ID de l'analyse :
4a75bcb5-fb32-4e42-8fd5-3afd1f107acbTerminée
URL soumise :
https://iosh.com/
Fin du rapport :
Public

Risques : 0 trouvé(s)

Copier le lien

Pratiques potentiellement associées à des risques pour la sécurité

  • Aucune classification

Violations de sécurité : 9 trouvée(s)

Copier le lien

Requêtes et ressources qui constituent une infraction aux politiques de sécurité

ViolationTypeInfos
Ressource
https://iosh.com/
Description
Refused to load the image 'https://px4.ads.linkedin.com/collect?v=2&fmt=js&pid=501217&time=1744034163909&url=https%3A%2F%2Fiosh.com%2F&tm=gtmv2&e_ipv6=AQKmZAEQP0PTOAAAAZYQiW0jBM6fyJxYyLNT4KIFH4M1-8F-AvuGagFD5YdbKRGkfyUC7biIGrGoP_2X' because it violates the following Content Security Policy directive: "img-src data: https://bat.bing.com/ https://c.bing.com https://c.clarity.ms https://cdn.cookielaw.org https://cookie-cdn.cookiepro.com/ https://fonts.gstatic.com https://googleads.g.doubleclick.net https://px.ads.linkedin.com https://script.hotjar.com https://services.postcodeanywhere.co.uk https://tagmanager.google.com https://www.facebook.com/ https://www.google.co.uk https://www.google.com https://www.google-analytics.com https://www.googletagmanager.com 'self'".
Politique de sécurité du contenuContrôle les ressources que l'agent utilisateur est autorisé à charger pour une page donnée.

Cliquez pour en savoir plus...
Ressource
https://www.googletagmanager.com/gtm.js?id=GTM-MMLRM3LV
Description
Refused to connect to 'https://pagead2.googlesyndication.com/ccm/collect?en=page_view&dl=https%3A%2F%2Fiosh.com%2F&scrsrc=www.googletagmanager.com&frm=0&rnd=423033337.1744034165&navt=n&npa=1&gtm=45He5421v9174733031za200&gcs=G100&gcd=13p3p3p2p5l1&dma_cps=-&dma=1&tag_exp=102788824~102803279~102813109~102887799~102926062~102975949~103016951~103021830~103027016&tft=1744034164680&tfd=2512&apve=1' because it violates the following Content Security Policy directive: "connect-src *.convertexperiments.com *.metrics.converexperiments.com http://iosh-api.uat.iosh.local/api/ https://api.crownpeak.net/dqm-cms/v1/ https://api.iosh.co.uk/ https://app.optimalworkshop.com https://ask.hotjar.io/api/ https://cdn.cookielaw.org https://content.hotjar.io https://cookie-cdn.cookiepro.com/ https://e.clarity.ms/collect https://geolocation.onetrust.com/cookieconsentpub/v1/geo/location https://googleads.g.doubleclick.net https://gtm-ncxkmtc-ngfhn.uc.r.appspot.com/ https://in.hotjar.com/api/ https://logs.convertexperiments.com https://metrics.hotjar.io/ https://px.ads.linkedin.com https://region1.analytics.google.com https://region1.google-analytics.com https://services.postcodeanywhere.co.uk https://stats.g.doubleclick.net https://surveystats.hotjar.io https://www.facebook.com/ https://www.google.com https://www.googleadservices.com https://www.google-analytics.com https://www.googletagmanager.com https://y.clarity.ms https://z.clarity.ms/collect 'self' wss://ws.hotjar.com/api/".
Politique de sécurité du contenuContrôle les ressources que l'agent utilisateur est autorisé à charger pour une page donnée.

Cliquez pour en savoir plus...
Ressource
https://bat.bing.com/bat.js
Description
Refused to connect to 'https://bat.bing.net/actionp/0?ti=187163447&tm=gtm002&Ver=2&mid=f5cf6fde-3fcb-4555-9a9a-8ed4b1aa0681&bo=1&evt=consent&src=enforced&cdb=AQAY&asc=D' because it violates the following Content Security Policy directive: "connect-src *.convertexperiments.com *.metrics.converexperiments.com http://iosh-api.uat.iosh.local/api/ https://api.crownpeak.net/dqm-cms/v1/ https://api.iosh.co.uk/ https://app.optimalworkshop.com https://ask.hotjar.io/api/ https://cdn.cookielaw.org https://content.hotjar.io https://cookie-cdn.cookiepro.com/ https://e.clarity.ms/collect https://geolocation.onetrust.com/cookieconsentpub/v1/geo/location https://googleads.g.doubleclick.net https://gtm-ncxkmtc-ngfhn.uc.r.appspot.com/ https://in.hotjar.com/api/ https://logs.convertexperiments.com https://metrics.hotjar.io/ https://px.ads.linkedin.com https://region1.analytics.google.com https://region1.google-analytics.com https://services.postcodeanywhere.co.uk https://stats.g.doubleclick.net https://surveystats.hotjar.io https://www.facebook.com/ https://www.google.com https://www.googleadservices.com https://www.google-analytics.com https://www.googletagmanager.com https://y.clarity.ms https://z.clarity.ms/collect 'self' wss://ws.hotjar.com/api/".
Politique de sécurité du contenuContrôle les ressources que l'agent utilisateur est autorisé à charger pour une page donnée.

