cpb.bank

.bank user

First seen 2026-05-11 · Last seen 2026-05-11 · ok HTTP/1.1 200 681 ms crawled 2026-05-11

US · 172.66.139.7 · AS13335 Cloudflare, Inc.

Reputation 100/100

sector finance type homepage

HTML metadata

Title
Central Pacific Bank - We Got You!
Language
en

Technology

CDN
Cloudflare
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts
Third-party hosts loaded (8)
  • www.cpb.bank×72
  • cdn.jsdelivr.net×6
  • cdnjs.cloudflare.com×3
  • ajax.googleapis.com×2
  • maxcdn.bootstrapcdn.com×2
  • code.jquery.com×1
  • fonts.googleapis.com×1
  • www.googletagmanager.com×1

Social

Contact

Phone

Registration

Registrar
101domain GRS Limited
Created
2015-06-24
Expires
2026-06-24 36 days left
Updated
2025-10-14
Name servers
  • ns2.cpb.bank
  • ns3.cpb.bank
  • ns1.cpb.bank

DNS records live

NS
  • ns1.cpb.bank
  • ns2.cpb.bank
  • ns3.cpb.bank
MX
  • 1 mxa-000f9301.gslb.pphosted.com
  • 1 mxb-000f9301.gslb.pphosted.com
TXT
Show 9 TXT records
  • apple-domain-verification=gulOa0hS7gK6JKHz
  • brevo-code:42f6d352e6fb8d9f79c8f3f63d14460c
  • docusign=a6119ec1-8f4f-4333-a912-ebb69631d3e0
  • dxzbqm860tfgd03hzv14h5nwdz28w7s0
  • facebook-domain-verification=s766hiquierhayw2pliew849jfrs9b
  • google-site-verification=2KIuH_Av0-D57cL4JRsmcAJzlpR9kWNUMneJV9h71I0
  • google-site-verification=9nd8NmBs8oJHRw4dKUmFO9JQx1i0JB8aDILVBNJ8QQQ
  • google-site-verification=XTRUZsv7YkOrGed0Oer2lE7WOKoHEr4Tg54j4OatQ2k
  • google-site-verification=Xv3bxv5o6LrPlziC7-UaXhkHw78Sz3XeMD-hNN6EpsU

Email authentication strong

SPF
v=spf1 include:spf-000f9301.pphosted.com include:spf.cashedge.com include:emsd1.com include:19644915.spf02.hubspotemail.net include:_spf.salesforce.com include:spf1.seic.com include:amazonses.com ip4:23.102.157.82 ip4:23.102.154.37 ip4:167.89.13.85 ip4:168.245.22.2 ip4:54.175.209.165 ip4:12.129.29.143 ip4:68.232.131.237 ip4:68.232.137.69 ip4:159.183.128.1 ip4:166.73.92.61/32 ip4:50.58.9.15/32 ip4:208.235.248.20/32 ip4:20.165.52.28 ip4:52.248.83.23 ip4:167.89.11.238 ~all
softfail (~all)
DMARC
v=DMARC1; p=reject; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.com
policy: reject (enforced)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCo3HGUirmFm0aik0gRzSht8tZqemAdCdj8hGCmwGEGCBINnnqO8gNi6gxjjzDEKsziEB0+BIWU80czO6g2nU…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwGzXBoD7c+NGWUmNmWgrsu+WWm9iciGoPJfzHCE95Z/kK6NkipwcA2Og/OhU2dt0bo0llH9FxcBOk/…
  • mail: k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed

Certificate (current)

DigiCert EV RSA CA G2
from 2026-01-24 to 2027-02-03
Expires in 260 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.cpb.bank/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • short HSTS max-age
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
DENY
x-content-type-options
nosniff
content-security-policy
base-uri 'self';connect-src 'self' https://cpb.bank https://*.cpb.bank https://*.hsforms.com https://*.hsforms.net https://*.hubapi.com https://js.hscta.net https://*.hubspot.com https://static.hsappstatic.net https://pixel.quantserve.com https://px.ads.linkedin.com https://cdn.jsdelivr.net/npm/swiper@9/ https://cdn.jsdelivr.net/npm/popper.js@1.12.9/ https://cdn.jsdelivr.net/npm/bootstrap@4.0.0/ https://maxcdn.bootstrapcdn.com https://cdnjs.cloudflare.com/ajax/libs/ https://*.analytics.google.com https://*.google-analytics.com https://*.doubleclick.net https://*.googlesyndication.com https://*.gstatic.com https://*.googleapis.com https://www.googleadservices.com https://*.googletagmanager.com https://google.com https://*.google.com https://www.google.com/ccm/ https://analytics.google.com https://*.lpsnmedia.net wss://*.liveperson.net https://*.liveperson.net https://*.medallia.com https://*.kampyle.com https://*.adsrvr.org https://*.smtrk.net https://*.audioeye.com; default-src 'self'
strict-transport-security
max-age=2592000; includeSubDomains; preload

Links to (16)