go2bank.com

.com crawl

First seen 2026-04-13 · Last seen 2026-05-07 · ok HTTP/1.1 200 1367 ms crawled 2026-05-07

US · 143.204.181.98 · AS16509 Amazon.com, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
The Mobile Bank that Works for You | GO2bank
Description
Get the benefits of early direct deposit, overdraft protection, and a high-yield savings account. Simplify your finances today!
Language
en
Canonical
https://www.go2bank.com/

Open Graph

url
https://www.go2bank.com/go2bank
title
The Mobile Bank that Works for You | GO2bank
description
Get the benefits of early direct deposit, overdraft protection, and a high-yield savings account. Simplify your finances today!

Technology

CDN
Amazon CloudFront
Server
Apache
CMS
Gatsby
Analytics
  • Google Tag Manager

Third-party hosts loaded (2)

  • assets.adobedtm.com×1
  • www.googletagmanager.com×1

Social

Contact

Address
P.O. Box 1070, 45071, West Chester, OH, US

Registration

Registrar
CSC Corporate Domains, Inc.
Created
2000-01-09
Expires
2027-01-09 235 days left
Updated
2025-01-05
Name servers
  • aliza.ns.cloudflare.com
  • dexter.ns.cloudflare.com

DNS records live

NS
  • aliza.ns.cloudflare.com
  • dexter.ns.cloudflare.com
MX
  • 0 go2bank-com.mail.protection.outlook.com
TXT
  • MS=ms65810052
  • _nz31feqh0tyn5g1ec7wmuduudc1d397
  • google-site-verification=IIvh7x7Ilj3nGK5zXC_-ke4qM2FqoB1u5cDTEMT0sLI

Email authentication strong

SPF
v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email ~all
softfail (~all)
DMARC
v=DMARC1; p=reject; rua=mailto:dmarc_agg@vali.email,mailto:61537769a95c991@rep.dmarcanalyzer.com; ruf=mailto:61537769a95c991@for.dmarcanalyzer.com; fo=1
policy: reject (enforced)
DKIM
no key found at common selectors

Certificate (current)

DigiCert Global G2 TLS RSA SHA256 2020 CA1
from 2025-11-25 to 2026-11-11
Expires in 176 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.go2bank.com/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
Header values
referrer-policy
no-referrer-when-downgrade
permissions-policy
fullscreen=*,geolocation=*, camera=()
x-content-type-options
nosniff
content-security-policy
default-src 'self' data: *.dv.socure.io *.adobedc.net google.com *.googletagmanager.com *.trustarc.com *.mpsnare.iesnare.com https://mpsnare.iesnare.com https://*.extole.io https://*.xtlo.net; object-src 'self' *.googletagmanager.com *.trustarc.com; child-src 'self' ujet.co google.com *.adobedc.net *.ujet.co *.truste.com *.trustarc.com *.googletagmanager.com blob:; script-src 'self' https://secure.walmartmoneycard.com 'unsafe-inline' 'unsafe-eval' google.com https://first.iovation.com/* https://www.clarity.ms/* https://*.gdctrking.com https://*.clarity.ms/* https://*.clarity.ms *.clarity.ms *.licdn.com *.adobedc.net *.dv.socure.io *.truste.com *.consent.trustarc.com *.googletagmanager.com *.trustarc.com *.adnxs.com *.tags.srv.stackadapt.com *.srv.stackadapt.com *.east.srv.stackadapt.com *.uw.srv.stackadapt.com *.eu.srv.stackadapt.com *.qvdt3feo.com *.stackadapt.com *.tags.srv.stackadapt.com *.redditstatic.com *.forter.com tags.stackadapt.com https://mpsnare.iesnare.com https://share.wa
strict-transport-security
max-age=31536000

Links to (7)

Linked from (1)