Note: This is not a stable API during the beta. Providing highlighted JSON instead of raw JSON data is therefore intentional.
{
"flashcookies_count": null,
"mx_scan_failed": true,
"third_parties": [
"akamai.tiqcdn.com",
"cdn.appdynamics.com",
"col.eum-appdynamics.com",
"tags.tiqcdn.com"
],
"final_url_is_https": true,
"web_has_hsts_header": true,
"requests": [
{
"headers": null,
"method": null,
"referrer": null,
"url": "http://www.hsbc.com.mt/"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/etc.clientlibs/dpws/clientlibs-public/clientlib-default.min.fc01337904020ef01b91ea662443a3e5.css"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://tags.tiqcdn.com/utag/hsbc/mt-rbwm/prod/utag.sync.js"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/etc.clientlibs/hsbc/global/clientlibs/appd.min.28729b81913621076cb1004898cb22c7.js"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/content/dam/hsbc/hbmt/images/logos/hsbc-logo.svg"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/content/dam/hsbc/hbmt/images/bank-accounts/16-9/10857-hsbc-students-campaign-2000x1125.jpg/jcr:content/renditions/cq5dam.web.1680.1000.jpeg"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/content/dam/hsbc/hbmt/images/bank-accounts/21-9-homepage/9347-couple-on-video-call-1240x400.jpg"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/content/dam/hsbc/hbmt/images/help/16-9/father-child-using-phone-home.jpg/jcr:content/renditions/cq5dam.web.590.1000.jpeg"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/content/dam/hsbc/hbmt/images/help/16-9/1654-person-smiling-800x450.jpg/jcr:content/renditions/cq5dam.web.590.1000.jpeg"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/content/dam/hsbc/hbmt/images/16-9/offset-comp-480410.jpg/jcr:content/renditions/cq5dam.web.590.1000.jpeg"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/etc.clientlibs/dpws/clientlibs-public/clientlib-jquery.e707977d551ec8c86a2541af384e7f64.js"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/etc.clientlibs/dpws/clientlibs-public/clientlib-all.min.c5d37f117a2aa465ed46e4c61fe69bf0.js"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://tags.tiqcdn.com/utag/hsbc/mt-rbwm/prod/utag.js"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/etc.clientlibs/dpws/clientlibs-public/clientlib-site/resources/social/youtube.svg"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/etc.clientlibs/dpws/clientlibs-public/clientlib-site/resources/social/twitter.svg"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/etc.clientlibs/dpws/clientlibs-public/clientlib-site/resources/social/facebook.svg"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/etc.clientlibs/dpws/clientlibs-public/clientlib-site/resources/fonts/HSBCIcon-Font-Extension.woff?ee39a20e77cff3aec879befe2cd1d29d"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/etc.clientlibs/dpws/clientlibs-public/clientlib-site/resources/fonts/UniversNextforHSBCW02-Bd.woff"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/etc.clientlibs/dpws/clientlibs-public/clientlib-site/resources/fonts/UniversNextforHSBCW02-Rg.woff"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/etc.clientlibs/dpws/clientlibs-public/clientlib-site/resources/fonts/UniversNextforHSBCW02-Lt.woff"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/etc.clientlibs/dpws/clientlibs-public/clientlib-site/resources/fonts/UniversNextforHSBCW02-Md.woff"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/etc.clientlibs/dpws/clientlibs-public/clientlib-site/resources/fonts/UniversNextforHSBCW02-LtIt.woff"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/configuration/modals/you-are-leaving-hsbc.modal/"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/auth-status-hint?