提交的 URL:
https://teck-global.com/
报告完成时间:

风险 · 找到 0 个

Copy link

可能带来安全风险的做法

安全违规行为 · 找到 8 个

Copy link

违反安全策略的请求或资源

违规类型信息
资源
https://teck-global.com/
描述
Refused to load the script 'https://www.googletagmanager.com/gtag/js?id=G-EBVF60TJHM' because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-inline' 'unsafe-eval'". Note that 'script-src-elem' was not explicitly set, so 'script-src' is used as a fallback.
内容安全策略控制允许用户代理为指定页面加载的资源。

单击可了解更多信息...
资源
https://teck-global.com/
描述
Refused to apply style from 'https://teck-global.com/wp-content/plugins/gutenverse-news/assets/fonts/jegicon/fonts/jegicon.woff?ver=1.0.4' because its MIME type ('font/woff') is not a supported stylesheet MIME type, and strict MIME checking is enabled.
Strict MIME checkingEnsures the resource is of the correct type before being interpreted by the browser.
资源
https://teck-global.com/
描述
Refused to load the script 'https://static.cloudflareinsights.com/beacon.min.js/vcd15cbe7772f49c399c6a5babf22c1241717689176015' because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-inline' 'unsafe-eval'". Note that 'script-src-elem' was not explicitly set, so 'script-src' is used as a fallback.
内容安全策略控制允许用户代理为指定页面加载的资源。

单击可了解更多信息...
资源
https://teck-global.com/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
描述
Refused to load the script 'https://cdn-cookieyes.com/client_data/c6c0403d6db09d709cd43414/script.js' because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-inline' 'unsafe-eval'". Note that 'script-src-elem' was not explicitly set, so 'script-src' is used as a fallback.
内容安全策略控制允许用户代理为指定页面加载的资源。

单击可了解更多信息...
描述
Refused to load the script 'https://www.clarity.ms/tag/oh1nfjpgq2?ref=aioseo' because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-inline' 'unsafe-eval'". Note that 'script-src-elem' was not explicitly set, so 'script-src' is used as a fallback.
内容安全策略控制允许用户代理为指定页面加载的资源。

单击可了解更多信息...
资源
https://teck-global.com/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
描述
Refused to load the script 'https://cdn-cookieyes.com/client_data/c6c0403d6db09d709cd43414/script.js' because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-inline' 'unsafe-eval'". Note that 'script-src-elem' was not explicitly set, so 'script-src' is used as a fallback.
内容安全策略控制允许用户代理为指定页面加载的资源。

单击可了解更多信息...
描述
Refused to create a worker from 'blob:https://teck-global.com/8010e84f-60d4-4f53-9781-6a169169ca42' because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-inline' 'unsafe-eval'". Note that 'worker-src' was not explicitly set, so 'script-src' is used as a fallback.
内容安全策略控制允许用户代理为指定页面加载的资源。

单击可了解更多信息...
资源
https://teck-global.com/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
描述
A preload for 'https://teck-global.com/wp-includes/js/dist/script-modules/block-library/navigation/view.min.js?ver=8ff192874fc8910a284c' is found, but is not used because the request credentials mode does not match. Consider taking a look at crossorigin attribute.
Cross-Origin Resource SharingControls which external origins are allowed load resources.

单击可了解更多信息...

证书 · 找到· 2 个

Copy link

SSL/TLS 证书使网站能够加密客户端和服务器之间的事务并提供服务器身份验证

主题颁发日期到期日期
teck-global.com
upload.video.google.com