https://www.onlinegdb.com/cgpeHFiQx

ID da verificação
956cb281-e0cd-40fa-b69e-3f2d271abebdConcluído
URL enviado:
https://onlinegdb.com/cgpeHFiQx
Relatório concluído:

Riscos · 0 encontrado(s)

Copy link

Práticas que podem representar riscos de segurança

  • Sem classificação

Cabeçalhos de segurança · 0 encontrado(s)

Copy link

Cabeçalhos de resposta HTTP que podem aumentar a segurança de um aplicativo web

Saiba mais...
  • Não configurado
NomeValorSuporteInfo
Strict-Transport-SecurityDeclarar que um site só pode ser acessado por meio de uma conexão segura (HTTPS).

Clique para saber mais...
X-Frame-OptionsIndicar se um navegador deve ter permissão para renderizar uma página em <frame>, <iframe>, <embed> ou <object>.

Clique para saber mais...
X-Content-Type-OptionsIndicar que os tipos MIME anunciados nos cabeçalhos Content-Type devem ser seguidos e não alterados.

Clique para saber mais...
Content-Security-PolicyControlar os recursos que o agente do usuário pode carregar para uma determinada página.

Clique para saber mais...
Referrer-PolicyControlar a quantidade de informações de referência que devem ser incluídas nas solicitações.

Clique para saber mais...
Clear-Site-DataControlar os dados armazenados por um navegador cliente quanto às suas origens.

Clique para saber mais...
X-Permitted-Cross-Domain-PoliciesControlar se um cliente web, como Adobe Flash Player ou Adobe Acrobat, tem permissão para controlar dados entre domínios.

Clique para saber mais...
Permissions-PolicyRecentePermitir e negar o uso de recursos do navegador em um documento ou iframe.

Clique para saber mais...
Cross-Origin-Embedder-PolicyRecenteConfigurar a incorporação de recursos de origem cruzada no documento.

Clique para saber mais...
Cross-Origin-Opener-PolicyRecenteGarantir que um documento de nível superior não compartilhe um grupo de contexto de navegação com documentos de origem cruzada.

Clique para saber mais...
Cross-Origin-Resource-PolicyRecenteSolicitar que o navegador bloqueie solicitações de origem cruzada/entre sites no-cors para o recurso fornecido.

Clique para saber mais...
X-XSS-ProtectionDescontinuadoDescontinuado Impede o carregamento de páginas quando detectam ataques refletidos de cross-site scripting (XSS).

Clique para saber mais...
Feature-PolicyDescontinuadoDescontinuado Substituído pelo cabeçalho Permissions-Policy.

Clique para saber mais...
Expect-CTDescontinuadoDescontinuado Optar por relatar e/ou aplicar requisitos de transparência de certificados.

Clique para saber mais...
Public-Key-PinsDescontinuadoDescontinuado Permitir que sites HTTPS resistam à falsificação de invasores usando certificados emitidos incorretamente ou fraudulentos.

Clique para saber mais...

Violações de segurança · 13 encontrada(s)

Copy link

Solicitações ou recursos que ofendem as políticas de segurança

ViolaçãoTipoInformações
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to fetch at 'https://static.criteo.net/js/ld/publishertag.prebid.js' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Request header field amiksika is not allowed by Access-Control-Allow-Headers in preflight response.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to XMLHttpRequest at 'https://ads.servenobid.com/adreq?upapi=true' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to XMLHttpRequest at 'https://ads.servenobid.com/adreq' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to XMLHttpRequest at 'https://api.btloader.com/pv?tid=CgSdPsQC-WBvO5sJ8-9454057565&w=6245015796318208&o=5102648370397184&cv=2.1.67-1-g39aeacf&widget=false&r=false&vr=800x600&pageURL=https%3A%2F%2Fwww.onlinegdb.com%2FcgpeHFiQx&sid=VE2CmVJ4-eXydr9NXeX-9454057565&pm=true&upapi=true' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to fetch at 'https://api.btloader.com/country?o=5102648370397184' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource. If an opaque response serves your needs, set the request's mode to 'no-cors' to fetch the resource with CORS disabled.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to fetch at 'https://api.btmessage.com/websiteconfig?bt_env=prod&o=5102648370397184&w=onlinegdb.com&l=EN' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource. If an opaque response serves your needs, set the request's mode to 'no-cors' to fetch the resource with CORS disabled.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to fetch at 'https://api.btmessage.com/mw/state?bt_env=prod' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource. If an opaque response serves your needs, set the request's mode to 'no-cors' to fetch the resource with CORS disabled.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to fetch at 'https://api.btmessage.com/log?tid=CgSdPsQC-WBvO5sJ8-9454057565&cv=2.1.67-1-g39aeacf&sid=VE2CmVJ4-eXydr9NXeX-9454057565&upapi=true' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource. If an opaque response serves your needs, set the request's mode to 'no-cors' to fetch the resource with CORS disabled.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to fetch at 'https://ad.doubleclick.net/favicon.ico?ad=300x250&ad_box_=1&adnet=1&showad=1&size=250x250' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Request header field amiksika is not allowed by Access-Control-Allow-Headers in preflight response.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to font at 'https://fonts.gstatic.com/s/googlesans/v62/4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_Iqcsih3SAyH6cAwhX9RPjIUvQ.woff2' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Request header field amiksika is not allowed by Access-Control-Allow-Headers in preflight response.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to XMLHttpRequest at 'https://c.amazon-adsystem.com/cdn/prod/config?src=600&u=https%3A%2F%2Fwww.onlinegdb.com&pubid=747b8b51-ec47-4dee-9823-b2b73124b71f' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to XMLHttpRequest at 'https://aax.amazon-adsystem.com/e/dtb/bid?src=600&u=https%3A%2F%2Fwww.onlinegdb.com%2FcgpeHFiQx&pr=https%3A%2F%2Fgithub.com%2F&pid=qamw9lEifCDLQ&cb=0&ws=800x600&v=24.1212.711&t=2500&slots=%5B%7B%22sd%22%3A%22bsa-zone_1573224210072-0_123456%22%2C%22s%22%3A%5B%22728x90%22%5D%2C%22sn%22%3A%22%2F22960212090%2C22987729508%2FOnlineGDB_S2S_Leaderboard_BTF%22%7D%5D&schain=1.0%2C1%21buysellads.com%2C2703%2C1%2C%2C%2C%21google.com%2Cpub-9961814823930967%2C1%2C%2C%2C&pubid=747b8b51-ec47-4dee-9823-b2b73124b71f&gdprl=%7B%22status%22%3A%22no-cmp%22%7D' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
blob:https://www.onlinegdb.com/24194dee-7fa2-47d3-8dcf-4233cfc28728
Descrição
Failed to set referrer policy: The value '' is not one of 'always', 'default', 'never', 'origin-when-crossorigin', 'no-referrer', 'no-referrer-when-downgrade', 'origin', 'origin-when-cross-origin', 'same-origin', 'strict-origin', 'strict-origin-when-cross-origin', or 'unsafe-url'. The referrer policy has been left unchanged.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...

Certificados · 36 encontrado(s)

Copy link

Os certificados SSL/TLS permitem que os sites criptografem transações entre o cliente e o servidor e forneçam verificação de identidade do servidor

AssuntoData de emissãoData de validade
onlinegdb.com
cdnjs.cloudflare.com
m.servedby-buysellads.com
html-load.com
cdn.carbonads.com
*.cdn4.buysellads.net
*.google-analytics.com
www.clarity.ms
*.carbonads.net
a.clarity.ms