https://www.onlinegdb.com/cgpeHFiQx

ID da verificação
956cb281-e0cd-40fa-b69e-3f2d271abebdConcluído
URL enviado:
https://onlinegdb.com/cgpeHFiQxRedirecionado
Relatório concluído:

Riscos · 0 encontrados

Copy link

Práticas que podem representar riscos de segurança

  • Sem classificação

Cabeçalhos de segurança · 0 encontrados

Copy link

Cabeçalhos de resposta HTTP que podem reforçar a segurança de uma aplicação web

Mais informações...
  • Não configurado
NomeValorApoio ao clienteInformação
Strict-Transport-SecurityBomDeclarar que um só site pode ser acedido através de uma ligação segura (HTTPS).

Clique para saber mais...
X-Frame-OptionsBomIndicar se um navegador deve ter permissão para renderizar uma página em <frame>, <iframe>, <embed> ou <object>.

Clique para saber mais...
X-Content-Type-OptionsBomIndicar que os tipos MIME anunciados nos cabeçalhos Tipo de conteúdo devem ser seguidos e não alterados.

Clique para saber mais...
Content-Security-PolicyBomControlar os recursos que o agente do utilizador tem permissão para carregar para uma determinada página.

Clique para saber mais...
Referrer-PolicyBomControlar a quantidade de informações de referência que deve ser incluída nos pedidos.

Clique para saber mais...
Clear-Site-DataBomControlar os dados armazenados por um navegador cliente quanto às suas origens.

Clique para saber mais...
X-Permitted-Cross-Domain-PoliciesBomControlar se um cliente web, como o Adobe Flash Player ou o Adobe Acrobat tem permissão para controlar dados entre domínios.

Clique para saber mais...
Permissions-PolicyNovoPermitir e negar o uso de recursos do navegador num documento ou iframe.

Clique para saber mais...
Cross-Origin-Embedder-PolicyNovoConfigurar a incorporação de recursos de origem cruzada no documento.

Clique para saber mais...
Cross-Origin-Opener-PolicyNovoGarantir que um documento de nível máximo não partilha um grupo de contexto de navegação com documentos de origem cruzada.

Clique para saber mais...
Cross-Origin-Resource-PolicyNovoSolicitar que o navegador bloqueie pedidos sem CORS de origem cruzada/entre sites para o recurso fornecido.

Clique para saber mais...
X-XSS-ProtectionDescontinuadoDescontinuado. Impede o carregamento de páginas quando detetam ataques refletidos de scripting entre sites (XSS).

Clique para saber mais...
Feature-PolicyDescontinuadoDescontinuado. Substituído pelo cabeçalho Permissões-política.

Clique para saber mais...
Expect-CTDescontinuadoDescontinuado. Optar por relatar e/ou aplicar requisitos de transparência de certificados.

Clique para saber mais...
Public-Key-PinsDescontinuadoDescontinuado. Permitir que sites HTTPS resistam à falsificação de invasores usando certificados emitidos incorretamente ou fraudulentos.

Clique para saber mais...