_=1695513289445"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://www.hsbc.com.mt/etc.clientlibs/dpws/clientlibs-public/clientlib-site/resources/fonts/HSBCIcon-Font.woff?ee39a20e77cff3aec879befe2cd1d29d"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://akamai.tiqcdn.com/location/location.js"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://tags.tiqcdn.com/utag/tiqapp/utag.v.js?a=hsbc/mt-rbwm/202211302006&cb=1695513290128"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://cdn.appdynamics.com/adrum-ext.0086dbec5e8a6e717bf36d3a06b62042.js"
},
{
"headers": null,
"method": null,
"referrer": null,
"url": "https://col.eum-appdynamics.com/eumcollector/beacons/browser/v1/AD-AAB-AAD-DBV/adrum"
}
],
"web_ciphers": {
"std_HIGH": {
"severity": "MEDIUM",
"finding": "High encryption (AES+Camellia, no AEAD) not offered"
}
},
"requests_count": 30,
"web_cert_trusted": true,
"a_locations": [
"United States"
],
"initial_url": "http://www.hsbc.com.mt/",
"flashcookies": [],
"web_has_hpkp_header": false,
"web_has_ssl": true,
"mx_records": [
[
10,
"symailserver.hsbc.co.uk"
],
[
20,
"nwmailserver.hsbc.co.uk"
]
],
"web_vulnerabilities": {
"breach": {
"cve": "CVE-2013-3587",
"severity": "HIGH",
"finding": "BREACH: potentially VULNERABLE, uses gzip HTTP compression. - only supplied '/' tested ( Can be ignored for static pages or if no secrets in the page)"
}
},
"a_records_reverse": [
[
"server-143-204-215-99.fra53.r.cloudfront.net"
],
[
"server-143-204-215-42.fra53.r.cloudfront.net"
],
[
"server-143-204-215-114.fra53.r.cloudfront.net"
],
[
"server-143-204-215-77.fra53.r.cloudfront.net"
]
],
"mx_ssl_finished": true,
"openwpm_final_url": "https://www.hsbc.com.mt/",
"mixed_content": false,
"headerchecks": {
"x-content-type-options": {
"status": "OK",
"value": "nosniff"
},
"x-frame-options": {
"status": "INFO",
"value": "SAMEORIGIN"
},
"content-security-policy": {
"status": "INFO",
"value": "default-src 'self' *.hsbc.com.hk; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.tiqcdn.com *.tealiumiq.com *.liveperson.net *.googletagmanager.com *.hsbc.co.uk *.hsbc.com.hk *.doubleclick.net *.googleadservices.com *.lpsnmedia.net *.optimizely.com *.facebook.net *.google.com *.gstatic.com *.appdynamics.com *.googleapis.com *.awswaf.com *.analytics.yahoo.com vjs.zencdn.net players.brightcove.net cdn.optimizely.com tags.tiqcdn.com www.google-analytics.com ssl.google-analytics.com tt.omtrdc.net *.sc.omtrdc.net *.demdex.net *.twitter.com t.co *.walkme.com *.omguk.com *.adsrvr.org cliveperson.com *.contentsquare.com *.qualtrics.com *.quantserve.com *.outbrain.com *.taboola.com *.amazon-adsystem.com cdn.appdynamics.com cdn-assets-prod.s3.amazonaws.com; img-src data: * blob:; connect-src 'self' *.tiqcdn.com *.tealiumiq.com *.hsbc.com.hk *.eum-appdynamics.com *.optimizely.com wss://*.liveperson.net *.cloud.hsbc *.awswaf.com *.analytics.yahoo.com players.brightcove.net edge.api.brightcove.com *.siteintercept.qualtrics.com *.brightcovecdn.com *.api.brightcove.com maps.googleapis.com *.analytics.google.com *.g.doubleclick.net www.google-analytics.com dpm.demdex.net collect.tealiumiq.com http://127.0.0.1:5000 http://127.0.0.1:5000/* tt.omtrdc.net *.sc.omtrdc.net *.demdex.net *.liveperson.net *.google.com *.walkme.com pixel.everesttech.net *.contentsquare.com *.qualtrics.com rbwm-api.us.hsbc.com rbwm-api.hsbc.co.uk rbwm-api.hsbc.com.hk manifest.prod.boltdns.net cdn-assets-prod.s3.amazonaws.com; frame-src 'self' blob: *.lpsnmedia.net *.optimizely.com *.liveperson.net *.google.com *.doubleclick.net *.analytics.yahoo.com players.brightcove.net www.youtube.com *.demdex.net *.walkme.com liveperson.com *.qualtrics.com m.youtube.com; frame-ancestors 'self' *.hsbc.com.mt; font-src 'self' data: *.hsbc.com.hk fonts.gstatic.com www.slant.co; worker-src 'self' blob: *.demdex.net *.lpsnmedia.net *.liveperson.net *.google.com; style-src 'self' 'unsafe-inline' *.hsbc.com.hk *.googleapis.com players.brightcove.net; object-src 'self' players.brightcove.net; media-src 'self' blob: *.boltdns.net *.media.brightcove.com *.llnw.net *.llnwd.net *.akafms.net *.akamaihd.net *.cf.brightcove.com *.brightcovecdn.com ssl.gstatic.com manifest.prod.boltdns.net; manifest-src 'self'; upgrade-insecure-requests ; report-uri /csp/report;"
},
"x-xss-protection": {
"status": "OK",
"value": "1; mode=block"
},
"referrer-policy": {
"status": "MISSING",
"value": ""
}
},
"web_ssl_finished": true,
"cookie_stats": {
"first_party_flash": 0,
"first_party_long": 1,
"third_party_track_domains": [],
"third_party_track_uniq": 0,
"first_party_short": 1,
"third_party_long": 0,
"third_party_short": 0,
"third_party_track": 0,
"third_party_flash": 0
},
"tracker_requests": [
"cdn.appdynamics.com",
"col.eum-appdynamics.com"
],
"web_has_hsts_header_sufficient_time": true,
"third_parties_count": 4,
"final_url": "https://www.hsbc.com.mt/",
"google_analytics_present": false,
"web_has_hsts_preload_header": false,
"web_cert_trusted_reason": "",
"final_https_url": "https://www.hsbc.com.mt/",
"web_has_protocol_sslv3": false,
"web_has_protocol_tls1": false,
"profilecookies": [
{
"baseDomain": "hsbc.com.mt",
"isHttpOnly": false,
"value": "",
"lifetime": -1,
"path": "/",
"name": "tms_ref",
"expiry": -1,
"isSecure": false,
"host": ".hsbc.com.mt"
},
{
"baseDomain": "hsbc.com.mt",
"isHttpOnly": false,
"value": "v_id:018ac477a51100987bbdcf6a5fc800069001806100bd0$_sn:1$_se:1$_ss:1$_st:1695515090002$ses_id:1695513290002%3Bexp-session$_pn:1%3Bexp-session",
"lifetime": 31536002,
"path": "/",
"name": "utag_main",
"expiry": 1727049290,
"isSecure": false,
"host": ".hsbc.com.mt"
}
],
"cname_records": [
"hsbc.com.mt.prod.eu.dynp.cloud1.vv1865.com"
],
"success": true,
"https": true,
"mx_locations": [
"United Kingdom"
],
"mx_a_records_reverse": [
[
10,
[
[
"symailserver.hsbc.co.uk"
]
]
],
[
20,
[
[
"nwmailserver.hsbc.co.uk"
]
]
]
],
"cookies_count": 2,
"third_party_requests_count": 6,
"web_pfs": true,
"leaks": [],
"web_has_protocol_tls1_1": false,
"web_has_hsts_preload": false,
"reachable": true,
"a_records": [
"143.204.215.99",
"143.204.215.42",
"143.204.215.114",
"143.204.215.77"
],
"redirected_to_https": true,
"mx_a_records": [
[
10,
[
"193.108.76.55"
]
],
[
20,
[
"91.214.7.40"
]
]
],
"responses": null,
"web_has_protocol_tls1_2": true
}