santander.gov.co

.co crawl

First seen 2026-04-15 · Last seen 2026-05-19 · ok HTTP/1.1 200 1442 ms crawled 2026-05-10

US · 34.102.161.203 · AS396982 Google LLC

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Sede Electrónica de la Gobernación de Santander
Description
Sede Electrónica de la Gobernación de Santander que reúne todos los trámites y servicios en línea para los ciudadanos
Language
es
Canonical
https://santander.gov.co

Open Graph

url
https://santander.gov.co
title
Sede Electrónica de la Gobernación de Santander
locale
es_la
site name
Sede Electrónica Gobernación de Santander
description
Sede Electrónica de la Gobernación de Santander que reúne todos los trámites y servicios en línea para los ciudadanos
locale:alternate
es_es

Technology

Server
nginx
Analytics
  • Google Tag Manager
Social widgets
  • Twitter Widget

Third-party hosts loaded (5)

  • www.googletagmanager.com×2
  • img.youtube.com×1
  • platform.twitter.com×1
  • www.facebook.com×1
  • www.instagram.com×1

Social

Contact

Email
Phone

DNS records live

NS
  • ns-cloud-c1.googledomains.com
  • ns-cloud-c2.googledomains.com
  • ns-cloud-c3.googledomains.com
  • ns-cloud-c4.googledomains.com
MX
  • 0 santander-gov-co.mail.protection.outlook.com

Email authentication partial

SPF
v=spf1 include:spf.protection.outlook.com include:spf.rpost.net -all
strict (-all)
DMARC
v=DMARC1;p=none;rua=mailto:postmaster@santander.gov.co
policy: none (monitoring only)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCWFc2umampWH4sY0uIBlZeTjM5S/gyyf9gxKJcJWjUZeBxD6gDpNrbvAjb4yWimql3z4flRtHJx46AFMCUAz…
selectors probed

Certificate (current)

Sectigo Public Server Authentication CA DV R36
from 2026-02-02 to 2027-02-25
Expires in 281 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://santander.gov.co/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin
x-frame-options
SAMEORIGIN
permissions-policy
geolocation=(), midi=(), sync-xhr=(self 'https://www.municipiodeguatape.gov.co' 'https://tramites.alcaldiadeipiales.gov.co' 'https://www.acacias.gov.co' 'https://santander.gov.co' 'https://tramites.alcaldiadesanantero.gov.co' 'https://tramitesenlineazipaquira.gov.co' 'https://sede.alcaldiadesanrafael.gov.co' 'https://tramites.pasto.gov.co' 'https://gfiles-zipaquira.gov.co' 'https://pasaportes.cordoba.gov.co' 'https://pasaportes.risaralda.gov.co' 'https://pasaportescaqueta.gov.co' 'https://sede.idsn.gov.co' 'https://www.barrancabermeja.gov.co' 'https://www.cordoba.gov.co' 'https://www.tramites-inza.gov.co' 'https://www.pereira.gov.co' 'https://tramites.popayan.gov.co' 'https://pasaportesatlantico.gov.co' 'https://pasaportes.cordoba.gov.co' 'https://creg.gov.co' 'https://tramites-tocancipa.gov.co' 'https://www.apartado-antioquia.gov.co' 'https://www.tramites-angostura.gov.co' 'https://www.alcaldiadepiedecuesta.gov.co' 'https://www.candelaria-valle.gov.co' 'https://www.sanpedrodelosmilagr
x-content-type-options
nosniff
content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: javascript: https://api.onesignal.com/ https://d1sag09wwfbul8.cloudfront.net/ https://tracker.metricool.com/ https://cdn.onesignal.com/ https://gso.kommo.com/ https://widgets.sociablekit.com/ https://googleads.g.doubleclick.net/ https://www.instagram.com/ https://www.twitter.com/ https://x.com/ https://syndication.twitter.com/ https://coomeva.com.co/ https://cdn.userway.org/ https://alcaldiatulua.agenti.com.co/agenti_lite_alcaldiatulua/js/jquery-3.7.1.min.js https://alcaldiatulua.agenti.com.co/agenti_lite_alcaldiatulua/js/scripts.js alcaldiatulua.agenti.com.co https://cdn.siftscience.com alcaldiapereira.agenti.com.co https://checkout.wompi.co/widget.js wolkvox-cobrowsing-agent-fd5zvw7swa-ue.a.run.app widget02.wolkvox.com d335luupugsy2.cloudfront.net wolkvox-cobrowsing-agent-fd5zvw7swa-ue.a.run.app https://platform.bluemessaging.net app.sitp.gov.co *.firebaseio.com *.aldeamo.com *.bootstrapcdn.com *.cloudflare.com https://chat1-cls27
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (28)

Linked from (9)