Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 103.209.96.176 |
|
ℹ 🔵 Missing X-Frame-Options | The site can be embedded in iframes by third parties (clickjacking risk). |
|
ℹ 🔵 No Compression | The server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage. |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 103.209.96.176
ℹ 🔵 Missing X-Frame-Options The site can be embedded in iframes by third parties (clickjacking risk).
ℹ 🔵 No Compression The server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage.
Redirect Chain
| # | URL | HTTP Status Code | Status |
| 1 | https://sbi.co.in:443 | 301 | HTTP/1.1 301 Moved Permanently |
| 2 | https://sbi.co.in/redirect/ | 200 | HTTP/1.1 200 OK |
#1 URL https://sbi.co.in:443
HTTP Status Code 301
Status HTTP/1.1 301 Moved Permanently
#2 URL https://sbi.co.in/redirect/
HTTP Status Code 200
Status HTTP/1.1 200 OK
Performance
| DNS Lookup | 1.5 ms |
| TCP Connect | 125.3 ms |
| TLS Handshake | 126.2 ms |
| Time To First Byte (TTFB) | 376.6 ms |
| Content Download | 0.1 ms |
| Total Response Time | 376.6 ms |
DNS Lookup 1.5 ms
TCP Connect 125.3 ms
TLS Handshake 126.2 ms
Time To First Byte (TTFB) 376.6 ms
Content Download 0.1 ms
Total Response Time 376.6 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=31536000; includeSubDomains |
| CSP | ✔ Configured |
| X-Frame-Options | ⚠ Not configured |
| X-Content-Type-Options | ⚠ Not configured |
| Referrer Policy | no-referrer-when-downgrade |
| Permissions Policy | ✔ Configured |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=31536000; includeSubDomains
CSP ✔ Configured
X-Frame-Options ⚠ Not configured
X-Content-Type-Options ⚠ Not configured
Referrer Policy no-referrer-when-downgrade
Permissions Policy ✔ Configured
HTTP/2 ⚠ HTTP/1.1
SEO Quick Check
| Title | State Bank of India |
Title State Bank of India
Detected Technologies
| Technology | Google Analytics Google Tag Manager PHP |
Technology Google Analytics Google Tag Manager PHP
HTTP Headers
| Content-Type
| text/html |
| Content-Length
| 4297 |
| Connection
| keep-alive |
| Date
| Fri, 24 Jul 2026 09:26:00 GMT |
| Content-Security-Policy
| connect-src 'self' https://www.google-analytics.com https://*.sbi.bank.in https://maps.googleapis.com https://translation-plugin.bhashini.co.in/v2/translate-text https://mardiscpr.dwhmartr.sbi.bank.in/DiscoverUIPost.php; default-src 'self' https://*.sbi.bank.in; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.googletagmanager.com https://maps.googleapis.com https://www.google-analytics.com https://translation-plugin.bhashini.co.in/v2/website_translation_utility.js https://www.googletagmanager.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://translation-plugin.bhashini.co.in/v2/website_translation_utility.js https://translation-plugin.bhashini.co.in/v2/website_translation_utility.css; img-src 'self' data: https://translation-plugin.bhashini.co.in https://*.sbi.bank.in; font-src 'self' https://fonts.gstatic.com; frame-src 'self' https://www.youtube.com; object-src 'none'; |
| Permissions-Policy
| camera=(),microphone=(),autoplay=(),language-detector=(self),geolocation=(self),fullscreen=(self) |
| Last-Modified
| Sat, 06 Sep 2025 12:47:26 GMT |
| Strict-Transport-Security
| max-age=31536000; includeSubDomains |
| Referrer-Policy
| no-referrer-when-downgrade |
| X-XSS-Protection
| 1; mode=block |
| X-Permitted-Cross-Domain-Policies
| none |
| Vary
| User-Agent |
| Content-Language
| en-US |
Meta Tags
| Viewport | width=device-width, initial-scale=1.0 |
| Refresh | 5; url=https://sbi.bank.in/ |
Content-Type text/html
Content-Length 4297
Connection keep-alive
Date Fri, 24 Jul 2026 09:26:00 GMT
Content-Security-Policy connect-src 'self' https://www.google-analytics.com https://*.sbi.bank.in https://maps.googleapis.com https://translation-plugin.bhashini.co.in/v2/translate-text https://mardiscpr.dwhmartr.sbi.bank.in/DiscoverUIPost.php; default-src 'self' https://*.sbi.bank.in; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.googletagmanager.com https://maps.googleapis.com https://www.google-analytics.com https://translation-plugin.bhashini.co.in/v2/website_translation_utility.js https://www.googletagmanager.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://translation-plugin.bhashini.co.in/v2/website_translation_utility.js https://translation-plugin.bhashini.co.in/v2/website_translation_utility.css; img-src 'self' data: https://translation-plugin.bhashini.co.in https://*.sbi.bank.in; font-src 'self' https://fonts.gstatic.com; frame-src 'self' https://www.youtube.com; object-src 'none';
Permissions-Policy camera=(),microphone=(),autoplay=(),language-detector=(self),geolocation=(self),fullscreen=(self)
Last-Modified Sat, 06 Sep 2025 12:47:26 GMT
Strict-Transport-Security max-age=31536000; includeSubDomains
Referrer-Policy no-referrer-when-downgrade
X-XSS-Protection 1; mode=block
X-Permitted-Cross-Domain-Policies none
Vary User-Agent
Content-Language en-US