Cliquez pour en savoir plus...
Ressource
https://iosh.com/
Description
Refused to load the image 'https://bat.bing.net/action/0?ti=187163447&tm=gtm002&Ver=2&mid=f5cf6fde-3fcb-4555-9a9a-8ed4b1aa0681&bo=2&gtm_tag_source=1&pi=918639831&lg=en-US&sw=1&sh=1&sc=24&tl=Institution%20of%20Occupational%20Safety%20and%20Health%20%7C%20IOSH&kw=homepage,%20news,%20strategy,%20support,%20iosh,%20institution,%20institute,%20occupational,%20safety,%20health&p=https%3A%2F%2Fiosh.com%2F&r=&lt=1068&evt=pageLoad&sv=1&asc=D&cdb=AQAY&rn=698018' because it violates the following Content Security Policy directive: "img-src data: https://bat.bing.com/ https://c.bing.com https://c.clarity.ms https://cdn.cookielaw.org https://cookie-cdn.cookiepro.com/ https://fonts.gstatic.com https://googleads.g.doubleclick.net https://px.ads.linkedin.com https://script.hotjar.com https://services.postcodeanywhere.co.uk https://tagmanager.google.com https://www.facebook.com/ https://www.google.co.uk https://www.google.com https://www.google-analytics.com https://www.googletagmanager.com 'self'".
Politique de sécurité du contenuContrôle les ressources que l'agent utilisateur est autorisé à charger pour une page donnée.

Cliquez pour en savoir plus...
Ressource
https://iosh.com/
Description
Access to fetch at 'https://gtm-ncxkmtc-ngfhn.uc.r.appspot.com/g/collect?v=2&tid=G-23GZ18ZCJ5&gtm=45je5421v893385344z89174733031za200zb9174733031&_p=1744034162755&gcs=G100&gcd=13p3p3p2p5l1&npa=1&dma_cps=-&dma=1&tag_exp=102788824~102803279~102813109~102887799~102926062~102975949~103016951~103021830~103027016&gdid=dYWJhMj&cid=870380218.1744034165&ecid=1126340376&ul=en-us&sr=1x1&_fplc=0&ur=ES-CL&uaa=&uab=&uafvl=&uamb=0&uam=&uap=&uapv=&uaw=0&frm=0&pscdl=denied&sst.rnd=423033337.1744034165&sst.etld=google.es&sst.gcsub=region1&sst.tft=1744034162755&sst.lpc=102190617&sst.navt=n&sst.ude=0&_s=1&sid=1744034163&sct=1&seg=0&dl=https%3A%2F%2Fiosh.com%2F&dt=Institution%20of%20Occupational%20Safety%20and%20Health%20%7C%20IOSH&_tu=BA&en=page_view&_fv=1&_ss=1&tfd=2534&richsstsse' from origin 'https://iosh.com' has been blocked by CORS policy: No 'Access-Control-Allow-Origin' header is present on the requested resource. If an opaque response serves your needs, set the request's mode to 'no-cors' to fetch the resource with CORS disabled.
Partage de ressources d'origines croiséesContrôle les origines externes qui sont autorisées à charger des ressources.

Cliquez pour en savoir plus...
Ressource
https://www.clarity.ms/s/0.8.1/clarity.js
Description
Refused to connect to 'https://j.clarity.ms/collect' because it violates the following Content Security Policy directive: "connect-src *.convertexperiments.com *.metrics.converexperiments.com http://iosh-api.uat.iosh.local/api/ https://api.crownpeak.net/dqm-cms/v1/ https://api.iosh.co.uk/ https://app.optimalworkshop.com https://ask.hotjar.io/api/ https://cdn.cookielaw.org https://content.hotjar.io https://cookie-cdn.cookiepro.com/ https://e.clarity.ms/collect https://geolocation.onetrust.com/cookieconsentpub/v1/geo/location https://googleads.g.doubleclick.net https://gtm-ncxkmtc-ngfhn.uc.r.appspot.com/ https://in.hotjar.com/api/ https://logs.convertexperiments.com https://metrics.hotjar.io/ https://px.ads.linkedin.com https://region1.analytics.google.com https://region1.google-analytics.com https://services.postcodeanywhere.co.uk https://stats.g.doubleclick.net https://surveystats.hotjar.io https://www.facebook.com/ https://www.google.com https://www.googleadservices.com https://www.google-analytics.com https://www.googletagmanager.com https://y.clarity.ms https://z.clarity.ms/collect 'self' wss://ws.hotjar.com/api/".
Politique de sécurité du contenuContrôle les ressources que l'agent utilisateur est autorisé à charger pour une page donnée.

