novobanco.pt
HTML metadata
Technology
- Cookie consent
-
- OneTrust
Third-party hosts loaded (2)
- assets.adobedtm.com×1
- cdn.cookielaw.org×1
Social
Contact
- Address
- Campus do novobanco, Avenida Doutor Mário Soares, Taguspark, Edifício 1, 2740-119, Porto Salvo, PT
DNS records live
- NS
-
- ns1.novobanco.pt
- ns2.novobanco.pt
- ns3.novobanco.pt
- MX
-
- 10 mail1.novobanco.pt
- 10 mail3.novobanco.pt
- TXT
-
atlassian-domain-verification=aTqyyHLf0iBKqai3SUP1H0OY6DCPzj6UvTJATRjFWgiF7UmNKcgyXtDxIiaafxh/google-site-verification=oxuy4b0oRRRkLMGq-YCbf6iyiw1QZnc1ucBV2jCxe1sgoogle-site-verification=PVjRLm81jUkm7H4RR5DJICRx2meO91j9ked5HaA0BGo
Email authentication strong
- SPF
-
v=spf1 ip4:194.65.36.0/24 ip4:194.65.23.0/24 include:spf.mandrillapp.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; pct=100; fo=1; ri=3600; rua=mailto:dmarc@novobanco.pt,mailto:novobanco@rua.netcraft.com; ruf=mailto:dmarc@novobanco.pt;policy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
DigiCert EV RSA CA G2
Expires in 179 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self'; font-src 'self' data: *.novobanco.pt novobanco.pt novobancodosacores.pt *.novobancodosacores.pt *.gstatic.com *.apps.aro03.bdso.tech; frame-ancestors 'self' *.novobanco.pt novobanco.pt novobancodosacores.pt *.novobancodosacores.pt www.olx.pt m.olx.pt bdso.sharepoint.com www.m.olx.pt *.googleapis.com youtube.com *.youtube.com sdk.companywebcast.com vr.unit360.pt *.onlinepayments.pt oppwa.com *.autenticacao.gov.pt; script-src 'self' 'unsafe-inline' 'unsafe-eval' sec-qua.novobanco.pt cm.everesttech.net *.apps.aro03.bdso.tech dev.day.com www.webrtc-experiment.com *.novobanco.pt *.novobancodosacores.pt code.createjs.com fonts.googleapis.com webcare.byside.com www.googletagmanager.com maps.googleapis.com s1.byside.com s.ytimg.com onlinepayments.pt oppwa.com d3c3lm.cq33003psk.cloudfront.net tagmanager.google.com googleads.g.doubleclick.net www.googleadservices.com connect.facebook.net www.facebook.com cdn.cookielaw.org cdn.evgnet.com geolocation.onetrust.com optimize.go- strict-transport-security
max-age=31557600