https://fpresearch.httpjames.space/

Submitted URL:
https://fpresearch.httpjames.space/
Report Finished:

The outgoing links identified from the page

LinkText
https://httpjames.spacehttp.james

JavaScript Variables Β· 7 found

Global JavaScript variables loaded on the window object of a page, are variables declared outside of functions and accessible from anywhere in the code within the current scope

NameType
onbeforetogglestring
documentPictureInPicturestring
onscrollendstring
CryptoJSstring
__cfQRstring
__cfRLUnblockHandlersstring
__cfBeaconstring

Console log messages Β· 5 found

Messages logged to the web console

TypeCategoryLog
warningnetwork
URL
https://fpresearch.httpjames.space/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
Text
A parser-blocking, cross site (i.e. different eTLD+1) script, https://cdnjs.cloudflare.com/ajax/libs/crypto-js/3.1.9-1/core.js, is invoked via document.write. The network request for this script MAY be blocked by the browser in this or a future page load due to poor network connectivity. If blocked in this page load, it will be confirmed in a subsequent console message. See https://www.chromestatus.com/feature/5718547946799104 for more details.
warningnetwork
URL
https://fpresearch.httpjames.space/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
Text
A parser-blocking, cross site (i.e. different eTLD+1) script, https://cdnjs.cloudflare.com/ajax/libs/crypto-js/3.1.9-1/core.js, is invoked via document.write. The network request for this script MAY be blocked by the browser in this or a future page load due to poor network connectivity. If blocked in this page load, it will be confirmed in a subsequent console message. See https://www.chromestatus.com/feature/5718547946799104 for more details.
warningnetwork
URL
https://fpresearch.httpjames.space/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
Text
A parser-blocking, cross site (i.e. different eTLD+1) script, https://cdnjs.cloudflare.com/ajax/libs/crypto-js/3.1.9-1/md5.js, is invoked via document.write. The network request for this script MAY be blocked by the browser in this or a future page load due to poor network connectivity. If blocked in this page load, it will be confirmed in a subsequent console message. See https://www.chromestatus.com/feature/5718547946799104 for more details.
warningnetwork
URL
https://fpresearch.httpjames.space/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
Text
A parser-blocking, cross site (i.e. different eTLD+1) script, https://cdnjs.cloudflare.com/ajax/libs/crypto-js/3.1.9-1/md5.js, is invoked via document.write. The network request for this script MAY be blocked by the browser in this or a future page load due to poor network connectivity. If blocked in this page load, it will be confirmed in a subsequent console message. See https://www.chromestatus.com/feature/5718547946799104 for more details.
logjavascript
URL
https://fpresearch.httpjames.space/assets/js/fp.js
Text
JSHandle@object

HTML

The raw HTML body of the page

<!DOCTYPE html><html lang="en"><head>
<title>http.james' Fingerprinting Experiment</title>
<meta name="description" content="Think your browser's private? Think again. This research experiment shows you how advertisers can track you across the Internet, including through incognito mode. By visiting this site, you consent to having your browser data collected for research purposes.">
<script src="https://cdnjs.cloudflare.com/ajax/libs/crypto-js/3.1.9-1/core.js" type="text/javascript"></script>
<script src="https://cdnjs.cloudflare.com/ajax/libs/crypto-js/3.1.9-1/md5.js" type="text/javascript"></script>
<script defer="" src="/assets/js/fp.js" type="text/javascript"></script>
<meta name="viewport" content="width=device-width, initial-scale=1">
<link type="application/json+oembed" href="/assets/embed.json">
<link rel="stylesheet" href="/assets/css/index.css">
<script defer="" src="https://static.cloudflareinsights.com/beacon.min.js" data-cf-beacon="{&quot;token&quot;: &quot;f4db9a8882324684b0c74c75f0f756ac&quot;}" type="text/javascript"></script>
<link rel="icon" type="image/webp" href="/assets/images/fpresearch.webp">
</head>
<body onload="init();"><span id="server_hash" style="display: none">818eb87d1026ea05877787e304c0922d</span>

<div class="container">
<p class="credit">Made by <a href="https://httpjames.space" target="_blank">http.james</a> β€πŸ’»</p>
<br>
<h1>Think your browser's private? Think again.</h1>
<h2>This research experiment shows you how advertisers <img class="intext-graphic" src="/assets/images/advertisers.webp" alt="A white red-outlined box with the word 'AD' and a cursor hovering on top of it."> can track you
<img class="intext-graphic" src="/assets/images/tracker.webp" alt="A magnifying glass on top of footprints."> across the Internet, including through <span class="incognito-bleed">incognito mode</span>.
</h2>
<br>
<p class="instruction">❗ Open this site in <strong>normal</strong> <u>and</u> <strong>private browsing
mode</strong> to compare your values. If they match, this site successfully cross-tracked you. The
emojis are human-readable representations of your identifiers. On iOS, these identifiers can even persist
<i>between different</i> browser apps.
</p>
<br>
<h3 class="code-heading">Your <strong>server</strong> code is... πŸ¦―πŸ›·πŸ§‘πŸΏβ€β€οΈβ€πŸ§‘πŸΌπŸ‘¨β€πŸš’</h3>
<p class="identifier"><strong>Raw Identifier</strong>: 818eb87d1026ea05877787e304c0922d (seen 2 times)</p>
<br>
<h3 class="code-heading">Your <strong>client</strong> code is... <span id="client_js_emojis">πŸ§—πŸΌβ€β™‚οΈπŸ‘©πŸ½β€πŸ’»πŸš΅πŸ»πŸ§‘πŸ½β€βš•</span></h3>
<p class="identifier"><strong>Raw Identifier</strong>: <span id="client_js_hash">c43aa80fb6739ba151b1c2e5e41950cf</span> (seen <span id="client_js_seen">2</span> times)</p>
</div>
<footer class="info-footer">
<p>Your browser characteristics are collected anonymously for research purposes. They won’t be shared with any
third
parties.</p>
</footer>

</body></html>