diff --git a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/404.json b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/404.json index 7b958037..ddae255a 100644 --- a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/404.json +++ b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/404.json @@ -16,7 +16,7 @@ "href": "https://deces.matchid.io/" }, "link": "https://deces.matchid.io/", - "line": "--2024-03-10 00:54:40-- https://deces.matchid.io/", + "line": "--2024-03-17 00:54:40-- https://deces.matchid.io/", "broken": false }, { @@ -35,7 +35,7 @@ "href": "https://deces.matchid.io/robots.txt" }, "link": "https://deces.matchid.io/robots.txt", - "line": "--2024-03-10 00:54:40-- https://deces.matchid.io/robots.txt", + "line": "--2024-03-17 00:54:41-- https://deces.matchid.io/robots.txt", "broken": false }, { @@ -54,7 +54,7 @@ "href": "https://deces.matchid.io/favicon.svg" }, "link": "https://deces.matchid.io/favicon.svg", - "line": "--2024-03-10 00:54:40-- https://deces.matchid.io/favicon.svg", + "line": "--2024-03-17 00:54:41-- https://deces.matchid.io/favicon.svg", "broken": false }, { @@ -73,7 +73,7 @@ "href": "https://deces.matchid.io/favicon-apple.png" }, "link": "https://deces.matchid.io/favicon-apple.png", - "line": "--2024-03-10 00:54:40-- https://deces.matchid.io/favicon-apple.png", + "line": "--2024-03-17 00:54:41-- https://deces.matchid.io/favicon-apple.png", "broken": false }, { @@ -92,7 +92,7 @@ "href": "https://deces.matchid.io/manifest.json" }, "link": "https://deces.matchid.io/manifest.json", - "line": "--2024-03-10 00:54:41-- https://deces.matchid.io/manifest.json", + "line": "--2024-03-17 00:54:41-- https://deces.matchid.io/manifest.json", "broken": false }, { @@ -111,7 +111,7 @@ "href": "https://deces.matchid.io/css/global.css" }, "link": "https://deces.matchid.io/css/global.css", - "line": "--2024-03-10 00:54:41-- https://deces.matchid.io/css/global.css", + "line": "--2024-03-17 00:54:41-- https://deces.matchid.io/css/global.css", "broken": false }, { @@ -130,7 +130,7 @@ "href": "https://deces.matchid.io/css/matchid.min.css" }, "link": "https://deces.matchid.io/css/matchid.min.css", - "line": "--2024-03-10 00:54:41-- https://deces.matchid.io/css/matchid.min.css", + "line": "--2024-03-17 00:54:41-- https://deces.matchid.io/css/matchid.min.css", "broken": false }, { @@ -149,7 +149,7 @@ "href": "https://deces.matchid.io/build/module/bundle.css" }, "link": "https://deces.matchid.io/build/module/bundle.css", - "line": "--2024-03-10 00:54:41-- https://deces.matchid.io/build/module/bundle.css", + "line": "--2024-03-17 00:54:42-- https://deces.matchid.io/build/module/bundle.css", "broken": false }, { @@ -168,7 +168,7 @@ "href": "https://deces.matchid.io/js/matchid.min.js" }, "link": "https://deces.matchid.io/js/matchid.min.js", - "line": "--2024-03-10 00:54:41-- https://deces.matchid.io/js/matchid.min.js", + "line": "--2024-03-17 00:54:42-- https://deces.matchid.io/js/matchid.min.js", "broken": false }, { @@ -187,7 +187,7 @@ "href": "https://deces.matchid.io/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js" }, "link": "https://deces.matchid.io/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js", - "line": "--2024-03-10 00:54:41-- https://deces.matchid.io/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js", + "line": "--2024-03-17 00:54:42-- https://deces.matchid.io/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js", "broken": false }, { @@ -206,7 +206,7 @@ "href": "https://deces.matchid.io/css/layers.svg" }, "link": "https://deces.matchid.io/css/layers.svg", - "line": "--2024-03-10 00:54:41-- https://deces.matchid.io/css/layers.svg", + "line": "--2024-03-17 00:54:42-- https://deces.matchid.io/css/layers.svg", "broken": false }, { @@ -225,7 +225,7 @@ "href": "https://deces.matchid.io/css/images/marker-icon.png" }, "link": "https://deces.matchid.io/css/images/marker-icon.png", - "line": "--2024-03-10 00:54:42-- https://deces.matchid.io/css/images/marker-icon.png", + "line": "--2024-03-17 00:54:42-- https://deces.matchid.io/css/images/marker-icon.png", "broken": false } ], diff --git a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/http.json b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/http.json index 28e2b65d..f1895b72 100644 --- a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/http.json +++ b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/http.json @@ -1 +1 @@ -{"url":"https://deces.matchid.io","algorithm_version":3,"end_time":"Sun, 10 Mar 2024 00:57:35 GMT","grade":"C+","hidden":false,"likelihood_indicator":"MEDIUM","response_headers":{"CF-Cache-Status":"DYNAMIC","CF-RAY":"861f59f25ea8c3e6-SEA","Connection":"keep-alive","Content-Encoding":"gzip","Content-Security-Policy":"default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com","Content-Type":"text/html","Date":"Sun, 10 Mar 2024 00:57:34 GMT","Feature-Policy":"geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';","Last-Modified":"Wed, 06 Mar 2024 01:29:22 GMT","NEL":"{\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}","Referrer-Policy":"same-origin","Report-To":"{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v3?s=yIoPXTXaXvCCxOnPUchNoa1bc%2BKWTMVbxwi7sflPi%2BqlwVh4QZhVrOKQfdEQG1X1ENuDpMvrVu4LuEicdN4QrtFyDprUoUp%2FkYi1LRVZfbYXwxJy6oHzkpYY2YsXcYS7SPJ5\"}],\"group\":\"cf-nel\",\"max_age\":604800}","Server":"cloudflare","Strict-Transport-Security":"max-age=15552000; includeSubDomains; preload","Transfer-Encoding":"chunked","X-Content-Type-Options":"nosniff","X-Frame-Options":"*.matchid.io","X-XSS-Protection":"1; mode=block","alt-svc":"h3=\":443\"; ma=86400"},"scan_id":48671701,"score":60,"start_time":"Sun, 10 Mar 2024 00:57:33 GMT","state":"FINISHED","status_code":200,"tests_failed":2,"tests_passed":9,"tests_quantity":11,"details":{"content-security-policy":{"expectation":"csp-implemented-with-no-unsafe","name":"content-security-policy","output":{"data":{"connect-src":["csi.gstatic.com","stats.g.doubleclick.net","www.google-analytics.com","region1.analytics.google.com","'self'","cloudflareinsights.com","pagead2.googlesyndication.com","www.data.gouv.fr","analytics.google.com"],"default-src":["'self'"],"font-src":["data:","'self'"],"frame-src":["matchid.io","'self'","tpc.googlesyndication.com","google.com","www.google.com","googleads.g.doubleclick.net"],"img-src":["stats.g.doubleclick.net","upload.wikimedia.org","www.google-analytics.com","matchid.io","'self'","c.basemaps.cartocdn.com","a.basemaps.cartocdn.com","b.basemaps.cartocdn.com","pagead2.googlesyndication.com","www.google.fr"],"script-src":["www.google-analytics.com","www.google.ca","fundingchoicesmessages.google.com","'unsafe-inline'","adservice.google.com","'self'","ajax.cloudflare.com","tpc.googlesyndication.com","static.cloudflareinsights.com","partner.googleadservices.com","www.googletagservices.com","www.google.com","adservice.google.fr","'unsafe-eval'","pagead2.googlesyndication.com","analytics.google.com","www.googletagmanager.com"],"style-src":["'unsafe-inline'","'self'","https:"]},"http":true,"meta":false,"numPolicies":1,"policy":{"antiClickjacking":false,"defaultNone":false,"insecureBaseUri":true,"insecureFormAction":true,"insecureSchemeActive":false,"insecureSchemePassive":false,"strictDynamic":false,"unsafeEval":true,"unsafeInline":true,"unsafeInlineStyle":true,"unsafeObjects":false}},"pass":false,"result":"csp-implemented-with-unsafe-inline","score_description":"Content Security Policy (CSP) implemented unsafely. This includes 'unsafe-inline' or data: inside script-src, overly broad sources such as https: inside object-src or script-src, or not restricting the sources for object-src or script-src.","score_modifier":-20},"contribute":{"expectation":"contribute-json-only-required-on-mozilla-properties","name":"contribute","output":{"data":null},"pass":true,"result":"contribute-json-only-required-on-mozilla-properties","score_description":"Contribute.json isn't required on websites that don't belong to Mozilla","score_modifier":0},"cookies":{"expectation":"cookies-secure-with-httponly-sessions","name":"cookies","output":{"data":null,"sameSite":null},"pass":true,"result":"cookies-not-found","score_description":"No cookies detected","score_modifier":0},"cross-origin-resource-sharing":{"expectation":"cross-origin-resource-sharing-not-implemented","name":"cross-origin-resource-sharing","output":{"data":{"acao":null,"clientaccesspolicy":null,"crossdomain":null}},"pass":true,"result":"cross-origin-resource-sharing-not-implemented","score_description":"Content