https://www.kommo.com/

Submitted URL:
https://amocrm.comRedirected
Report Finished:

Risks · 0 found

Practices that may pose security risks

  • No classification

Security Headers · 5 found

HTTP response headers that can harden the security of a web application

Learn more...
NameValueSupportInfo
Strict-Transport-Securitymax-age=31536000GoodDeclare that a website is only accessible over a secure connection (HTTPS).

Click to learn more...
X-Frame-OptionssameoriginGoodIndicate whether a browser should be allowed to render a page in a <frame>, <iframe>, <embed> or <object>.

Click to learn more...
X-Content-Type-OptionsnosniffGoodIndicate that the MIME types advertised in the Content-Type headers should be followed and not be changed.

Click to learn more...
Content-Security-Policydefault-src 'self' gso.amocrm.com gso.kommo.com; script-src 'self' 'strict-dynamic' 'unsafe-inline' https://www.gstatic.com https://www.google.com https://www.googleadservices.com https://www.googletagmanager.com https://cdn.jsdelivr.net https://assets.calendly.com https://platform.twitter.com piper.amocrm.com gso.amocrm.com piper.kommo.com gso.kommo.com https://my.hellobar.com https://www.google-analytics.com https://www.youtube.com 'sha256-qZJmHHAaUu28WoFKc0FVNpA5ikXzX0NBeqIpY0bQXIA=' 'sha256-V7US+zMwAMOPr/YqM4zVsHsKGl3xUiVIwhFUvnv87QE=' 'sha256-J8lzg3ubs2SO6PW9MmHWe1UzbBMwuiLWxN/otQCygyY=' 'sha256-eH5kMeUdc48DzHbZtubwbQ1dUOxSsKEw4nqHROB4O+g=' 'sha256-disSjv6Cqh2qc1///UXyReEByhnnMEGIa7VnqInfjls=' 'sha256-sejyC18/DnWxENEG0wtqHl60q8kck4ZIDJVPYZoFY2Y=' 'sha256-yHwihVYvV0uJwcx2/8gO6wxKSQKbIKgPrOhvJErN3Zs=' 'sha256-DpOoqibK/BsYhobWHnU38Pyzt5SjDZuR/mFsAiVN7kk=' https://ajax.googleapis.com https://www.facebook.com https://connect.facebook.net https://graph.facebook.com vk.com https://login.vk.com top-fwz1.mail.ru https://mc.yandex.ru https://yastatic.net https://cdn.userflow.com https://js.userflow.com 'nonce-e9af510aa1a2'; style-src 'self' https://fonts.googleapis.com 'strict-dynamic' 'unsafe-inline' https://unpkg.com https://assets.calendly.com https://cdn.jsdelivr.net q4s5p2q6.stackpathcdn.com pcfcdn.kommo.com gso.amocrm.com gso.kommo.com connect.facebook.net https://cdn.userflow.com https://js.userflow.com; form-action 'self' https://www.facebook.com; frame-ancestors 'self' https://*.kommo.com chrome-extension://cfaicdlgblgdchnpdilihjmfnogpjakl chrome-extension://eaeaddaoioikiaokcmjfeghddidmmfhc; worker-src blob:; object-src 'none'; font-src 'self' data: q4s5p2q6.stackpathcdn.com pcfcdn.kommo.com https://fonts.gstatic.com; img-src 'self' data: blob: https://*.kommo.com https://*.amocrm.com https://seal.godaddy.com https://px.ads.linkedin.com https://partnersus.s3.amazonaws.com https://partnersus-test.s3.eu-west-1.amazonaws.com https://amocrm.com https://kommo.com https://giphy.com https://*.giphy.com https://pbs.twimg.com https://i.ytimg.com https://www.statista.com https://syndication.twitter.com https://bat.bing.com q4s5p2q6.stackpathcdn.com pcfcdn.kommo.com https://i.postimg.cc https://widgets.amocrm.com https://widgets.kommo.com piper.amocrm.com gso.amocrm.com piper.kommo.com gso.kommo.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://www.google.com https://www.google.ru https://www.googletagmanager.com https://www.facebook.com https://connect.facebook.net https://vk.com https://mc.yandex.ru https://yastatic.net https://mc.yandex.md https://blob.userflow.com https://cdn.userflow.com https://js.userflow.com https://storage.googleapis.com/studio1-prod-blob/; media-src 'self' q4s5p2q6.stackpathcdn.com pcfcdn.kommo.com https://blob.userflow.com https://cdn.userflow.com https://storage.googleapis.com/studio1-prod-blob/; frame-src 'self' www.facebook.com socialplugin.facebook.net www.googletagmanager.com forms.amocrm.com forms.kommo.com calendly.com platform.twitter.com d562488024744908ac9e9fa9d3112067.pages.ubembed.com giphy.com td.doubleclick.net piper.amocrm.com gso.amocrm.com piper.kommo.com gso.kommo.com button.kommo.com button.amocrm.com https://www.youtube.com https://www.youtube-nocookie.com https://www.google.com https://www.facebook.com https://vk.com https://mc.yandex.ru; connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com; base-uri 'self'; GoodControl resources the user agent is allowed to load for a given page.

