standardbank.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
- Ads
-
- Google Ads
- Meta Pixel
- Cookie consent
-
- OneTrust
Third-party hosts loaded (9)
- assets.adobedtm.com×3
- cdn.krxd.net×2
- connect.facebook.net×2
- static.ads-twitter.com×2
- www.googleadservices.com×2
- www.googletagmanager.com×2
- cdn.cookielaw.org×1
- cdn.fonts.net×1
- www.google.com×1
Social
Registration
- Registrar
- Lexsynergy Limited
- Created
- 1998-06-23
- Expires
- 2026-06-22 33 days left
- Updated
- 2025-05-23
- Name servers
-
- ns1.standardbank.co.za
- ns2.sbsa.com
DNS records live
- NS
-
- ns1.standardbank.co.za
- ns2.sbsa.com
- MX
-
- 10 standardbank-com.mail.protection.outlook.com
- TXT
-
Show 16 TXT records
standardsbg.com180secadobe-idp-site-verification=84bf037facb37d9dd04a2fj4ry2knjf1xzp4gngz9d6psd989vwzffca3-d4960cdd02604d45ac309638f644d12abrevo-code:5905d17c0e456cf9499a0e676a6d5e5c_96spbxhbd59oak6wzi7beo1z80477d4standardsbg.com180secadobe-sign-verification=f378a73d505e999c3a4ec433cdFoxit-domain-verification=1da8cb5a06871c5335f19e84bbbca75eBvaIMe75g0jxNiEz6NJ5loX9tlgWK/dgpCtzQE4RiGRbuT+f/ykIfP+GCgbB8UqpfcPlmsi9BfrFhQZuhEBaKg==_w7mo9degtytyp3nxh71v2s5dmvwdzhdfacebook-domain-verification=4jj3p3dhjyiz8ee7wdvqdagm1cguhjhnqx7w59p81vz9v556g77ngdxf3cns3zcyp6fq62y27xw49r3fjbgk2yc14cnqcwgoogle-site-verification=A8fPfTM5nxxm51pO0-v5e3odp9KJKADqsE_zCs3wl6gMS=ms41359197atlassian-domain-verification=zmcPfGSksYaS1TIXQODsz9hGIT63FKbmPZtmzmOtGzkYOSRCI7zMR3779FwCHF4x/QCOEzFl8s+tcPX8YW0DxS/dzODppZznuHyXt3h/yt25x1f8dBKs8GyReB/K+12m3EAdqLOEcNd6uzcIGEpLBg==
Email authentication strong
- SPF
-
v=spf1 ip4:161.71.36.242/31 ip4:161.71.36.244/30 ip4:196.8.96.0/19 ip4:18.199.10.73 include:spf.mandrillapp.com include:mailcontrol.com include:spf.protection.outlook.com include:email.insidedata.co.za ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=reject;rua=mailto:141a8754db12604@rep.dmarcanalyzer.com;ruf=mailto:141a8754db12604@for.dmarcanalyzer.com;sp=none;fo=1;policy: reject (enforced) · sp=none - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDd/urFeLyah9/N0YHZ3A1DXhyamWXiorNAJ7Pmm5gqslu+0bayjBxdFiPS1juYwiXSHaN+Vm3AOQYWUUjj2C… - mail:
v=DKIM1; h=sha256; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyMgDyQ11wpsSnT53NlBDtJW5/WvdksJo1qmu1Aeq0ZtiIRVeB3iU/EySqbK0C8/y/oNv… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxl0t4HyHnigclE1ZBxG36abD6NIwkzr4bJa9fQaOu5yW4ylCIpnXSFLuL46Nyi/4GfeN34IcQ0iVLwYpdj… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAp+Gwdn9WXFnxW/1buiet+I0YuiYx8mYAbyZYqH+E66C/atPkaAC9FPVJS1LNamARzKlMkczexzZWNi06TJ…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 33 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin- x-frame-options
SAMEORIGIN- content-security-policy
default-src 'self' 'unsafe-eval' 'unsafe-inline' https://riskfree-ratecalculator.standardbank.com/ http://cdn.fonts.net https://standardbank.germany-2.evergage.com https://snap.licdn.com https://cdn.evgnet.com data: https://con.evgnet.com https://cib.appstore.standardbank.co.za https://www.standardbank.com https://unpkg.com https://www.youtube.com https://img.youtube.com https://feeds2.iress.co.za https://df.marketdata.feeds.iress.com https://www.google.com *.tt.omtrdc.net https://stream.tribeca.vidavee.com stbg.standardbank.co.za stbg.standardbank.com stbg.standardbank.co.za stbg.standardbank.com https://www.googleapis.com https://platform.twitter.com 3.122.158.135 18.197.87.55 18.158.66.119 18.158.9.206 52.44.37.68 *.map2.ssl.hwcdn.net *.tt.omtrdc.net api.smartrecruiters.com cdn.cookielaw.org *.onetrust.com *.fls.doubleclick.net accstandardbank.d1.sc.omtrdc.net ad.doubleclick.net analytics.twitter.com assets.adobedtm.com beacon.krxd.net https://dev.cib.appstore.standa- strict-transport-security
max-age=31536000; includeSubDomains