https://www.onlinegdb.com/u0v_HrogW

Eingereichte URL:
https://onlinegdb.com/u0v_HrogWUmgeleitet
Bericht beendet:

Risiken · 0 gefunden

Copy link
  • Ohne Klassifizierung

Security Header · 0 gefunden

Copy link
  • Nicht festgelegt
NameWertSupportInfo
Strict-Transport-SecurityGutartigDeklarieren, dass eine Website nur über eine sichere Verbindung (HTTPS) zugänglich ist.

Klicken, um mehr zu erfahren ...
X-Frame-OptionsGutartigGeben Sie an, ob ein Browser eine Seite in einem <frame>, <iframe>, <embed> oder <object> darstellen darf.

Klicken, um mehr zu erfahren ...
X-Content-Type-OptionsGutartigAngeben, dass die in den Headern-Content-Type angekündigten MIME-Typen befolgt und nicht verändert werden sollen.

Klicken, um mehr zu erfahren ...
Content-Security-PolicyGutartigRessourcen kontrollieren, die der Nutzer-Agent für eine bestimmte Seite laden darf.

Klicken, um mehr zu erfahren ...
Referrer-PolicyGutartigKontrollieren, wie viele Referrer-Informationen in die Anfragen aufgenommen werden sollen.

Klicken, um mehr zu erfahren ...
Clear-Site-DataGutartigDie von einem Client-Browser gespeicherten Daten auf ihren Ursprung hin kontrollieren.

Klicken, um mehr zu erfahren ...
X-Permitted-Cross-Domain-PoliciesGutartigKontrollieren, ob ein Web-Client wie Adobe Flash Player oder Adobe Acrobat die Erlaubnis hat, Daten über Domains hinweg zu verarbeiten.

Klicken, um mehr zu erfahren ...
Permissions-PolicyNeuDie Verwendung von Browser-Features in einem Dokument oder Iframe zulassen oder verweigern.

Klicken, um mehr zu erfahren ...
Cross-Origin-Embedder-PolicyNeuEinbettung von Cross-Origin-Ressourcen in das Dokument konfigurieren.

Klicken, um mehr zu erfahren ...
Cross-Origin-Opener-PolicyNeuSicherstellen, dass ein Top-Level-Dokument nicht eine Browsing-Kontextgruppe mit Cross-Origin-Dokumenten teilt.

Klicken, um mehr zu erfahren ...
Cross-Origin-Resource-PolicyNeuAnfordern, dass der Browser No-Cors Cross-Origin-/Cross-Site-Anfragen an die angegebene Ressource blockiert.

Klicken, um mehr zu erfahren ...
X-XSS-ProtectionVeraltetVeraltet. Stoppt den Ladevorgang von Seiten, wenn sie reflektierte Cross-Site-Scripting (XSS)-Angriffe erkennen.

Klicken, um mehr zu erfahren ...
Feature-PolicyVeraltetVeraltet. Ersetzt durch den Permissions-Policy-Header.

Klicken, um mehr zu erfahren ...
Expect-CTVeraltetVeraltet. Sich für Berichte und/oder die Durchsetzung der Anforderungen an die Zertifikatstransparenz entscheiden.

Klicken, um mehr zu erfahren ...
Public-Key-PinsVeraltetVeraltet. Ermöglicht HTTPS-Websites den Schutz vor Angreifern, die falsch ausgestellte oder anderweitig gefälschte Zertifikate verwenden.

Klicken, um mehr zu erfahren ...