is not visible via cross-origin resource sharing (CORS) files or headers","score_modifier":0},"redirection":{"expectation":"redirection-to-https","name":"redirection","output":{"destination":"https://deces.matchid.io/","redirects":true,"route":["http://deces.matchid.io/","https://deces.matchid.io/"],"status_code":200},"pass":true,"result":"redirection-to-https","score_description":"Initial redirection is to HTTPS on same host, final destination is HTTPS","score_modifier":0},"referrer-policy":{"expectation":"referrer-policy-private","name":"referrer-policy","output":{"data":"same-origin","http":true,"meta":false},"pass":true,"result":"referrer-policy-private","score_description":"Referrer-Policy header set to \"no-referrer\", \"same-origin\", \"strict-origin\" or \"strict-origin-when-cross-origin\"","score_modifier":5},"strict-transport-security":{"expectation":"hsts-implemented-max-age-at-least-six-months","name":"strict-transport-security","output":{"data":"max-age=15552000; includeSubDomains; preload","includeSubDomains":true,"max-age":15552000,"preload":true,"preloaded":false},"pass":true,"result":"hsts-implemented-max-age-at-least-six-months","score_description":"HTTP Strict Transport Security (HSTS) header set to a minimum of six months (15768000)","score_modifier":0},"subresource-integrity":{"expectation":"sri-implemented-and-external-scripts-loaded-securely","name":"subresource-integrity","output":{"data":{"https://static.cloudflareinsights.com/beacon.min.js/v84a3a4012de94ce1a686ba8c167c359c1696973893317":{"crossorigin":"anonymous","integrity":"sha512-euoFGowhlaLqXsPWQ48qSkBSCFs3DPRyiwVu3FjR96cMPx+Fr+gpWRhIafcHwqwCqWS42RZhIudOvEI+Ckf6MA=="}}},"pass":true,"result":"sri-implemented-and-external-scripts-loaded-securely","score_description":"Subresource Integrity (SRI) is implemented and all scripts are loaded securely","score_modifier":5},"x-content-type-options":{"expectation":"x-content-type-options-nosniff","name":"x-content-type-options","output":{"data":"nosniff"},"pass":true,"result":"x-content-type-options-nosniff","score_description":"X-Content-Type-Options header set to \"nosniff\"","score_modifier":0},"x-frame-options":{"expectation":"x-frame-options-sameorigin-or-deny","name":"x-frame-options","output":{"data":"*.matchid.io"},"pass":false,"result":"x-frame-options-header-invalid","score_description":"X-Frame-Options (XFO) header cannot be recognized","score_modifier":-20},"x-xss-protection":{"expectation":"x-xss-protection-disabled","name":"x-xss-protection","output":{"data":"1; mode=block"},"pass":true,"result":"x-xss-protection-enabled-mode-block","score_description":"Deprecated X-XSS-Protection header set to \"1; mode=block\"","score_modifier":0}}} \ No newline at end of file +{"url":"https://deces.matchid.io","algorithm_version":3,"end_time":"Sun, 17 Mar 2024 00:57:21 GMT","grade":"C+","hidden":false,"likelihood_indicator":"MEDIUM","response_headers":{"CF-Cache-Status":"DYNAMIC","CF-RAY":"8659073f19517209-SEA","Connection":"keep-alive","Content-Encoding":"gzip","Content-Security-Policy":"default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com","Content-Type":"text/html","Date":"Sun, 17 Mar 2024 00:57:20 GMT","Feature-Policy":"geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';","Last-Modified":"Wed, 06 Mar 2024 01:29:22 GMT","NEL":"{\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}","Referrer-Policy":"same-origin","Report-To":"{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=0bqTGOwqDHtIpUvCmnHvd%2BTSeRm0AQLSSiP9kxDSDcGsIQUzGoJp2Opvolh0nsACkcK6NqfW6z3FgBp7sY4AEwFvsUXrZdIxA%2Bc6Kx2uUfVoVF8zUgvtVhZ%2BJit9c%2Fpv7ptS\"}],\"group\":\"cf-nel\",\"max_age\":604800}","Server":"cloudflare","Strict-Transport-Security":"max-age=15552000; includeSubDomains; preload","Transfer-Encoding":"chunked","X-Content-Type-Options":"nosniff","X-Frame-Options":"*.matchid.io","X-XSS-Protection":"1; mode=block","alt-svc":"h3=\":443\"; ma=86400"},"scan_id":48950893,"score":60,"start_time":"Sun, 17 Mar 2024 00:57:19 GMT","state":"FINISHED","status_code":200,"tests_failed":2,"tests_passed":9,"tests_quantity":11,"details":{"content-security-policy":{"expectation":"csp-implemented-with-no-unsafe","name":"content-security-policy","output":{"data":{"connect-src":["region1.analytics.google.com","pagead2.googlesyndication.com","csi.gstatic.com","'self'","www.data.gouv.fr","www.google-analytics.com","analytics.google.com","cloudflareinsights.com","stats.g.doubleclick.net"],"default-src":["'self'"],"font-src":["'self'","data:"],"frame-src":["tpc.googlesyndication.com","www.google.com","matchid.io","'self'","google.com","googleads.g.doubleclick.net"],"img-src":["c.basemaps.cartocdn.com","b.basemaps.cartocdn.com","www.google.fr","pagead2.googlesyndication.com","a.basemaps.cartocdn.com","'self'","matchid.io","www.google-analytics.com","upload.wikimedia.org","stats.g.doubleclick.net"],"script-src":["tpc.googlesyndication.com","'unsafe-eval'","www.google.ca","www.googletagservices.com","adservice.google.fr","static.cloudflareinsights.com","www.google.com","ajax.cloudflare.com","fundingchoicesmessages.google.com","'self'","pagead2.googlesyndication.com","www.googletagmanager.com","www.google-analytics.com","'unsafe-inline'","analytics.google.com","partner.googleadservices.com","adservice.google.com"],"style-src":["https:","'self'","'unsafe-inline'"]},"http":true,"meta":false,"numPolicies":1,"policy":{"antiClickjacking":false,"defaultNone":false,"insecureBaseUri":true,"insecureFormAction":true,"insecureSchemeActive":false,"insecureSchemePassive":false,"strictDynamic":false,"unsafeEval":true,"unsafeInline":true,"unsafeInlineStyle":true,"unsafeObjects":false}},"pass":false,"result":"csp-implemented-with-unsafe-inline","score_description":"Content Security Policy (CSP) implemented unsafely. This includes 'unsafe-inline' or data: inside script-src, overly broad sources such as https: inside object-src or script-src, or not restricting the sources for object-src or script-src.","score_modifier":-20},"contribute":{"expectation":"contribute-json-only-required-on-mozilla-properties","name":"contribute","output":{"data":null},"pass":true,"result":"contribute-json-only-required-on-mozilla-properties","score_description":"Contribute.json isn't required on websites that don't belong to Mozilla","score_modifier":0},"cookies":{"expectation":"cookies-secure-with-httponly-sessions","name":"cookies","output":{"data":null,"sameSite":null},"pass":true,"result":"cookies-not-found","score_description":"No cookies detected","score_modifier":0},"cross-origin-resource-sharing":{"expectation":"cross-origin-resource-sharing-not-implemented","name":"cross-origin-resource-sharing","output":{"data":{"acao":null,"clientaccesspolicy":null,"crossdomain":null}},"pass":true,"result":"cross-origin-resource-sharing-not-implemented","score_description":"Content is not visible via cross-origin resource sharing (CORS) files or headers","score_modifier":0},"redirection":{"expectation":"redirection-to-https","name":"redirection","output":{"destination":"https://deces.matchid.io/","redirects":true,"route":["http://deces.matchid.io/","https://deces.matchid.io/"],"status_code":200},"pass":true,"result":"redirection-to-https","score_description":"Initial redirection is to HTTPS on same host, final destination is HTTPS","score_modifier":0},"referrer-policy":{"expectation":"referrer-policy-private","name":"referrer-policy","output":{"data":"same-origin","http":true,"meta":false},"pass":true,"result":"referrer-policy-private","score_description":"Referrer-Policy header set to \"no-referrer\", \"same-origin\", \"strict-origin\" or \"strict-origin-when-cross-origin\"","score_modifier":5},"strict-transport-security":{"expectation":"hsts-implemented-max-age-at-least-six-months","name":"strict-transport-security","output":{"data":"max-age=15552000; includeSubDomains; preload","includeSubDomains":true,"max-age":15552000,"preload":true,"preloaded":false},"pass":true,"result":"hsts-implemented-max-age-at-least-six-months","score_description":"HTTP Strict Transport Security (HSTS) header set to a minimum of six months (15768000)","score_modifier":0},"subresource-integrity":{"expectation":"sri-implemented-and-external-scripts-loaded-securely","name":"subresource-integrity","output":{"data":{"https://static.cloudflareinsights.com/beacon.min.js/v84a3a4012de94ce1a686ba8c167c359c1696973893317":{"crossorigin":"anonymous","integrity":"sha512-euoFGowhlaLqXsPWQ48qSkBSCFs3DPRyiwVu3FjR96cMPx+Fr+gpWRhIafcHwqwCqWS42RZhIudOvEI+Ckf6MA=="}}},"pass":true,"result":"sri-implemented-and-external-scripts-loaded-securely","score_description":"Subresource Integrity (SRI) is implemented and all scripts are loaded securely","score_modifier":5},"x-content-type-options":{"expectation":"x-content-type-options-nosniff","name":"x-content-type-options","output":{"data":"nosniff"},"pass":true,"result":"x-content-type-options-nosniff","score_description":"X-Content-Type-Options header set to \"nosniff\"","score_modifier":0},"x-frame-options":{"expectation":"x-frame-options-sameorigin-or-deny","name":"x-frame-options","output":{"data":"*.matchid.io"},"pass":false,"result":"x-frame-options-header-invalid","score_description":"X-Frame-Options (XFO) header cannot be recognized","score_modifier":-20},"x-xss-protection":{"expectation":"x-xss-protection-disabled","name":"x-xss-protection","output":{"data":"1; mode=block"},"pass":true,"result":"x-xss-protection-enabled-mode-block","score_description":"Deprecated X-XSS-Protection header set to \"1; mode=block\"","score_modifier":0}}} \ No newline at end of file diff --git a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/lhr-aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlvLw==.html b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/lhr-aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlvLw==.html index fe53780a..03ee3a52 100644 --- a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/lhr-aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlvLw==.html +++ b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/lhr-aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlvLw==.html @@ -7583,7 +7583,7 @@ //# sourceURL=compiled-reportrenderer.js - + - + - + diff --git a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/nuclei.json b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/nuclei.json index f33be603..11732a21 100644 --- a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/nuclei.json +++ b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/nuclei.json @@ -32,9 +32,9 @@ "type": "dns", "host": "deces.matchid.io.", "matched-at": "deces.matchid.io", - "request": ";; opcode: QUERY, status: NOERROR, id: 3724\n;; flags: rd; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1\n\n;; OPT PSEUDOSECTION:\n; EDNS: version 0; flags:; udp: 4096\n\n;; QUESTION SECTION:\n;deces.matchid.io.\tIN\t CAA\n", - "response": ";; opcode: QUERY, status: NOERROR, id: 3724\n;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 1\n\n;; OPT PSEUDOSECTION:\n; EDNS: version 0; flags:; udp: 512\n\n;; QUESTION SECTION:\n;deces.matchid.io.\tIN\t CAA\n\n;; AUTHORITY SECTION:\nmatchid.io.\t1800\tIN\tSOA\ttia.ns.cloudflare.com. dns.cloudflare.com. 2334442361 10000 2400 604800 1800\n", - "timestamp": "2024-03-10T00:59:58.39690705Z", + "request": ";; opcode: QUERY, status: NOERROR, id: 51720\n;; flags: rd; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1\n\n;; OPT PSEUDOSECTION:\n; EDNS: version 0; flags:; udp: 4096\n\n;; QUESTION SECTION:\n;deces.matchid.io.\tIN\t CAA\n", + "response": ";; opcode: QUERY, status: NOERROR, id: 51720\n;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 1\n\n;; OPT PSEUDOSECTION:\n; EDNS: version 0; flags:; udp: 1232\n\n;; QUESTION SECTION:\n;deces.matchid.io.\tIN\t CAA\n\n;; AUTHORITY SECTION:\nmatchid.io.\t1800\tIN\tSOA\ttia.ns.cloudflare.com. dns.cloudflare.com. 2334442361 10000 2400 604800 1800\n", + "timestamp": "2024-03-17T00:59:47.138147074Z", "matcher-status": true }, { @@ -72,9 +72,9 @@ "extracted-results": [ "\"google-site-verification=R8qdKQhQRtLbMF_bALIP-CGC16_BJCZSy8Olu7RTzY8\"" ], - "request": ";; opcode: QUERY, status: NOERROR, id: 16149\n;; flags: rd ad; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1\n\n;; OPT PSEUDOSECTION:\n; EDNS: version 0; flags:; udp: 4096\n\n;; QUESTION SECTION:\n;deces.matchid.io.\tIN\t TXT\n", - "response": ";; opcode: QUERY, status: NOERROR, id: 16149\n;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1\n\n;; OPT PSEUDOSECTION:\n; EDNS: version 0; flags:; udp: 512\n\n;; QUESTION SECTION:\n;deces.matchid.io.\tIN\t TXT\n\n;; ANSWER SECTION:\ndeces.matchid.io.\t300\tIN\tTXT\t\"google-site-verification=R8qdKQhQRtLbMF_bALIP-CGC16_BJCZSy8Olu7RTzY8\"\n", - "timestamp": "2024-03-10T00:59:59.39162681Z", + "request": ";; opcode: QUERY, status: NOERROR, id: 58621\n;; flags: rd ad; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1\n\n;; OPT PSEUDOSECTION:\n; EDNS: version 0; flags:; udp: 4096\n\n;; QUESTION SECTION:\n;deces.matchid.io.\tIN\t TXT\n", + "response": ";; opcode: QUERY, status: NOERROR, id: 58621\n;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1\n\n;; OPT PSEUDOSECTION:\n; EDNS: version 0; flags:; udp: 512\n\n;; QUESTION SECTION:\n;deces.matchid.io.\tIN\t TXT\n\n;; ANSWER SECTION:\ndeces.matchid.io.\t300\tIN\tTXT\t\"google-site-verification=R8qdKQhQRtLbMF_bALIP-CGC16_BJCZSy8Olu7RTzY8\"\n", + "timestamp": "2024-03-17T00:59:47.157507765Z", "matcher-status": true }, { @@ -114,9 +114,9 @@ "1; mode=block" ], "request": "GET / HTTP/1.1\r\nHost: deces.matchid.io\r\nUser-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)\r\nConnection: close\r\nAccept: */*\r\nAccept-Language: en\r\nAccept-Encoding: gzip\r\n\r\n", - "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 861f5dabfc0e07dd-IAD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 10 Mar 2024 01:00:06 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v3?s=2eJ9qbMsu4qyTYbfKbZhMEF37IIoOpgKa59IFM31rPp1%2FWMR877EE8hFSUDGK42G4Y0PvJ7573m1fUnnALcZOH%2FeTu4ReF77%2FbZdkPbfdaj%2FTA33zsUs%2Fd5CKTo4P86dj7W2\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:00:06.519999378Z", + "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 86590b079b4022cc-ORD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 17 Mar 2024 00:59:55 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=A9WiFNs0lC6V7w5v6okJdnDMFfw9FKkME7dGWsnTrDU%2FtxvPua%2F%2FZhjiZK7zGNikgHZkj0g%2B4Z%2BIGQ9%2BQT48ojMAxmCSl3jJtm53IALBEMC3Hj8wFuEcFRXn0N%2BRTnDV7lRu\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T00:59:55.61181906Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://deces.matchid.io'", "matcher-status": true }, @@ -143,9 +143,9 @@ "host": "https://deces.matchid.io", "matched-at": "https://deces.matchid.io", "request": "GET / HTTP/1.1\r\nHost: deces.matchid.io\r\nUser-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)\r\nConnection: close\r\nAccept: */*\r\nAccept-Language: en\r\nAccept-Encoding: gzip\r\n\r\n", - "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 861f5e1d2e233b36-IAD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 10 Mar 2024 01:00:24 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v3?s=ZoYiqzt2lDvgUhLE3TJKelE6wTRalPr6c5I7pELy5og19V4tnhs4GC07lGfRN1yATI7rhW4%2F%2FCV83OvH2J%2FxZM4sm7djOJ5IfGpHwKADcBcw5v7X7ExQ8t2C72PwILfL%2FroO\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:00:24.777679634Z", + "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 86590b77b8ab6095-ORD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 17 Mar 2024 01:00:13 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=nUj4dEJkXUv6CT8KgZhr6kaHrbZ7kNaRKSvQBz0A4mOxE484qUu7fHEyvWLhTVmYdHEbXbC8BRo8PBT0%2FnKTtv7ufycvYOoJuBCKiuZi0uRZetrWk%2BvuFzuhfeJDkRM1%2Fx1u\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:00:13.683140254Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://deces.matchid.io'", "matcher-status": true }, @@ -182,9 +182,9 @@ "host": "https://deces.matchid.io", "matched-at": "https://deces.matchid.io", "request": "GET / HTTP/1.1\r\nHost: deces.matchid.io\r\nUser-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)\r\nConnection: close\r\nAccept: */*\r\nAccept-Language: en\r\nAccept-Encoding: gzip\r\n\r\n", - "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 861f5e41fbb2399a-IAD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 10 Mar 2024 01:00:30 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v3?s=RBKtijth6FuUO7XdeoZzarS6KgasX648K0DCRvf7FslOz2hnS1%2BR2mgpdLbYmCVBYaAMeqfZrRSyhrGfab4m%2BTJlnnQCRYuA2Zjp%2FvdEJjVu2yIwIyYWepi0P79jSfnObHCn\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:00:30.485467226Z", + "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 