Cliquez pour en savoir plus...
Ressource
https://www.clarity.ms/s/0.8.1/clarity.js
Description
Refused to connect to 'https://j.clarity.ms/collect' because it violates the following Content Security Policy directive: "connect-src *.convertexperiments.com *.metrics.converexperiments.com http://iosh-api.uat.iosh.local/api/ https://api.crownpeak.net/dqm-cms/v1/ https://api.iosh.co.uk/ https://app.optimalworkshop.com https://ask.hotjar.io/api/ https://cdn.cookielaw.org https://content.hotjar.io https://cookie-cdn.cookiepro.com/ https://e.clarity.ms/collect https://geolocation.onetrust.com/cookieconsentpub/v1/geo/location https://googleads.g.doubleclick.net https://gtm-ncxkmtc-ngfhn.uc.r.appspot.com/ https://in.hotjar.com/api/ https://logs.convertexperiments.com https://metrics.hotjar.io/ https://px.ads.linkedin.com https://region1.analytics.google.com https://region1.google-analytics.com https://services.postcodeanywhere.co.uk https://stats.g.doubleclick.net https://surveystats.hotjar.io https://www.facebook.com/ https://www.google.com https://www.googleadservices.com https://www.google-analytics.com https://www.googletagmanager.com https://y.clarity.ms https://z.clarity.ms/collect 'self' wss://ws.hotjar.com/api/".
Politique de sécurité du contenuContrôle les ressources que l'agent utilisateur est autorisé à charger pour une page donnée.

Cliquez pour en savoir plus...
Ressource
https://www.clarity.ms/s/0.8.1/clarity.js
Description
Refused to connect to 'https://j.clarity.ms/collect' because it violates the following Content Security Policy directive: "connect-src *.convertexperiments.com *.metrics.converexperiments.com http://iosh-api.uat.iosh.local/api/ https://api.crownpeak.net/dqm-cms/v1/ https://api.iosh.co.uk/ https://app.optimalworkshop.com https://ask.hotjar.io/api/ https://cdn.cookielaw.org https://content.hotjar.io https://cookie-cdn.cookiepro.com/ https://e.clarity.ms/collect https://geolocation.onetrust.com/cookieconsentpub/v1/geo/location https://googleads.g.doubleclick.net https://gtm-ncxkmtc-ngfhn.uc.r.appspot.com/ https://in.hotjar.com/api/ https://logs.convertexperiments.com https://metrics.hotjar.io/ https://px.ads.linkedin.com https://region1.analytics.google.com https://region1.google-analytics.com https://services.postcodeanywhere.co.uk https://stats.g.doubleclick.net https://surveystats.hotjar.io https://www.facebook.com/ https://www.google.com https://www.googleadservices.com https://www.google-analytics.com https://www.googletagmanager.com https://y.clarity.ms https://z.clarity.ms/collect 'self' wss://ws.hotjar.com/api/".
Politique de sécurité du contenuContrôle les ressources que l'agent utilisateur est autorisé à charger pour une page donnée.

Cliquez pour en savoir plus...
Ressource
https://www.clarity.ms/s/0.8.1/clarity.js
Description
Refused to connect to 'https://j.clarity.ms/collect' because it violates the following Content Security Policy directive: "connect-src *.convertexperiments.com *.metrics.converexperiments.com http://iosh-api.uat.iosh.local/api/ https://api.crownpeak.net/dqm-cms/v1/ https://api.iosh.co.uk/ https://app.optimalworkshop.com https://ask.hotjar.io/api/ https://cdn.cookielaw.org https://content.hotjar.io https://cookie-cdn.cookiepro.com/ https://e.clarity.ms/collect https://geolocation.onetrust.com/cookieconsentpub/v1/geo/location https://googleads.g.doubleclick.net https://gtm-ncxkmtc-ngfhn.uc.r.appspot.com/ https://in.hotjar.com/api/ https://logs.convertexperiments.com https://metrics.hotjar.io/ https://px.ads.linkedin.com https://region1.analytics.google.com https://region1.google-analytics.com https://services.postcodeanywhere.co.uk https://stats.g.doubleclick.net https://surveystats.hotjar.io https://www.facebook.com/ https://www.google.com https://www.googleadservices.com https://www.google-analytics.com https://www.googletagmanager.com https://y.clarity.ms https://z.clarity.ms/collect 'self' wss://ws.hotjar.com/api/".
Politique de sécurité du contenuContrôle les ressources que l'agent utilisateur est autorisé à charger pour une page donnée.

Cliquez pour en savoir plus...

Certificats : 12 trouvé(s)

Copier le lien

Les certificats SSL/TLS permettent aux sites web de chiffrer les transactions entre le client et le serveur et de procéder à une vérification de l'identité du serveur

SujetDate d'émissionDate d'expiration
iosh.com
fonts.net
*.google-analytics.com
cookiepro.com
*.licdn.com
www.bing.com
*.twimg.com
*.convertexperiments.com
*.actito.com
www.linkedin.com