Violações de segurança · 13 encontradas

Copy link

Pedidos ou recursos que ofendem as políticas de segurança

ViolaçãoTipoInformação
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to fetch at 'https://static.criteo.net/js/ld/publishertag.prebid.js' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Request header field amiksika is not allowed by Access-Control-Allow-Headers in preflight response.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to XMLHttpRequest at 'https://ads.servenobid.com/adreq?upapi=true' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to XMLHttpRequest at 'https://ads.servenobid.com/adreq' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to XMLHttpRequest at 'https://api.btloader.com/pv?tid=CgSdPsQC-WBvO5sJ8-9454057565&w=6245015796318208&o=5102648370397184&cv=2.1.67-1-g39aeacf&widget=false&r=false&vr=800x600&pageURL=https%3A%2F%2Fwww.onlinegdb.com%2FcgpeHFiQx&sid=VE2CmVJ4-eXydr9NXeX-9454057565&pm=true&upapi=true' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to fetch at 'https://api.btloader.com/country?o=5102648370397184' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource. If an opaque response serves your needs, set the request's mode to 'no-cors' to fetch the resource with CORS disabled.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to fetch at 'https://api.btmessage.com/websiteconfig?bt_env=prod&o=5102648370397184&w=onlinegdb.com&l=EN' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource. If an opaque response serves your needs, set the request's mode to 'no-cors' to fetch the resource with CORS disabled.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to fetch at 'https://api.btmessage.com/mw/state?bt_env=prod' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource. If an opaque response serves your needs, set the request's mode to 'no-cors' to fetch the resource with CORS disabled.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to fetch at 'https://api.btmessage.com/log?tid=CgSdPsQC-WBvO5sJ8-9454057565&cv=2.1.67-1-g39aeacf&sid=VE2CmVJ4-eXydr9NXeX-9454057565&upapi=true' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource. If an opaque response serves your needs, set the request's mode to 'no-cors' to fetch the resource with CORS disabled.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to fetch at 'https://ad.doubleclick.net/favicon.ico?ad=300x250&ad_box_=1&adnet=1&showad=1&size=250x250' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Request header field amiksika is not allowed by Access-Control-Allow-Headers in preflight response.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to font at 'https://fonts.gstatic.com/s/googlesans/v62/4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_Iqcsih3SAyH6cAwhX9RPjIUvQ.woff2' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Request header field amiksika is not allowed by Access-Control-Allow-Headers in preflight response.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to XMLHttpRequest at 'https://c.amazon-adsystem.com/cdn/prod/config?src=600&u=https%3A%2F%2Fwww.onlinegdb.com&pubid=747b8b51-ec47-4dee-9823-b2b73124b71f' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
https://www.onlinegdb.com/cgpeHFiQx
Descrição
Access to XMLHttpRequest at 'https://aax.amazon-adsystem.com/e/dtb/bid?src=600&u=https%3A%2F%2Fwww.onlinegdb.com%2FcgpeHFiQx&pr=https%3A%2F%2Fgithub.com%2F&pid=qamw9lEifCDLQ&cb=0&ws=800x600&v=24.1212.711&t=2500&slots=%5B%7B%22sd%22%3A%22bsa-zone_1573224210072-0_123456%22%2C%22s%22%3A%5B%22728x90%22%5D%2C%22sn%22%3A%22%2F22960212090%2C22987729508%2FOnlineGDB_S2S_Leaderboard_BTF%22%7D%5D&schain=1.0%2C1%21buysellads.com%2C2703%2C1%2C%2C%2C%21google.com%2Cpub-9961814823930967%2C1%2C%2C%2C&pubid=747b8b51-ec47-4dee-9823-b2b73124b71f&gdprl=%7B%22status%22%3A%22no-cmp%22%7D' from origin 'https://www.onlinegdb.com' has been blocked by CORS policy: Response to preflight request doesn't pass access control check: No 'Access-Control-Allow-Origin' header is present on the requested resource.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...
Recurso
blob:https://www.onlinegdb.com/24194dee-7fa2-47d3-8dcf-4233cfc28728
Descrição
Failed to set referrer policy: The value '' is not one of 'always', 'default', 'never', 'origin-when-crossorigin', 'no-referrer', 'no-referrer-when-downgrade', 'origin', 'origin-when-cross-origin', 'same-origin', 'strict-origin', 'strict-origin-when-cross-origin', or 'unsafe-url'. The referrer policy has been left unchanged.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

Clique para saber mais...

Certificados · 36 encontrados

Copy link

Os certificados SSL/TLS permitem que os sites encriptem transações entre o cliente e o servidor e forneçam a verificação de identidade do servidor

AssuntoData de emissãoData de validade
onlinegdb.com24/12/2024, 15:34:5524/03/2025, 16:33:15
cdnjs.cloudflare.com26/11/2024, 07:25:1824/02/2025, 07:25:17
m.servedby-buysellads.com14/10/2024, 00:00:0012/11/2025, 23:59:59
html-load.com1/01/2025, 19:04:161/04/2025, 20:04:10
cdn.carbonads.com16/10/2024, 00:00:0015/11/2025, 23:59:59
*.cdn4.buysellads.net18/11/2024, 11:41:1316/02/2025, 11:41:12
*.google-analytics.com9/12/2024, 08:36:183/03/2025, 08:36:17
www.clarity.ms4/09/2024, 00:00:004/09/2025, 23:59:59
*.carbonads.net18/11/2024, 11:39:1116/02/2025, 11:39:10
a.clarity.ms23/06/2024, 10:17:3418/06/2025, 10:17:34