86590b9dff3510be-ORD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 17 Mar 2024 01:00:19 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=rTIPhdZWvbImCJ4mCJb95OPAniiauqb5pqn2yWxDotL3HbnF210JoK%2B8a866H9zOSO4%2FyticngkY8sI48y4CHTYWMWeWP14rCN5aSI3PhQj3WWj560W%2FiXNJaPKonJxxjes7\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:00:19.638147816Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://deces.matchid.io'", "matcher-status": true }, @@ -221,9 +221,9 @@ "host": "https://deces.matchid.io", "matched-at": "https://deces.matchid.io", "request": "GET / HTTP/1.1\r\nHost: deces.matchid.io\r\nUser-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)\r\nConnection: close\r\nAccept: */*\r\nAccept-Language: en\r\nAccept-Encoding: gzip\r\n\r\n", - "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 861f5e41fbb2399a-IAD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 10 Mar 2024 01:00:30 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v3?s=RBKtijth6FuUO7XdeoZzarS6KgasX648K0DCRvf7FslOz2hnS1%2BR2mgpdLbYmCVBYaAMeqfZrRSyhrGfab4m%2BTJlnnQCRYuA2Zjp%2FvdEJjVu2yIwIyYWepi0P79jSfnObHCn\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:00:30.48552289Z", + "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 86590b9dff3510be-ORD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 17 Mar 2024 01:00:19 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=rTIPhdZWvbImCJ4mCJb95OPAniiauqb5pqn2yWxDotL3HbnF210JoK%2B8a866H9zOSO4%2FyticngkY8sI48y4CHTYWMWeWP14rCN5aSI3PhQj3WWj560W%2FiXNJaPKonJxxjes7\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:00:19.638201136Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://deces.matchid.io'", "matcher-status": true }, @@ -260,9 +260,9 @@ "host": "https://deces.matchid.io", "matched-at": "https://deces.matchid.io", "request": "GET / HTTP/1.1\r\nHost: deces.matchid.io\r\nUser-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)\r\nConnection: close\r\nAccept: */*\r\nAccept-Language: en\r\nAccept-Encoding: gzip\r\n\r\n", - "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 861f5e41fbb2399a-IAD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 10 Mar 2024 01:00:30 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v3?s=RBKtijth6FuUO7XdeoZzarS6KgasX648K0DCRvf7FslOz2hnS1%2BR2mgpdLbYmCVBYaAMeqfZrRSyhrGfab4m%2BTJlnnQCRYuA2Zjp%2FvdEJjVu2yIwIyYWepi0P79jSfnObHCn\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:00:30.485538288Z", + "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 86590b9dff3510be-ORD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 17 Mar 2024 01:00:19 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=rTIPhdZWvbImCJ4mCJb95OPAniiauqb5pqn2yWxDotL3HbnF210JoK%2B8a866H9zOSO4%2FyticngkY8sI48y4CHTYWMWeWP14rCN5aSI3PhQj3WWj560W%2FiXNJaPKonJxxjes7\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:00:19.638216635Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://deces.matchid.io'", "matcher-status": true }, @@ -299,9 +299,9 @@ "host": "https://deces.matchid.io", "matched-at": "https://deces.matchid.io", "request": "GET / HTTP/1.1\r\nHost: deces.matchid.io\r\nUser-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)\r\nConnection: close\r\nAccept: */*\r\nAccept-Language: en\r\nAccept-Encoding: gzip\r\n\r\n", - "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 861f5e41fbb2399a-IAD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 10 Mar 2024 01:00:30 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v3?s=RBKtijth6FuUO7XdeoZzarS6KgasX648K0DCRvf7FslOz2hnS1%2BR2mgpdLbYmCVBYaAMeqfZrRSyhrGfab4m%2BTJlnnQCRYuA2Zjp%2FvdEJjVu2yIwIyYWepi0P79jSfnObHCn\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:00:30.48555017Z", + "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 86590b9dff3510be-ORD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 17 Mar 2024 01:00:19 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=rTIPhdZWvbImCJ4mCJb95OPAniiauqb5pqn2yWxDotL3HbnF210JoK%2B8a866H9zOSO4%2FyticngkY8sI48y4CHTYWMWeWP14rCN5aSI3PhQj3WWj560W%2FiXNJaPKonJxxjes7\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:00:19.638229019Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://deces.matchid.io'", "matcher-status": true }, @@ -338,9 +338,9 @@ "host": "https://deces.matchid.io", "matched-at": "https://deces.matchid.io", "request": "GET / HTTP/1.1\r\nHost: deces.matchid.io\r\nUser-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)\r\nConnection: close\r\nAccept: */*\r\nAccept-Language: en\r\nAccept-Encoding: gzip\r\n\r\n", - "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 861f5e41fbb2399a-IAD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 10 Mar 2024 01:00:30 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v3?s=RBKtijth6FuUO7XdeoZzarS6KgasX648K0DCRvf7FslOz2hnS1%2BR2mgpdLbYmCVBYaAMeqfZrRSyhrGfab4m%2BTJlnnQCRYuA2Zjp%2FvdEJjVu2yIwIyYWepi0P79jSfnObHCn\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:00:30.485563415Z", + "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 86590b9dff3510be-ORD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 17 Mar 2024 01:00:19 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=rTIPhdZWvbImCJ4mCJb95OPAniiauqb5pqn2yWxDotL3HbnF210JoK%2B8a866H9zOSO4%2FyticngkY8sI48y4CHTYWMWeWP14rCN5aSI3PhQj3WWj560W%2FiXNJaPKonJxxjes7\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:00:19.6382512Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://deces.matchid.io'", "matcher-status": true }, @@ -377,9 +377,9 @@ "host": "https://deces.matchid.io", "matched-at": "https://deces.matchid.io", "request": "GET / HTTP/1.1\r\nHost: deces.matchid.io\r\nUser-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)\r\nConnection: close\r\nAccept: */*\r\nAccept-Language: en\r\nAccept-Encoding: gzip\r\n\r\n", - "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 861f5e41fbb2399a-IAD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 10 Mar 2024 01:00:30 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v3?s=RBKtijth6FuUO7XdeoZzarS6KgasX648K0DCRvf7FslOz2hnS1%2BR2mgpdLbYmCVBYaAMeqfZrRSyhrGfab4m%2BTJlnnQCRYuA2Zjp%2FvdEJjVu2yIwIyYWepi0P79jSfnObHCn\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:00:30.485578614Z", + "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 86590b9dff3510be-ORD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 17 Mar 2024 01:00:19 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=rTIPhdZWvbImCJ4mCJb95OPAniiauqb5pqn2yWxDotL3HbnF210JoK%2B8a866H9zOSO4%2FyticngkY8sI48y4CHTYWMWeWP14rCN5aSI3PhQj3WWj560W%2FiXNJaPKonJxxjes7\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:00:19.638265968Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://deces.matchid.io'", "matcher-status": true }, @@ -408,9 +408,9 @@ "host": "https://deces.matchid.io", "matched-at": "https://deces.matchid.io/robots.txt", "request": "GET /robots.txt HTTP/1.1\r\nHost: deces.matchid.io\r\nUser-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)\r\nConnection: close\r\nAccept: */*\r\nAccept-Language: en\r\nAccept-Encoding: gzip\r\n\r\n", - "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nContent-Length: 34\r\nAccept-Ranges: bytes\r\nAge: 202\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCache-Control: max-age=86400\r\nCf-Cache-Status: HIT\r\nCf-Ray: 861f5e677e5156d4-IAD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/plain\r\nDate: Sun, 10 Mar 2024 01:00:36 GMT\r\nEtag: \"65e7c6f2-22\"\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v3?s=ad3KXBQXGnYk51MUWpihLMi3Y68ew6QU2FFJ7kEzOP0aOx7M05TgqUUFd3fglMGtMQ8NFZ%2BYyQ%2BID5N%2BLNqs8Tn3JPRHap5FgxgYNZ0w6glmB2%2BVPvjM64RwYm46VmMQNYlL\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nVary: Accept-Encoding\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\nUser-agent: AhrefsBot\nDisallow: /\n", - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:00:36.405682474Z", + "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nContent-Length: 34\r\nAccept-Ranges: bytes\r\nAge: 344\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCache-Control: max-age=86400\r\nCf-Cache-Status: HIT\r\nCf-Ray: 86590bc37fd35078-ORD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/plain\r\nDate: Sun, 17 Mar 2024 01:00:25 GMT\r\nEtag: \"65e7c6f2-22\"\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=h%2FT0VKIBtlens6cKp6E2aTYYHbJEvdWbbVdCiyZWlrFY3KWiReKB868zdb3%2Fhd98xxGfKTCfWjMwhzqmAkGS%2FFlaRR63EdxTEMEtmSOEdsOQUFbQQ0PJ9rOg1g5UObTSjfTU\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nVary: Accept-Encoding\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\nUser-agent: AhrefsBot\nDisallow: /\n", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:00:25.526206209Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://deces.matchid.io/robots.txt'", "matcher-status": true }, @@ -447,9 +447,9 @@ "https://static.cloudflareinsights.com/beacon.min.js/v84a3a4012de94ce1a686ba8c167c359c1696973893317" ], "request": "GET / HTTP/1.1\r\nHost: deces.matchid.io\r\nUser-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)\r\nConnection: close\r\nAccept-Encoding: gzip\r\n\r\n", - "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 861f5e7d396f9c88-IAD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 10 Mar 2024 01:00:39 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v3?s=N03Wa2I9MikSjvYkS8rmlDI9BE5%2BWVPL%2BKmVk8q9WrRBCmdlwDTCmGY1xVNMDBkhF9umvz1LTQy4vCfoByerWgP21J3xStadbGxHImBvxBDSMR%2BXWwln2eu%2Bu1j0yCI7jdFN\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:00:39.966462099Z", + "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 86590bdc5f3f61e4-ORD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 17 Mar 2024 01:00:29 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=1lFFWqJYbYTalYLyRHc8GCf11VXCCK9J8KI%2FWARg874xSiSAp%2FzyIihDw%2Bw0zv40WrVmh3NPiXVa0IAip6FeBNzzT3LvUahzYsXs6f1n72QbxGwkwGd1IzHhPC73%2Fayr17J2\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:00:29.619313154Z", "curl-command": "curl -X 'GET' -d '' -H 'Host: deces.matchid.io' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://deces.matchid.io/'", "matcher-status": true }, @@ -490,9 +490,9 @@ "\"version\":\"2024.2.4\"" ], "request": "GET /v1/console/server/state?accessToken&username HTTP/1.1\r\nHost: deces.matchid.io\r\nUser-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)\r\nConnection: close\r\nAccept: */*\r\nAccept-Language: en\r\nAccept-Encoding: gzip\r\n\r\n", - "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 861f5e997c9b29b5-IAD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 10 Mar 2024 01:00:44 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v3?s=rOMQmkGSO%2Fmd4t7vNQB14IB%2BZY6SQwNtdDtw0EAzHV6sKPifU0fWu8gtzb67mpPh%2F1D15UJkRYxYsCvAmRrwIFaIulYgZzLzDTfb4a0lxWvWxs1Ojm6akSMtxYLAu%2BdiGUBk\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:00:44.485375719Z", + "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 86590bf61fca115a-ORD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 17 Mar 2024 01:00:33 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=QKTgcjhMhu0Cn9NsMZ0HiFxS%2B%2Fqmch2C96Usd%2FjZQzSkigZcs8xx5gpc9jOcfFrAAtZlecq0iiFjPJ3y6m2vazRyKNfjIOphy0nXUkUJs0hknZiGupl6b7O4yJ8qyzPGplGn\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:00:33.729336273Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://deces.matchid.io/v1/console/server/state?accessToken&username'", "matcher-status": true }, @@ -533,9 +533,9 @@ "\"version\":\"2024.2.4\"" ], "request": "GET /nacos/v1/console/server/state?accessToken&username HTTP/1.1\r\nHost: deces.matchid.io\r\nUser-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)\r\nConnection: close\r\nAccept: */*\r\nAccept-Language: en\r\nAccept-Encoding: gzip\r\n\r\n", - "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 861f5e9a1e57084d-IAD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 10 Mar 2024 01:00:44 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v3?s=H4UKExnC%2FcqUtggzGocOVAnYpCwvrrDQmc6dgTDrqvrAb%2BXtKhgYIaaQ7hP0Kp19uwEJQhCDREWBlEYe6%2BeicXvE0jQcky%2Fmgs%2BwyGVwO5KcuJ9f72dcEySbZM25zPyKhi%2Fb\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:00:44.582248807Z", + "response": "HTTP/1.1 200 OK\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 86590bf6dab910fb-ORD\r\nContent-Security-Policy: default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com\r\nContent-Type: text/html\r\nDate: Sun, 17 Mar 2024 01:00:33 GMT\r\nFeature-Policy: geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';\r\nLast-Modified: Wed, 06 Mar 2024 01:29:22 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReferrer-Policy: same-origin\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=B8dPf2Bqlh5GHIanPQ2yMCJlZKdktNiSJrDtexbLBctgVQZQnARwign9ImWZ%2BEp%2F4XK9X1jO5K2CoTp0B7H1fYbd3ZCVAT7ZXYXzu%2Bj2G27RLILauv0BwrK090D1cnpFkIvg\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: *.matchid.io\r\nX-Xss-Protection: 1; mode=block\r\n\r\n\n\n\n\n\n\n\n\n\nmatchID - Moteur de recherche des décès\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n
\nSi vous voyez ce message, c'est que que votre navigateur est incompatible, ou bien que la connexion a posé\nproblème.\n
\nLes navigateurs supportés sont : Edge >= 79, Chrome >= 65, Firefox >= 68, Safari >=11\n
\nMaintenir la compatibilité du service avec les navigateurs anciens est une activité coûteuse, et le maintien\nd'une version ancienne de navigateur est risquée pour la sécurité de vos données. N'hésitez pas à faire\nune mise à jour !\n
\n\n\n\n", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:00:33.863291366Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://deces.matchid.io/nacos/v1/console/server/state?accessToken&username'", "matcher-status": true }, @@ -575,9 +575,9 @@ "host": "https://deces.matchid.io", "matched-at": "https://deces.matchid.io/", "request": "POST / HTTP/1.1\r\nHost: deces.matchid.io\r\nUser-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)\r\nConnection: close\r\nContent-Length: 27\r\nContent-Type: application/x-www-form-urlencoded\r\nAccept-Encoding: gzip\r\n\r\n_=", - "response": "HTTP/1.1 405 Method Not Allowed\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 861f5e9fbf5782b6-IAD\r\nContent-Type: text/html\r\nDate: Sun, 10 Mar 2024 01:00:45 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v3?s=dWfr9tLNtXmYaequhUVkNxEzjlvUd96TcasTqMZRbcMzS7s6HP1roFrssui7MbC6GJgY4TuUEPGI7lUevBCfyzBDZuLy3DHblnTRnOHlbXkPg9SPSQAXYcFTBTISNFinIpeC\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\n\r\n\n405 Not Allowed\n\n

405 Not Allowed

\n
nginx
\n\n\n\n", - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:00:45.49934425Z", + "response": "HTTP/1.1 405 Method Not Allowed\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 86590bfbba6a2f2c-ORD\r\nContent-Type: text/html\r\nDate: Sun, 17 Mar 2024 01:00:34 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=d3vgWEdaA961PpRZRhC09vt71e6MAUngcZ7JCjuEolSi3079DgIpl3OfncDRSZmtlUa4G2IxrqSxnTF1AYNIWyoNV9%2FVL%2Fj%2FvQMXCswEiMr6P%2FW1LOd8OCrjIMILLxudNWyn\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\n\r\n\n405 Not Allowed\n\n

405 Not Allowed

\n
nginx
\n\n\n\n", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:00:34.642346194Z", "curl-command": "curl -X 'POST' -d '_=' -H 'Content-Type: application/x-www-form-urlencoded' -H 'Host: deces.matchid.io' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://deces.matchid.io/'", "matcher-status": true }, @@ -617,9 +617,9 @@ "host": "https://deces.matchid.io", "matched-at": "https://deces.matchid.io/", "request": "POST / HTTP/1.1\r\nHost: deces.matchid.io\r\nUser-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)\r\nConnection: close\r\nContent-Length: 27\r\nContent-Type: application/x-www-form-urlencoded\r\nAccept-Encoding: gzip\r\n\r\n_=", - "response": "HTTP/1.1 405 Method Not Allowed\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 861f5e9fbf5782b6-IAD\r\nContent-Type: text/html\r\nDate: Sun, 10 Mar 2024 01:00:45 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v3?s=dWfr9tLNtXmYaequhUVkNxEzjlvUd96TcasTqMZRbcMzS7s6HP1roFrssui7MbC6GJgY4TuUEPGI7lUevBCfyzBDZuLy3DHblnTRnOHlbXkPg9SPSQAXYcFTBTISNFinIpeC\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\n\r\n\n405 Not Allowed\n\n

405 Not Allowed

\n
nginx
\n\n\n\n", - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:00:45.499382822Z", + "response": "HTTP/1.1 405 Method Not Allowed\r\nConnection: close\r\nTransfer-Encoding: chunked\r\nAlt-Svc: h3=\":443\"; ma=86400\r\nCf-Cache-Status: DYNAMIC\r\nCf-Ray: 86590bfbba6a2f2c-ORD\r\nContent-Type: text/html\r\nDate: Sun, 17 Mar 2024 01:00:34 GMT\r\nNel: {\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}\r\nReport-To: {\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=d3vgWEdaA961PpRZRhC09vt71e6MAUngcZ7JCjuEolSi3079DgIpl3OfncDRSZmtlUa4G2IxrqSxnTF1AYNIWyoNV9%2FVL%2Fj%2FvQMXCswEiMr6P%2FW1LOd8OCrjIMILLxudNWyn\"}],\"group\":\"cf-nel\",\"max_age\":604800}\r\nServer: cloudflare\r\nStrict-Transport-Security: max-age=15552000; includeSubDomains; preload\r\nX-Content-Type-Options: nosniff\r\n\r\n\n405 Not Allowed\n\n