Click to learn more...
Referrer-PolicyGoodControl how much referrer information should be included with requests.

Click to learn more...
Clear-Site-DataGoodControl the data stored by a client browser for their origins.

Click to learn more...
X-Permitted-Cross-Domain-PoliciesGoodControl whether a web client such as Adobe Flash Player or Adobe Acrobat has permission to handle data across domains.

Click to learn more...
Permissions-PolicyNewAllow and deny the use of browser features in a document or iframe.

Click to learn more...
Cross-Origin-Embedder-PolicyNewConfigure embedding cross-origin resources into the document.

Click to learn more...
Cross-Origin-Opener-PolicyNewEnsure a top-level document does not share a browsing context group with cross-origin documents.

Click to learn more...
Cross-Origin-Resource-PolicyNewRequest that the browser blocks no-cors cross-origin/cross-site requests to the given resource.

Click to learn more...
X-XSS-Protection1; mode=blockDeprecatedDeprecated. Stops pages from loading when they detect reflected cross-site scripting (XSS) attacks.

Click to learn more...
Feature-PolicyDeprecatedDeprecated. Replaced by the Permissions-Policy header.

Click to learn more...
Expect-CTDeprecatedDeprecated. Opt in to reporting and/or enforcement of Certificate Transparency requirements.

Click to learn more...
Public-Key-PinsDeprecatedDeprecated. Allows HTTPS websites to resist impersonation by attackers using mis-issued or otherwise fraudulent certificates.

Click to learn more...

