firstinterstatebank.com

.com crawl dns

First seen 2026-04-15 · Last seen 2026-05-18 · ok HTTP/1.1 200 1825 ms crawled 2026-05-10

US · 151.101.66.137 · AS54113 Fastly, Inc.

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
GDPR | First Interstate Bank
Language
en

Open Graph

title
GDPR | First Interstate Bank

Technology

CDN
Cloudflare
CMS
Next.js
Cookie consent
  • OneTrust

Third-party hosts loaded (1)

  • cdn.cookielaw.org×1

Contact

Address
st Interstate BancSystem | NMLS #56153

Registration

Registrar
Tucows Domains Inc.
Created
1996-12-20
Expires
2026-12-19 214 days left
Updated
2025-11-20
Name servers
  • dns.firstinterstatebank.com
  • dns2.firstinterstatebank.com
  • dns3.firstinterstatebank.info

DNS records live

NS
  • dns.firstinterstatebank.com
  • dns2.firstinterstatebank.com
  • dns3.firstinterstatebank.info
MX
  • 10 us-smtp-inbound-1.mimecast.com
  • 10 us-smtp-inbound-2.mimecast.com

Email authentication strong

SPF
v=spf1 include:spf.mtasv.net include:amazonses.com ~all
softfail (~all)
DMARC
v=DMARC1;p=reject;rua=mailto:c40dabb26652320@rep.dmarcanalyzer.com;ruf=mailto:c40dabb26652320@for.dmarcanalyzer.com;fo=1;
policy: reject (enforced)
DKIM
no key found at common selectors

Certificate (current)

Entrust EV TLS Issuing RSA CA 2
from 2025-08-27 to 2026-08-28
Expires in 101 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://www.firstinterstatebank.com/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
default-src * 'self' data:; script-src * 'unsafe-inline'; style-src * blob: 'unsafe-inline'; frame-ancestors 'self' app.contentstack.com

Links to (10)

Linked from (12)