wellsfargoadvisors.com
HTML metadata
Technology
- CDN
- Akamai
- CMS
- Gatsby
Third-party hosts loaded (1)
- connect.secure.wellsfargo.com×1
Social
Registration
- Registrar
- MarkMonitor Inc.
- Created
- 2008-12-05
- Expires
- 2026-12-05 199 days left
- Updated
- 2024-08-13
- Name servers
-
- a1-189.akam.net
- a2-64.akam.net
- a24-66.akam.net
- edns1.ultradns.biz
- edns1.ultradns.com
- edns1.ultradns.net
DNS records live
- NS
-
- a1-189.akam.net
- a2-64.akam.net
- a24-66.akam.net
- edns1.ultradns.biz
- edns1.ultradns.com
- edns1.ultradns.net
- edns1.ultradns.org
- MX
-
- 10 mxa-00004003.gslb.pphosted.com
- 10 mxb-00004003.gslb.pphosted.com
- TXT
-
Show 13 TXT records
google-site-verification=qWm2t_v7Z1qa9ouSc8BqgS_Nuhs47ATCjWsvwfIumKoslack-domain-verification=oTm2ta6tveK9f8Ih05LARwgulU8KD8TCGDYptF0Idocusign=5dd100e6-435f-42cf-b73f-219e518d069agoogle-site-verification=5QWn96m5irFUdltZ1mO6atb1TqRD78EfThz1ABXYR_Qdocusign=5a1e9866-8750-43b2-b70d-b008d15a4c38MS=ms23224701_xwjpszt5ojvhiu6t6ntv3zzypivd84yadobe-idp-site-verification=a56c036457cd56a871f6776e92692db29d2577461b178e4b8132832dc9707367yahoo-verification-key=QDEO70WCwXBT8TXTkbSqZ58J+AeQ204TapnSIg6ZTfg=cisco-ci-domain-verification=57ee9b0ad98c0691d3bd9fb90a01d44aafd6b93a86424ca0510824a20049bf3agoogle-site-verification=B6iI2ljshVBXmxVY1WT9FIbQaGYD-A9p6lp1b3G-mQ4_q8bvtbf6jjxxnk9nwe6y4dfewhcun2vfacebook-domain-verification=k63mtruxymxrxo40c1oodzsf7vz251
Email authentication strong
- SPF
-
v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com,mailto:tn1d3s4FQU@dmarc.inboxmonster.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.com,mailto:wellsfargo-dmarc@datafeeds.phishlabs.com;policy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
Wells Fargo Public Trust Certification Authority 01 G2
Expires in 213 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'none';base-uri 'self';object-src 'none';font-src 'self' data: *.wellsfargo.com *.wellsfargoadvisors.com *.wfafinet.com *.wellsfargoclearingservicesllc.com *.wellsfargo.com:* fonts.gstatic.com;report-uri /reporting/csp.htm;img-src 'self' data: *.wellsfargoadvisors.com *.wfafinet.com *.wellsfargoclearingservicesllc.com wspublicprod.112.2o7.net px.ads.linkedin.com ad.doubleclick.net p.adsymptotic.com adservice.google.com 2549153.fls.doubleclick.net jadserve.postrelease.com www.google.com www.google-analytics.com pixel.everesttech.net cm.g.doubleclick.net bat.bing.com sp.analytics.yahoo.com connect.facebook.net www.linkedin.com www.facebook.com rtd-tm.everesttech.net googleads.g.doubleclick.net pdx-col.eum-appdynamics.com *.wellsfargomedia.com;style-src 'self' 'unsafe-inline' *.wellsfargoadvisors.com *.wfafinet.com *.wellsfargoclearingservicesllc.com;connect-src 'self' *.wellsfargoadvisors.com *.wfafinet.com *.wellsfargoclearingservicesllc.com *.wellsfargo.com google-analytics- strict-transport-security
max-age=31536000 ; includeSubDomains
Links to (6)
- wellsfargo.com×5
- wf.com×4
- facebook.com×3
- finra.org×3
- linkedin.com×3
- sipc.org×3