ethias.be
HTML metadata
Technology
Third-party hosts loaded (1)
- assets.adobedtm.com×4
DNS records live
- NS
-
- ns3.nrb.be
- ns4.nrb.be
- ns5.nrb.be
- MX
-
- 0 mta01.nrb.be
- 0 mta02.nrb.be
- TXT
-
Show 13 TXT records
nHqdOO2KTRdHLHTUgevHOJPy9pQ+jdiI5hF6qvEiT1U=O+YDjBkNCFAJM+lkdy32xSHxBcPDzK4E6Fcni7EY0r49E6fpA4yNuB8vSVZY7qFG8L54042wjEeig1IwBnHENQ==k9PmEkKZfqmE2smBvqPXOZZBrC2+46DIjJjAV0EAlvo=axway-amplify=19f7588f-940f-44cc-91d0-aafe41b3b8bcbw=N8Y4zy17xm4EBmMrMkD0rBYtwMwgAIIy9E2jWISKPQqiZp/aaAcUl368plRqmrKQTeILBYk1gePta+AhJ2ZxzpI=IMjV7Bfr7rhNfdy+nTqeOo3BNGwFvqREhQKeO6hoCPg=p983h89Qs9pVb4qonj2wdVrawg9IV4VdUmcdH0dVoQQ=EuGel38Pk/G3wFUyQVi7euciZmJX1a8KtZEw5cOOQts=VHrXu8AMoihG51bDOQ3I8IyeQXFt8+Z0Q6jGuBqoKfk=Cb70Bo+DUgZfg2WkVoE/+cOeNknP1ogkwkkcvi+IUHk=5pt5eOUpHjh50JxniOCMG+E3oa7RLzVFDP0BgMZSZ9B+Wur48llYBKyGyxS7uf63+qc4HXLxMgz3GKzhFz0eAQ==IPROTA_D12666-XXX.TXT
- Verified for
-
- Atlassian
- Brevo
- GlobalSign
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:_spf.ethias_be._d.easydmarc.pro -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;rua=mailto:c9a04c8275@rua.easydmarc.eu;ruf=mailto:c9a04c8275@ruf.easydmarc.eu;fo=1policy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCFEDzME5YOXC7yR/5fJgd8N6CDP0dPBH1mYrE7+8O950V/6t0zTh6qp8xoap+afxVUXZe8vQEEHePcu9h9Dp… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnVFnool4zNmVNUYrWUwlPgGz0dFM3GImjjpwK0xHko7K5iwhOAz3TuNMAzrjImXs2GPJ1YGC7YJkUKMk0V… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQD3fChpxv3qEtjuOHuW6WUFto+7YTeACl1KaRwXR9WWc21vmv9EyHnrJndtfFO75+PhKsUlDI2Te4f6WOMzJmRcl7…
selectors probed - selector1:
Certificate (current)
GlobalSign Extended Validation CA - SHA256 - G3
Expires in 52 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'none';object-src 'self' livechat.ethias.be object.center;media-src 'self' blob: data: cdn.bluebillywig.com d1p3lxatg21of3.cloudfront.net;script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: *.usabilla.com *.cloudfront.net *.googletagmanager.com *.bing.com *.bing.net *.outbrain.com *.adform.net *.hotjar.com assets.adobedtm.com *.ethias.be *.doubleclick.net *.googleadservices.com google.com *.google.com *.google.be *.gstatic.com *.assistant.watson.appdomain.cloud edge.adobedc.net surfly.com https://*.nrb.be:* sc-static.net snap.licdn.com hs.pinimg.com *.tiktok.com *.tiktokw.us tr.snapchat.com s.pinimg.com *.pinterest.com maps.googleapis.com ethias-fail-better-components.fly.dev ethias-fail-better-components-v2.fly.dev ethias.bbvms.com cdn.bluebillywig.com googleads.g.doubleclick.net ad.doubleclick.net analytics.tiktok.com amplify.outbrain.com gateway.zscloud.net gateway.zscalertwo.net maiolute.tresimlerb.com static.hotjar.com player.vimeo.com cdn.jsdelivr.net *.facebook.com- strict-transport-security
max-age=63072000; includeSubDomains