Security Violations · 25 found

Requests or resources offending security policies

ViolationTypeInfo
Resource
https://www.kommo.com/
Description
Refused to load the image 'https://px4.ads.linkedin.com/collect?v=2&fmt=js&pid=87456&time=1728210722761&url=https%3A%2F%2Fwww.kommo.com%2F&e_ipv6=AQIGrQSnS6zzMgAAAZJhYuA7Gglq7X9pUuUsMOcsXI33nll-mS2uBOLzGUEdsxLY2yOb4HQyaxJpoOiCYQ' because it violates the following Content Security Policy directive: "img-src 'self' data: blob: https://*.kommo.com https://*.amocrm.com https://seal.godaddy.com https://px.ads.linkedin.com https://partnersus.s3.amazonaws.com https://partnersus-test.s3.eu-west-1.amazonaws.com https://amocrm.com https://kommo.com https://giphy.com https://*.giphy.com https://pbs.twimg.com https://i.ytimg.com https://www.statista.com https://syndication.twitter.com https://bat.bing.com q4s5p2q6.stackpathcdn.com pcfcdn.kommo.com https://i.postimg.cc https://widgets.amocrm.com https://widgets.kommo.com piper.amocrm.com gso.amocrm.com piper.kommo.com gso.kommo.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://www.google.com https://www.google.ru https://www.googletagmanager.com https://www.facebook.com https://connect.facebook.net https://vk.com https://mc.yandex.ru https://yastatic.net https://mc.yandex.md https://blob.userflow.com https://cdn.userflow.com https://js.userflow.com https://storage.googleapis.com/studio1-prod-blob/".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://snap.licdn.com/li.lms-analytics/insight.min.js
Description
Refused to connect to 'https://px.ads.linkedin.com/wa/' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://analytics.tiktok.com/i18n/pixel/static/main.MWZkMThhNTg2NA.js
Description
Refused to connect to 'https://analytics.tiktok.com/api/v2/monitor' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://analytics.tiktok.com/i18n/pixel/static/main.MWZkMThhNTg2NA.js
Description
Refused to connect to 'https://analytics.tiktok.com/api/v2/monitor' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://analytics.tiktok.com/i18n/pixel/static/main.MWZkMThhNTg2NA.js
Description
Refused to connect to 'https://analytics.tiktok.com/api/v2/monitor' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://analytics.tiktok.com/i18n/pixel/static/main.MWZkMThhNTg2NA.js
Description
Refused to connect to 'https://analytics.tiktok.com/api/v2/monitor' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://analytics.tiktok.com/i18n/pixel/static/main.MWZkMThhNTg2NA.js
Description
Refused to connect to 'https://analytics.tiktok.com/api/v2/monitor' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://analytics.tiktok.com/i18n/pixel/static/main.MWZkMThhNTg2NA.js
Description
Refused to connect to 'https://analytics.tiktok.com/api/v2/monitor' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://analytics.tiktok.com/i18n/pixel/static/main.MWZkMThhNTg2NA.js
Description
Refused to connect to 'https://analytics.tiktok.com/api/v2/monitor' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://analytics.tiktok.com/i18n/pixel/static/main.MWZkMThhNTg2NA.js
Description
Refused to connect to 'https://analytics.tiktok.com/api/v2/pixel' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://analytics.tiktok.com/i18n/pixel/static/main.MWZkMThhNTg2NA.js
Description
Refused to connect to 'https://analytics.tiktok.com/api/v2/monitor' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://analytics.tiktok.com/i18n/pixel/static/main.MWZkMThhNTg2NA.js
Description
Refused to connect to 'https://analytics.tiktok.com/api/v2/pixel' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://assets.ubembed.com/universalscript/releases/v0.183.0/bundle.js
Description
Refused to connect to 'https://d562488024744908ac9e9fa9d3112067.events.ubembed.com/embeddableActivated?activationRuleId=68d73d102f9648be83cafdd20d796468&browserTrackingId=3df0f83b6c3f4daa873c915ff0cc15b6&clientId=fb3dc827-9b4f-47cd-bf83-f1fcb28769a0&hostPageCorrelationId=9bc3f023362f4baf9e5ccf84c19097b6&hostPageReferrerUrl=&hostPageUrl=https%3A%2F%2Fwww.kommo.com%2F&isFirstTime=true&requestId=9827597d7f5b4dd0a3f2a4c826f2652c&source=universalscript-v0.183.0' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://assets.ubembed.com/universalscript/releases/v0.183.0/bundle.js
Description
Refused to connect to 'https://d562488024744908ac9e9fa9d3112067.events.ubembed.com/embeddableViewed?activationRuleId=68d73d102f9648be83cafdd20d796468&browserTrackingId=3df0f83b6c3f4daa873c915ff0cc15b6&clientId=fb3dc827-9b4f-47cd-bf83-f1fcb28769a0&hostPageCorrelationId=9bc3f023362f4baf9e5ccf84c19097b6&hostPageReferrerUrl=&hostPageUrl=https%3A%2F%2Fwww.kommo.com%2F&isFirstTime=true&requestId=049ad21c413644668b34c2847991e767&source=universalscript-v0.183.0' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://analytics.tiktok.com/i18n/pixel/static/main.MWZkMThhNTg2NA.js
