https://masto.nu/@flashpost/113482623245442252

Submitted URL:
https://masto.nu/@flashpost/113482623245442252
Report Finished:

Risks · 0 found

Practices that may pose security risks

  • No classification

Security Headers · 2 found

HTTP response headers that can harden the security of a web application

NameValueSupportInfo
Strict-Transport-Securitymax-age=31536000; Good
X-Frame-OptionsGood
X-Content-Type-OptionsGood
Content-Security-Policybase-uri 'none'; default-src 'none'; frame-ancestors 'none'; font-src 'self' https://masto.nu; img-src 'self' https: data: blob: https://masto.nu; style-src 'self' https://masto.nu 'nonce-kH3R4JYsZm3JD/Ky0AQekw=='; media-src 'self' https: data: https://masto.nu; frame-src 'self' https:; manifest-src 'self' https://masto.nu; form-action 'self'; child-src 'self' blob: https://masto.nu; worker-src 'self' blob: https://masto.nu; connect-src 'self' data: blob: https://masto.nu https://media.masto.nu wss://masto.nu; script-src 'self' https://masto.nu 'wasm-unsafe-eval'Good
Referrer-PolicyGood
Clear-Site-DataGood
X-Permitted-Cross-Domain-PoliciesGood
Permissions-PolicyNew
Cross-Origin-Embedder-PolicyNew
Cross-Origin-Opener-PolicyNew
Cross-Origin-Resource-PolicyNew
X-XSS-ProtectionDeprecated
Feature-PolicyDeprecated
Expect-CTDeprecated
Public-Key-PinsDeprecated

Security Violations · 1 found

Requests or resources offending security policies

ViolationTypeInfo
Resource
https://masto.nu/@flashpost/113482623245442252
Description
Refused to apply inline style because it violates the following Content Security Policy directive: "style-src 'self' https://masto.nu 'nonce-kH3R4JYsZm3JD/Ky0AQekw=='". Either the 'unsafe-inline' keyword, a hash ('sha256-4Su6mBWzEIFnH4pAGMOuaeBrstwJN4Z3pq/s1Kn4/KQ='), or a nonce ('nonce-...') is required to enable inline execution. Note that hashes do not apply to event handlers, style attributes and javascript: navigations unless the 'unsafe-hashes' keyword is present.
Content Security Policy

Certificates · 1 found

SSL/TLS Certificates enable websites to encrypt transactions between the client and the server and provide server identity verification

SubjectIssue dateExpiry date
*.masto.nuOct 17, 2024, 00:24:12Jan 15, 2025, 00:24:11