDQe8VwINQPAU8EMnZZUl87q53K9pTB…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzFeW5gUS4TSlsuZyWDVSLFJ2frM8yKAh26Rvklhka823Xdqb9C8ubrfWWkzc0PLmN8kC3p+sMl7Z5ZardZ…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC6wlGevfkJEnUYjbvR3KHG8OdpOOO8wcOfVKo0ehZbBeQovL1iI2pkBcQJHIQA6Xc64GJz3N07sYVv969ZQICLpi…
selectors probed

Certificate (current)

Network Solutions EV Server CA 3
from 2025-09-18 to 2026-10-20
Expires in 154 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.columbiabankonline.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SameOrigin
x-content-type-options
nosniff
content-security-policy
default-src 'self' our.umbraco.com marketplace.umbraco.com;script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: www.google.com *.googleapis.com www.googleadservices.com www.googletagmanager.com www.google-analytics.com googleads.g.doubleclick.net www.gstatic.com www.youtube.com app.five9.com connect.qualia.com translate.google.com assets.juicer.io translate.googleapis.com cds-sdkcfg.onlineaccess1.com static.hotjar.com script.hotjar.com ucsht3go.micpn.com connect.facebook.net api.swiftype.com cdn.cookielaw.org *.onetrust.com cdnjs.cloudflare.com static.cloudflareinsights.com ajax.cloudflare.com ajax.googleapis.com cdnjs.cloudflare.com cdn.datatables.net code.jquery.com www.facebook.com;object-src 'self';style-src 'self' 'unsafe-inline' fonts.googleapis.com assets.juicer.io www.gstatic.com translate.googleapis.com cdn.datatables.net code.jquery.com;img-src 'self' data: blob: *.columbiabankonline.com *.doubleclick.net *.google.com www.googletagmanager.com www.google-analytics.com www.goo
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (15)

Linked from (8)