Description
Refused to connect to 'https://analytics.tiktok.com/api/v2/monitor' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://analytics.tiktok.com/i18n/pixel/static/main.MWZkMThhNTg2NA.js
Description
Refused to connect to 'https://analytics.tiktok.com/api/v2/monitor' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://analytics.tiktok.com/i18n/pixel/static/main.MWZkMThhNTg2NA.js
Description
Refused to connect to 'https://analytics.tiktok.com/api/v2/monitor' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://analytics.tiktok.com/i18n/pixel/static/main.MWZkMThhNTg2NA.js
Description
Refused to connect to 'https://analytics.tiktok.com/api/v2/monitor' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://analytics.tiktok.com/i18n/pixel/static/main.MWZkMThhNTg2NA.js
Description
Refused to connect to 'https://analytics.tiktok.com/api/v2/pixel/act' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://analytics.tiktok.com/i18n/pixel/static/main.MWZkMThhNTg2NA.js
Description
Refused to connect to 'https://analytics.tiktok.com/api/v2/monitor' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://www.clarity.ms/s/0.7.47/clarity.js
Description
Refused to connect to 'https://p.clarity.ms/collect' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://www.kommo.com/
Description
Refused to load the image 'https://c.clarity.ms/c.gif' because it violates the following Content Security Policy directive: "img-src 'self' data: blob: https://*.kommo.com https://*.amocrm.com https://seal.godaddy.com https://px.ads.linkedin.com https://partnersus.s3.amazonaws.com https://partnersus-test.s3.eu-west-1.amazonaws.com https://amocrm.com https://kommo.com https://giphy.com https://*.giphy.com https://pbs.twimg.com https://i.ytimg.com https://www.statista.com https://syndication.twitter.com https://bat.bing.com q4s5p2q6.stackpathcdn.com pcfcdn.kommo.com https://i.postimg.cc https://widgets.amocrm.com https://widgets.kommo.com piper.amocrm.com gso.amocrm.com piper.kommo.com gso.kommo.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://www.google.com https://www.google.ru https://www.googletagmanager.com https://www.facebook.com https://connect.facebook.net https://vk.com https://mc.yandex.ru https://yastatic.net https://mc.yandex.md https://blob.userflow.com https://cdn.userflow.com https://js.userflow.com https://storage.googleapis.com/studio1-prod-blob/".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://www.clarity.ms/s/0.7.47/clarity.js
Description
Refused to connect to 'https://p.clarity.ms/collect' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://www.clarity.ms/s/0.7.47/clarity.js
Description
Refused to connect to 'https://p.clarity.ms/collect' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...
Resource
https://www.clarity.ms/s/0.7.47/clarity.js
Description
Refused to connect to 'https://p.clarity.ms/collect' because it violates the following Content Security Policy directive: "connect-src 'self' https://*.kommo.com https://cdn.linkedin.oribi.io https://connect.ok.ru https://appbroker.amostage.com https://appbroker.amocrm.com https://pagead2.googlesyndication.com gso.amocrm.com gso.kommo.com lc-en.amocrm.com lc-en.kommo.com https://pro.ip-api.com https://www.google-analytics.com https://google-analytics.com https://analytics.google.com https://stats.g.doubleclick.net https://www.facebook.com https://graph.facebook.com https://vk.com https://login.vk.com https://top-fwz1.mail.ru https://mc.yandex.ru https://mc.yandex.md https://cdn.userflow.com https://e.userflow.com https://js.userflow.com wss://e.userflow.com".
Content Security PolicyControl resources the user agent is allowed to load for a given page.

Click to learn more...

Certificates · 17 found

SSL/TLS Certificates enable websites to encrypt transactions between the client and the server and provide server identity verification

SubjectIssue dateExpiry date
www.kommo.comSep 12, 2024, 07:05:23Dec 11, 2024, 07:05:22
pcfcdn.kommo.comAug 30, 2024, 03:53:17Nov 28, 2024, 03:53:16
gso.kommo.comSep 4, 2024, 03:17:43Dec 3, 2024, 03:17:42
*.amocrm.comMay 27, 2024, 16:10:34Jun 28, 2025, 16:10:34
cloudflareinsights.comSep 3, 2024, 08:38:23Dec 2, 2024, 08:38:22
gtmanalytics.kommo.comSep 28, 2024, 20:38:09Dec 27, 2024, 21:31:03
upload.video.google.comSep 16, 2024, 09:34:31Dec 9, 2024, 09:34:30
snap.licdn.comDec 13, 2023, 00:00:00Dec 12, 2024, 23:59:59
*.google-analytics.comSep 16, 2024, 08:55:43Dec 9, 2024, 08:55:42
www.bing.comSep 16, 2024, 23:16:19Mar 15, 2025, 23:16:19