Sicherheitsverstöße · 12 gefunden

Copy link
VerstoßTypInfo
Ressource
https://www.onlinegdb.com/u0v_HrogW
Beschreibung
Access to XMLHttpRequest at 'https://ads.servenobid.com/adreq' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Klicken, um mehr zu erfahren ...
Ressource
https://www.onlinegdb.com/u0v_HrogW
Beschreibung
Access to XMLHttpRequest at 'https://ads.servenobid.com/adreq?upapi=true' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Klicken, um mehr zu erfahren ...
Ressource
https://www.onlinegdb.com/u0v_HrogW
Beschreibung
Access to fetch at 'https://static.criteo.net/js/ld/publishertag.prebid.js' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Request header field amiksika is not allowed by Access-Control-Allow-Headers in preflight response.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Klicken, um mehr zu erfahren ...
Ressource
https://www.onlinegdb.com/u0v_HrogW
Beschreibung
Access to XMLHttpRequest at 'https://api.btloader.com/pv?tid=Nxf1Kd8q9-AJ6JQ9cVoO-945405a5a6&w=6245015796318208&o=5102648370397184&cv=2.1.67-1-g39aeacf&widget=false&r=false&vr=800x600&pageURL=https%3A%2F%2Fwww.onlinegdb.com%2Fu0v_HrogW&sid=P1onBuOm-siLIUIhZkh-945405a5a6&pm=true&upapi=true' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Klicken, um mehr zu erfahren ...
Ressource
https://www.onlinegdb.com/u0v_HrogW
Beschreibung
Access to fetch at 'https://api.btloader.com/country?o=5102648370397184' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource. If an opaque response serves your needs, set the request's mode to 'no-cors' to fetch the resource with CORS disabled.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Klicken, um mehr zu erfahren ...
Ressource
https://www.onlinegdb.com/u0v_HrogW
Beschreibung
Access to fetch at 'https://api.btmessage.com/websiteconfig?bt_env=prod&o=5102648370397184&w=onlinegdb.com&l=EN' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource. If an opaque response serves your needs, set the request's mode to 'no-cors' to fetch the resource with CORS disabled.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Klicken, um mehr zu erfahren ...
Ressource
https://www.onlinegdb.com/u0v_HrogW
Beschreibung
Access to fetch at 'https://api.btmessage.com/mw/state?bt_env=prod' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource. If an opaque response serves your needs, set the request's mode to 'no-cors' to fetch the resource with CORS disabled.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Klicken, um mehr zu erfahren ...
Ressource
https://www.onlinegdb.com/u0v_HrogW
Beschreibung
Access to fetch at 'https://api.btmessage.com/log?tid=Nxf1Kd8q9-AJ6JQ9cVoO-945405a5a6&cv=2.1.67-1-g39aeacf&sid=P1onBuOm-siLIUIhZkh-945405a5a6&upapi=true' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource. If an opaque response serves your needs, set the request's mode to 'no-cors' to fetch the resource with CORS disabled.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Klicken, um mehr zu erfahren ...
Ressource
https://www.onlinegdb.com/u0v_HrogW
Beschreibung
Access to fetch at 'https://ad.doubleclick.net/favicon.ico?ad=300x250&ad_box_=1&adnet=1&showad=1&size=250x250' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Request header field amiksika is not allowed by Access-Control-Allow-Headers in preflight response.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Klicken, um mehr zu erfahren ...
Ressource
https://www.onlinegdb.com/u0v_HrogW
Beschreibung
Access to XMLHttpRequest at 'https://c.amazon-adsystem.com/cdn/prod/config?src=600&u=https%3A%2F%2Fwww.onlinegdb.com&pubid=747b8b51-ec47-4dee-9823-b2b73124b71f' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Klicken, um mehr zu erfahren ...
Ressource
https://www.onlinegdb.com/u0v_HrogW
Beschreibung
Access to XMLHttpRequest at 'https://aax.amazon-adsystem.com/e/dtb/bid?src=600&u=https%3A%2F%2Fwww.onlinegdb.com%2Fu0v_HrogW&pr=https%3A%2F%2Fgithub.com%2F&pid=s0xAZ7G9qgLVo&cb=0&ws=800x600&v=24.1212.711&t=2500&slots=%5B%7B%22sd%22%3A%22bsa-zone_1573224210072-0_123456%22%2C%22s%22%3A%5B%22728x90%22%5D%2C%22sn%22%3A%22%2F22960212090%2C22987729508%2FOnlineGDB_S2S_Leaderboard_BTF%22%7D%5D&schain=1.0%2C1%21buysellads.com%2C2703%2C1%2C%2C%2C%21google.com%2Cpub-9961814823930967%2C1%2C%2C%2C&pubid=747b8b51-ec47-4dee-9823-b2b73124b71f&gdprl=%7B%22status%22%3A%22no-cmp%22%7D' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Klicken, um mehr zu erfahren ...
Ressource
blob:https://www.onlinegdb.com/26276f24-fed2-4b84-92b5-67286fc6ca94
Beschreibung
Failed to set referrer policy: The value '' is not one of 'always', 'default', 'never', 'origin-when-crossorigin', 'no-referrer', 'no-referrer-when-downgrade', 'origin', 'origin-when-cross-origin', 'same-origin', 'strict-origin', 'strict-origin-when-cross-origin', or 'unsafe-url'. The referrer policy has been left unchanged.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Klicken, um mehr zu erfahren ...

Zertifikate · 36 gefunden

Copy link
GegenstandAusstellungsdatumAblaufdatum
onlinegdb.com24. Dez. 2024, 15:34:5524. März 2025, 16:33:15
cdnjs.cloudflare.com26. Nov. 2024, 07:25:1824. Feb. 2025, 07:25:17
m.servedby-buysellads.com14. Okt. 2024, 00:00:0012. Nov. 2025, 23:59:59
html-load.com1. Jan. 2025, 19:04:161. Apr. 2025, 20:04:10
cdn.carbonads.com16. Okt. 2024, 00:00:0015. Nov. 2025, 23:59:59
*.cdn4.buysellads.net18. Nov. 2024, 11:41:1316. Feb. 2025, 11:41:12
*.google-analytics.com9. Dez. 2024, 08:36:183. März 2025, 08:36:17
www.clarity.ms4. Sept. 2024, 00:00:004. Sept. 2025, 23:59:59
*.carbonads.net18. Nov. 2024, 11:39:1116. Feb. 2025, 11:39:10
ads.servenobid.com29. Dez. 2024, 20:57:0129. März 2025, 20:57:00