405 Not Allowed

\n
nginx
\n\n\n\n", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:00:34.642391218Z", "curl-command": "curl -X 'POST' -d '_=' -H 'Content-Type: application/x-www-form-urlencoded' -H 'Host: deces.matchid.io' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://deces.matchid.io/'", "matcher-status": true }, @@ -649,8 +649,8 @@ "extracted-results": [ "Let's Encrypt" ], - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:03:38.899006912Z", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:03:28.102023748Z", "matcher-status": true }, { @@ -680,8 +680,8 @@ "*.matchid.io", "matchid.io" ], - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:03:38.899115965Z", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:03:28.1021422Z", "matcher-status": true }, { @@ -701,7 +701,7 @@ ], "description": "Checks a sites certificate to see if there are wildcard CN or SAN entries.\n", "reference": [ - "https://cheatsheetseries.owasp.org/cheatsheets/transport_layer_protection_cheat_sheet.html#carefully-consider-the-use-of-wildcard-certificates" + "https://cheatsheetseries.owasp.org/cheatsheets/transport_layer_security_cheat_sheet.html#carefully-consider-the-use-of-wildcard-certificates" ], "severity": "info", "metadata": { @@ -715,8 +715,8 @@ "CN: matchid.io", " SAN: [*.matchid.io matchid.io]" ], - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:03:38.8991807Z", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:03:28.102186112Z", "matcher-status": true }, { @@ -746,8 +746,8 @@ "extracted-results": [ "tls12" ], - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:03:38.997930112Z", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:03:28.118772892Z", "matcher-status": true }, { @@ -777,8 +777,8 @@ "extracted-results": [ "tls13" ], - "ip": "172.67.179.218", - "timestamp": "2024-03-10T01:03:39.022672731Z", + "ip": "104.21.64.91", + "timestamp": "2024-03-17T01:03:28.143268461Z", "matcher-status": true } ] diff --git a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/testssl.csv b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/testssl.csv index cde80796..b139ae4c 100644 --- a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/testssl.csv +++ b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/testssl.csv @@ -27,7 +27,7 @@ "TLS_session_ticket","deces.matchid.io/172.67.179.218","443","INFO","valid for 64800 seconds only (= 30 days","","" +"cert_expirationStatus","deces.matchid.io/172.67.179.218","443","OK","58 >= 30 days","","" "cert_notBefore","deces.matchid.io/172.67.179.218","443","INFO","2024-02-15 00:54","","" "cert_notAfter","deces.matchid.io/172.67.179.218","443","OK","2024-05-15 00:54","","" "cert_extlifeSpan","deces.matchid.io/172.67.179.218","443","OK","certificate has no extended life time according to browser forum","","" @@ -84,7 +84,7 @@ "intermediate_cert_badOCSP","deces.matchid.io/172.67.179.218","443","OK","intermediate certificate(s) is/are ok","","" "HTTP_status_code","deces.matchid.io/172.67.179.218","443","INFO","200 OK ('/')","","" "HTTP_clock_skew","deces.matchid.io/172.67.179.218","443","INFO","0 seconds from localtime","","" -"HTTP_headerTime","deces.matchid.io/172.67.179.218","443","INFO","1710032299","","" +"HTTP_headerTime","deces.matchid.io/172.67.179.218","443","INFO","1710637085","","" "HSTS_time","deces.matchid.io/172.67.179.218","443","OK","180 days (=15552000 seconds) > 15552000 seconds","","" "HSTS_subdomains","deces.matchid.io/172.67.179.218","443","OK","includes subdomains","","" "HSTS_preload","deces.matchid.io/172.67.179.218","443","OK","domain IS marked for preloading","","" @@ -191,7 +191,7 @@ "TLS_session_ticket","deces.matchid.io/104.21.64.91","443","INFO","valid for 64800 seconds only (= 30 days","","" +"cert_expirationStatus","deces.matchid.io/104.21.64.91","443","OK","58 >= 30 days","","" "cert_notBefore","deces.matchid.io/104.21.64.91","443","INFO","2024-02-15 00:54","","" "cert_notAfter","deces.matchid.io/104.21.64.91","443","OK","2024-05-15 00:54","","" "cert_extlifeSpan","deces.matchid.io/104.21.64.91","443","OK","certificate has no extended life time according to browser forum","","" @@ -248,7 +248,7 @@ "intermediate_cert_badOCSP","deces.matchid.io/104.21.64.91","443","OK","intermediate certificate(s) is/are ok","","" "HTTP_status_code","deces.matchid.io/104.21.64.91","443","INFO","200 OK ('/')","","" "HTTP_clock_skew","deces.matchid.io/104.21.64.91","443","INFO","0 seconds from localtime","","" -"HTTP_headerTime","deces.matchid.io/104.21.64.91","443","INFO","1710032339","","" +"HTTP_headerTime","deces.matchid.io/104.21.64.91","443","INFO","1710637126","","" "HSTS_time","deces.matchid.io/104.21.64.91","443","OK","180 days (=15552000 seconds) > 15552000 seconds","","" "HSTS_subdomains","deces.matchid.io/104.21.64.91","443","OK","includes subdomains","","" "HSTS_preload","deces.matchid.io/104.21.64.91","443","OK","domain IS marked for preloading","","" diff --git a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/testssl.html b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/testssl.html index a3729026..caede9aa 100644 --- a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/testssl.html +++ b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/testssl.html @@ -21,13 +21,13 @@ ########################################################### Using "OpenSSL 1.0.2-bad (1.0.2k-dev)" [~183 ciphers] - on fv-az1249-967:/home/testssl/bin/openssl.Linux.x86_64 + on fv-az692-637:/home/testssl/bin/openssl.Linux.x86_64 (built: "Sep 1 14:03:44 2022", platform: "linux-x86_64") Testing all IPv4 addresses (port 443): 172.67.179.218 104.21.64.91 ----------------------------------------------------- - Start 2024-03-10 00:58:04 -->> 172.67.179.218:443 (deces.matchid.io) <<-- + Start 2024-03-17 00:57:50 -->> 172.67.179.218:443 (deces.matchid.io) <<-- Further IP addresses: 104.21.64.91 2606:4700:3030::6815:405b 2606:4700:3031::ac43:b3da @@ -97,7 +97,7 @@ "compress_certificate/#27" Session Ticket RFC 5077 hint 64800 seconds, session tickets keys seems to be rotated < daily SSL Session ID support yes - Session Resumption Tickets: yes, ID: no + Session Resumption Tickets: yes, ID: yes TLS clock skew Random values, no fingerprinting possible Certificate Compression 0002/Brotli Client Authentication none @@ -115,7 +115,7 @@ https://search.censys.io/search?resource=hosts&virtual_hosts=INCLUDE&q=5EF4365D64D5D14DD7380946FFD65FCBCDC3BB141139C9614514CD19CE1919D7 Chain of trust Ok EV cert (experimental) no - Certificate Validity (UTC) 65 >= 30 days (2024-02-15 00:54 --> 2024-05-15 00:54) + Certificate Validity (UTC) 58 >= 30 days (2024-02-15 00:54 --> 2024-05-15 00:54) ETS/"eTLS", visibility info not present Certificate Revocation List -- OCSP URI http://e1.o.lencr.org @@ -250,10 +250,10 @@ Final Score 84 Overall Grade A+ - Done 2024-03-10 00:58:44 [ 42s] -->> 172.67.179.218:443 (deces.matchid.io) <<-- + Done 2024-03-17 00:58:30 [ 41s] -->> 172.67.179.218:443 (deces.matchid.io) <<-- ----------------------------------------------------- - Start 2024-03-10 00:58:44 -->> 104.21.64.91:443 (deces.matchid.io) <<-- + Start 2024-03-17 00:58:31 -->> 104.21.64.91:443 (deces.matchid.io) <<-- Further IP addresses: 172.67.179.218 2606:4700:3030::6815:405b 2606:4700:3031::ac43:b3da @@ -323,7 +323,7 @@ "compress_certificate/#27" Session Ticket RFC 5077 hint 64800 seconds, session tickets keys seems to be rotated < daily SSL Session ID support yes - Session Resumption Tickets: yes, ID: yes + Session Resumption Tickets: yes, ID: no TLS clock skew Random values, no fingerprinting possible Certificate Compression 0002/Brotli Client Authentication none @@ -341,7 +341,7 @@ https://search.censys.io/search?resource=hosts&virtual_hosts=INCLUDE&q=5EF4365D64D5D14DD7380946FFD65FCBCDC3BB141139C9614514CD19CE1919D7 Chain of trust Ok EV cert (experimental) no - Certificate Validity (UTC) 65 >= 30 days (2024-02-15 00:54 --> 2024-05-15 00:54) + Certificate Validity (UTC) 58 >= 30 days (2024-02-15 00:54 --> 2024-05-15 00:54) ETS/"eTLS", visibility info not present Certificate Revocation List -- OCSP URI http://e1.o.lencr.org @@ -476,7 +476,7 @@ Final Score 84 Overall Grade A+ - Done 2024-03-10 00:59:24 [ 82s] -->> 104.21.64.91:443 (deces.matchid.io) <<-- + Done 2024-03-17 00:59:11 [ 82s] -->> 104.21.64.91:443 (deces.matchid.io) <<-- ----------------------------------------------------- Done testing now all IP addresses (on port 443): 172.67.179.218 104.21.64.91 diff --git a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/testssl.json b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/testssl.json index 098bfb3d..afab7b2b 100644 --- a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/testssl.json +++ b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/testssl.json @@ -206,7 +206,7 @@ "ip" : "deces.matchid.io/172.67.179.218", "port" : "443", "severity" : "INFO", - "finding" : "not supported" + "finding" : "supported" } , { "id" : "TLS_timestamp", @@ -353,7 +353,7 @@ "ip" : "deces.matchid.io/172.67.179.218", "port" : "443", "severity" : "OK", - "finding" : "65 >= 30 days" + "finding" : "58 >= 30 days" } , { "id" : "cert_notBefore", @@ -605,7 +605,7 @@ "ip" : "deces.matchid.io/172.67.179.218", "port" : "443", "severity" : "INFO", - "finding" : "1710032299" + "finding" : "1710637085" } , { "id" : "HSTS_time", @@ -1398,7 +1398,7 @@ "ip" : "deces.matchid.io/104.21.64.91", "port" : "443", "severity" : "INFO", - "finding" : "supported" + "finding" : "not supported" } , { "id" : "TLS_timestamp", @@ -1545,7 +1545,7 @@ "ip" : "deces.matchid.io/104.21.64.91", "port" : "443", "severity" : "OK", - "finding" : "65 >= 30 days" + "finding" : "58 >= 30 days" } , { "id" : "cert_notBefore", @@ -1797,7 +1797,7 @@ "ip" : "deces.matchid.io/104.21.64.91", "port" : "443", "severity" : "INFO", - "finding" : "1710032339" + "finding" : "1710637126" } , { "id" : "HSTS_time", diff --git a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/thirdparties.json b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/thirdparties.json index 16aa2563..2d3b0db4 100644 --- a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/thirdparties.json +++ b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/thirdparties.json @@ -22,7 +22,7 @@ }, { "type": "google", - "url": "https://analytics.google.com/g/collect?v=2&tid=G-49J1J0GERX>m=45je4360v892384882za200&_p=1710032270335&_gaz=1&gcd=13l3l3l3l1&npa=0&dma=0&cid=1978345095.1710032270&ul=en-us&sr=800x600&uaa=&uab=&uafvl=&uamb=0&uam=&uap=&uapv=&uaw=0&pscdl=noapi&_s=1&sid=1710032270&sct=1&seg=0&dl=https%3A%2F%2Fdeces.matchid.io%2Fsearch&dt=matchID%20-%20Moteur%20de%20recherche%20des%20personnes%20d%C3%A9c%C3%A9d%C3%A9es&en=page_view&_fv=1&_nsi=1&_ss=1&_ee=1&tfd=1089", + "url": "https://analytics.google.com/g/collect?v=2&tid=G-49J1J0GERX>m=45je43d0v892384882za200&_p=1710637056315&_gaz=1&gcd=13l3l3l3l1&npa=0&dma=0&cid=1001559062.1710637056&ul=en-us&sr=800x600&uaa=&uab=&uafvl=&uamb=0&uam=&uap=&uapv=&uaw=0&pscdl=noapi&_s=1&sid=1710637056&sct=1&seg=0&dl=https%3A%2F%2Fdeces.matchid.io%2Fsearch&dt=matchID%20-%20Moteur%20de%20recherche%20des%20personnes%20d%C3%A9c%C3%A9d%C3%A9es&en=page_view&_fv=1&_nsi=1&_ss=1&_ee=1&tfd=837", "details": { "id": "google", "message": "Use hosted Matomo instance" @@ -30,7 +30,7 @@ }, { "type": "google analytics", - "url": "https://stats.g.doubleclick.net/g/collect?v=2&tid=G-49J1J0GERX&cid=1978345095.1710032270>m=45je4360v892384882za200&aip=1&dma=0&gcd=13l3l3l3l1&npa=0", + "url": "https://stats.g.doubleclick.net/g/collect?v=2&tid=G-49J1J0GERX&cid=1001559062.1710637056>m=45je43d0v892384882za200&aip=1&dma=0&gcd=13l3l3l3l1&npa=0", "details": { "id": "google analytics", "message": "Use hosted Matomo instance" @@ -38,7 +38,7 @@ }, { "type": "google", - "url": "https://analytics.google.com/g/collect?v=2&tid=G-49J1J0GERX>m=45je4360v892384882za200&_p=1710032270335&gcd=13l3l3l3l1&npa=0&dma=0&cid=1978345095.1710032270&ul=en-us&sr=800x600&uaa=&uab=&uafvl=&uamb=0&uam=&uap=&uapv=&uaw=0&pscdl=noapi&sid=1710032270&sct=1&seg=0&dl=https%3A%2F%2Fdeces.matchid.io%2Fsearch&dt=matchID%20-%20Moteur%20de%20recherche%20des%20personnes%20d%C3%A9c%C3%A9d%C3%A9es&_s=2&tfd=1107", + "url": "https://analytics.google.com/g/collect?v=2&tid=G-49J1J0GERX>m=45je43d0v892384882za200&_p=1710637056315&gcd=13l3l3l3l1&npa=0&dma=0&cid=1001559062.1710637056&ul=en-us&sr=800x600&uaa=&uab=&uafvl=&uamb=0&uam=&uap=&uapv=&uaw=0&pscdl=noapi&sid=1710637056&sct=1&seg=0&dl=https%3A%2F%2Fdeces.matchid.io%2Fsearch&dt=matchID%20-%20Moteur%20de%20recherche%20des%20personnes%20d%C3%A9c%C3%A9d%C3%A9es&_s=2&tfd=856", "details": { "id": "google", "message": "Use hosted Matomo instance" @@ -46,19 +46,11 @@ }, { "type": "unknown", - "url": "https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202403040101/show_ads_impl.js?bust=31081640" + "url": "https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202403130201/show_ads_impl.js" }, { "type": "google analytics", - "url": "https://googleads.g.doubleclick.net/pagead/html/r20240306/r20190131/zrt_lookup_nohtml.html", - "details": { - "id": "google analytics", - "message": "Use hosted Matomo instance" - } - }, - { - "type": "google analytics", - "url": "https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-6277851622494904&output=html&adk=1812271804&adf=3025194257&lmt=1709688562&plat=1%3A8%2C2%3A8%2C3%3A2162688%2C4%3A2162688%2C9%3A32776%2C16%3A8388608%2C17%3A32%2C24%3A32%2C25%3A32%2C30%3A1048576%2C32%3A32%2C41%3A32%2C42%3A32&format=0x0&url=https%3A%2F%2Fdeces.matchid.io%2Fsearch&pra=5&wgl=1&easpi=0&asro=0&aseiel=1~2~4~6~8~9~10~11~12~13~14~15~16~17&uach=WyIiLCIiLCIiLCIiLCIiLG51bGwsMCxudWxsLCIiLG51bGwsMF0.&dt=1710032270397&bpp=14&bdt=987&idt=274&shv=r20240306&mjsv=m202403040101&ptt=9&saldr=aa&abxe=1&nras=1&correlator=1346285946964&frm=20&pv=2&ga_vid=1978345095.1710032270&ga_sid=1710032271&ga_hid=630914350&ga_fc=1&u_tz=0&u_his=2&u_h=600&u_w=800&u_ah=600&u_aw=800&u_cd=24&u_sd=1&dmc=8&adx=-12245933&ady=-12245933&biw=800&bih=600&scr_x=0&scr_y=0&eid=44759875%2C44759926%2C44759837%2C31081587%2C31081644%2C44795921%2C31081640%2C95324161%2C95325785%2C95326935&oid=2&pvsid=1049361829483500&tmod=1434411627&uas=0&nvt=1&fsapi=1&fc=1920&brdim=0%2C0%2C0%2C0%2C800%2C0%2C800%2C600%2C800%2C600&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=33792&bc=31&bz=1&psd=W251bGwsbnVsbCxudWxsLDNd&ifi=1&uci=a!1&fsb=1&dtd=293", + "url": "https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-6277851622494904&output=html&adk=1812271804&adf=3025194257&lmt=1709688562&plat=1%3A8%2C2%3A8%2C3%3A2162688%2C4%3A2162688%2C9%3A32776%2C16%3A8388608%2C17%3A32%2C24%3A32%2C25%3A32%2C30%3A1048576%2C32%3A32%2C41%3A32%2C42%3A32&format=0x0&url=https%3A%2F%2Fdeces.matchid.io%2Fsearch&pra=5&wgl=1&easpi=0&asro=0&aseiel=1~2~4~6~8~9~10~11~12~13~14~15~16~17~18~19~20~21&uach=WyIiLCIiLCIiLCIiLCIiLG51bGwsMCxudWxsLCIiLG51bGwsMF0.&dt=1710637056377&bpp=15&bdt=723&idt=223&shv=r20240313&mjsv=m202403130201&ptt=9&saldr=aa&abxe=1&nras=1&correlator=3431290131096&frm=20&pv=2&ga_vid=1001559062.1710637056&ga_sid=1710637057&ga_hid=771879605&ga_fc=1&u_tz=0&u_his=2&u_h=600&u_w=800&u_ah=600&u_aw=800&u_cd=24&u_sd=1&dmc=8&adx=-12245933&ady=-12245933&biw=800&bih=600&scr_x=0&scr_y=0&eid=44759875%2C44759926%2C44759842%2C42532524%2C95325974%2C95327950%2C95327955%2C95325785&oid=2&pvsid=4198778842078168&tmod=1680459200&uas=0&nvt=1&fsapi=1&fc=1920&brdim=0%2C0%2C0%2C0%2C800%2C0%2C800%2C600%2C800%2C600&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=33792&bc=31&bz=1&psd=W251bGwsbnVsbCxudWxsLDNd&ifi=1&uci=a!1&fsb=1&dtd=241", "details": { "id": "google analytics", "message": "Use hosted Matomo instance" @@ -66,7 +58,7 @@ }, { "type": "unknown", - "url": "https://pagead2.googlesyndication.com/getconfig/sodar?sv=200&tid=gda&tv=r20240306&st=env" + "url": "https://pagead2.googlesyndication.com/getconfig/sodar?sv=200&tid=gda&tv=r20240313&st=env" }, { "type": "unknown", @@ -86,35 +78,35 @@ }, { "type": "unknown", - "url": "https://pagead2.googlesyndication.com/bg/O8T1Km08OhS5_Tz58jKeajrFynp-IyfJlJwKv1268Sc.js" + "url": "https://pagead2.googlesyndication.com/bg/J7jMHEcdr0lVSatsUU1en4le0CiJfA3--2xrJ7e0v4U.js" }, { "type": "unknown", - "url": "https://pagead2.googlesyndication.com/pagead/sodar?id=sodar2&v=225&li=gda_r20240306&jk=1049361829483500&rc=" + "url": "https://pagead2.googlesyndication.com/pagead/sodar?id=sodar2&v=225&li=gda_r20240313&jk=4198778842078168&rc=" }, { "type": "unknown", - "url": "https://tpc.googlesyndication.com/generate_204?9UQcOA" + "url": "https://tpc.googlesyndication.com/generate_204?NRWE2g" }, { "type": "unknown", - "url": "https://pagead2.googlesyndication.com/pagead/sodar?id=sodar2&v=225&t=2&li=gda_r20240306&jk=1049361829483500&bg=!0tGl0Z7NAAZsmiNCTJo7ADQBe5WfOBem6TyxvU5EinrA54Ii6BxwjF4W7DhRU69xhI_Z5dCD2LNOH6WYlfgXbSbd9R-GAgAAAFBSAAAAAmgBBwoAA_XYr5kC9inDOZdkVj05VPr7aI2DqdxmZ3PAnkiOUUZPEY9jIsi2QcQrPrfZaKg3YVU6vtPlz4i2f0yIvxH-eWNwHH7eF1APJGNN6VjBiMzmCLpO46wOSEEb2iv-FKs91ZsmVrnFyKZ1ZxXjDTjVw5r7A8Nxe7qNZr03jZXQKi7vNpgk6hySAUwBMSGeJ1NXNGu_-y0MvJMfPgyEUGhVfr8aZSsp9SehVJSjEZpGTxyBCE6ARss2M0LzeUnGJupaou5k8Hxbbncic2a-LqsWINE2vkg2HMT8EDUAKlUHR85r3JFAOTtGC4mKSdz8GBXvHKh_EvFq64dTrC-LdMbKXqS1OKvRbbSirtZBp4IlbaXYJjZebBrmvtg6ZhDrLNDqNdici5BuffCzej3QXJTofEr1bqbFwW12JarsVKlQ303R3IopgSucKlEq7mzhG0DbCkQG1NFDCC7ylfuweKXY1HEs3itLkptB24Sfx_EyyzuGA5nLjlG7RqCRlbT_oMYdvrYxv_-dqFOoSvzNNXr0jvyPxCT5IlWniprI-yDFrW9WWTDMjO_aSJT_MFpdCPQbWb4IYCyAVGfgfuaW-E9P7rUHloNM7sSGePfA_nwwyQTGQ2J7YfUdvFJnfz5NUV2yNVDacZzxogaQibYM0r4J-zPMW9xH3wALfAaX7Ah4Oh5Hwsft3OMWOTubV408op0h7ntL3zqPy4l5dzkRrHlMmbLXopDQ_P-v7Wm7fklpiVJy7ZIYiJ1VByzaLtrMbVIOV5PuqJd3Ts_XaoCKNty_3Tw5Ehw-rsbqHT2aq7kejk4dtkR8NWpuElCIr2sht3zPg9CY3WTox8KC5m63AneJAgg3xYZlOvfxNxDo_eSRWtJoFlng7xaKCNp8VMsX7dxx6_2JeXiL_fXDjHfeYuFRQGz95at_WfCjcLMa_QU5Z0V6jdEcD7SZnvOUFRjUo8Z0_k7Lct7C8yLbRBo8skDJj7bqp8NVnARQcw4ewA7-DSq03QB6qA_6qbmxSDRW" + "url": "https://pagead2.googlesyndication.com/pagead/sodar?id=sodar2&v=225&t=2&li=gda_r20240313&jk=4198778842078168&bg=!mpmlmdbNAAY_ejuoH3o7ADQBe5WfOMd-XqJhbE4IXiqyi6zcj4ud9pMuidQQ2vspQRZjbr3FSVMRMpoibzrfhnyDlaItAgAAAFFSAAAAAmgBB5kDGxWeIUZlcVChbDL-SNz0lWWRJjd_vAfUuntDhlRWpl1jyCtdOevzaJfkmbUelJ-6wq61DiSyIwHA0SDY8SnUnryzxaoqj_HoDUYdRGJknUT8d-iVPv2zu6X16RTn7FFOLUiuvI1N0yD_fmRF3CF1AE-RSIZlx629ARfAYBNBHHMH7pmx3xn77ouPYsthCRBPuNUseU1qp4hCy90III5tGTdtlHHQxvNTg4V-TaLYFFJC1jB4BzuMc0P7fYA8vzOUXE-sOAO5GEaPLsLy0_7xQDQ8rnNk-Fa2jekv5drY-n6-bVaQy8pbF4zZusIsNtPiChnK0M89JQ7cQnOjKq3Wb4YG074bHUHEl5FTw_Nv8MKfMzE4j4iSTgRmhHxuXWAR1qjo2IfFMRonGcyvG5_-KzgWXQXRzbn-vhKOQVcJ2Bhcf0vg8fWEcEGMUjXZYo4e18Slpb9LbI303kkDdjJ7mBMGOFwA30Dh_FhNNbhD0YAbPDlM1sSVraeotjDlP-d9h0--9nzL42k6gX1KI13jCKlNFk9CsLqp1RU_aGQW4vpZRXiVeC4JQLHUlUb5tillsjSkKXMaMtGvKoPsu2vfaJT_dxWoF_mq6TiRGmiuOIDE3qP3OL7ZD7AsEhlvGy91UCzOlB4rIVZzsNq6K_LsO2XTkDtQV5Wctetms2clVKAvTXC0emf5vaQblMK_lve8EhtoL1PD_22dQ58NcQUsFrzS3ElvXtfoI6LHNBJ-iiwnjRQrqHQ3CjJlxxz0qCWlPik79wKypVjcd_-or_h5lZOyaTOriQiOIRrfDIU6JC1F08d8Wnz3e7_sTHN6GoAa2C-SqLjpJ26gRqS3V37gQRZURX8UilkQIqa1PvR28D2fHLqtUMJrnAdld45FlYl05T4HawN5eFeRISkUnveruBJ76bmDzY3LsfVzWwmxiNQuyRBXNA1BLgh7wKMs79_yWhnd_mAdx-h5oGlHTZmg-D_gDGx2omwj1hVlt9Lgr-JIOd4NB-9JM8j7yOPCsJ1Fyz3hs-hApR2hc63QwHih8oxvnCgqoWdKX5hrJQ" } ], "cookies": [], "headers": { "alt-svc": "h3=\":443\"; ma=86400", "cf-cache-status": "DYNAMIC", - "cf-ray": "861f5a531d6f81fd-IAD", + "cf-ray": "8659079d189c10c4-ORD", "content-encoding": "br", "content-security-policy": "default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com", "content-type": "text/html", - "date": "Sun, 10 Mar 2024 00:57:49 GMT", + "date": "Sun, 17 Mar 2024 00:57:35 GMT", "feature-policy": "geolocation 'none';midi 'none';sync-xhr 'none';microphone 'none';camera 'none';magnetometer 'none';gyroscope 'self';accelerometer 'self';fullscreen 'self';payment 'none';", "last-modified": "Wed, 06 Mar 2024 01:29:22 GMT", "nel": "{\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}", "referrer-policy": "same-origin", - "report-to": "{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v3?s=jHsm5KzDSnK%2FIQHNiMQGEgj%2BNQvQ5JZP7jTk5rcCrEG8jOFGbjRHu%2FJ%2F7CBsihS5ZpxsmYmB%2BvkCXkFezoTxcnxhnEpujpFWIG6MIIgi8wTXVCCc4US7pYKD%2F2Hcfqn%2Fr86g\"}],\"group\":\"cf-nel\",\"max_age\":604800}", + "report-to": "{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=WxlrEJXyPNZXAGhgWKkP3uR%2BlfvDc3i1Vjm5DMlkRG%2BP63WQl10He5%2Bjzv0N2iY%2FeI9HMVUiEZ9MWOgAsU0gzK6GLoAe2sJUBGZoVEhSPocLLvtAXSNj%2FDD3JCZVpSOjs2C6\"}],\"group\":\"cf-nel\",\"max_age\":604800}", "server": "cloudflare", "strict-transport-security": "max-age=15552000; includeSubDomains; preload", "x-content-type-options": "nosniff", @@ -178,7 +170,7 @@ }, { "hostname": "static.cloudflareinsights.com", - "ip": "104.16.57.101", + "ip": "104.16.80.73", "geoip": { "registered_country": { "geoname_id": 6252001, @@ -198,7 +190,7 @@ }, { "hostname": "www.googletagmanager.com", - "ip": "142.250.31.97", + "ip": "172.217.4.200", "geoip": { "continent": { "code": "NA", @@ -252,12 +244,12 @@ }, { "hostname": "pagead2.googlesyndication.com", - "ip": "142.251.167.155", + "ip": "142.251.32.2", "geoip": { "city": { - "geoname_id": 5116931, + "geoname_id": 5133273, "names": { - "en": "Farmingdale" + "en": "Queens" } }, "continent": { @@ -290,13 +282,13 @@ }, "location": { "accuracy_radius": 500, - "latitude": 40.7306, - "longitude": -73.4313, + "latitude": 40.66, + "longitude": -73.839, "metro_code": 501, "time_zone": "America/New_York" }, "postal": { - "code": "11735" + "code": "11414" }, "registered_country": { "geoname_id": 6252001, @@ -332,7 +324,7 @@ }, { "hostname": "analytics.google.com", - "ip": "142.250.31.138", + "ip": "216.239.34.181", "geoip": { "continent": { "code": "NA", @@ -364,9 +356,9 @@ }, "location": { "accuracy_radius": 1000, - "latitude": 37.751, - "longitude": -97.822, - "time_zone": "America/Chicago" + "latitude": 34.0544, + "longitude": -118.244, + "time_zone": "America/Los_Angeles" }, "registered_country": { "geoname_id": 6252001, @@ -381,13 +373,35 @@ "ru": "США", "zh-CN": "美国" } - } + }, + "subdivisions": [ + { + "geoname_id": 5332921, + "iso_code": "CA", + "names": { + "de": "Kalifornien", + "en": "California", + "es": "California", + "fr": "Californie", + "ja": "カリフォルニア州", + "pt-BR": "Califórnia", + "ru": "Калифорния", + "zh-CN": "加州" + } + } + ] } }, { "hostname": "stats.g.doubleclick.net", - "ip": "172.253.63.155", + "ip": "142.251.176.155", "geoip": { + "city": { + "geoname_id": 5116931, + "names": { + "en": "Farmingdale" + } + }, "continent": { "code": "NA", "geoname_id": 6255149, @@ -417,10 +431,14 @@ } }, "location": { - "accuracy_radius": 1000, - "latitude": 37.751, - "longitude": -97.822, - "time_zone": "America/Chicago" + "accuracy_radius": 500, + "latitude": 40.7306, + "longitude": -73.4313, + "metro_code": 501, + "time_zone": "America/New_York" + }, + "postal": { + "code": "11735" }, "registered_country": { "geoname_id": 6252001, @@ -435,19 +453,29 @@ "ru": "США", "zh-CN": "美国" } - } + }, + "subdivisions": [ + { + "geoname_id": 5128638, + "iso_code": "NY", + "names": { + "de": "New York", + "en": "New York", + "es": "Nueva York", + "fr": "New York", + "ja": "ニューヨーク州", + "pt-BR": "Nova Iorque", + "ru": "Нью-Йорк", + "zh-CN": "纽约州" + } + } + ] } }, { "hostname": "googleads.g.doubleclick.net", - "ip": "142.251.167.155", + "ip": "142.250.191.162", "geoip": { - "city": { - "geoname_id": 5116931, - "names": { - "en": "Farmingdale" - } - }, "continent": { "code": "NA", "geoname_id": 6255149, @@ -477,14 +505,10 @@ } }, "location": { - "accuracy_radius": 500, - "latitude": 40.7306, - "longitude": -73.4313, - "metro_code": 501, - "time_zone": "America/New_York" - }, - "postal": { - "code": "11735" + "accuracy_radius": 1000, + "latitude": 37.751, + "longitude": -97.822, + "time_zone": "America/Chicago" }, "registered_country": { "geoname_id": 6252001, @@ -499,28 +523,12 @@ "ru": "США", "zh-CN": "美国" } - }, - "subdivisions": [ - { - "geoname_id": 5128638, - "iso_code": "NY", - "names": { - "de": "New York", - "en": "New York", - "es": "Nueva York", - "fr": "New York", - "ja": "ニューヨーク州", - "pt-BR": "Nova Iorque", - "ru": "Нью-Йорк", - "zh-CN": "纽约州" - } - } - ] + } } }, { "hostname": "tpc.googlesyndication.com", - "ip": "172.253.122.132", + "ip": "142.250.191.225", "geoip": { "continent": { "code": "NA", @@ -574,14 +582,8 @@ }, { "hostname": "www.google.com", - "ip": "142.251.163.104", + "ip": "172.217.2.36", "geoip": { - "city": { - "geoname_id": 5116931, - "names": { - "en": "Farmingdale" - } - }, "continent": { "code": "NA", "geoname_id": 6255149, @@ -611,14 +613,10 @@ } }, "location": { - "accuracy_radius": 500, - "latitude": 40.7306, - "longitude": -73.4313, - "metro_code": 501, - "time_zone": "America/New_York" - }, - "postal": { - "code": "11735" + "accuracy_radius": 1000, + "latitude": 37.751, + "longitude": -97.822, + "time_zone": "America/Chicago" }, "registered_country": { "geoname_id": 6252001, @@ -633,23 +631,7 @@ "ru": "США", "zh-CN": "美国" } - }, - "subdivisions": [ - { - "geoname_id": 5128638, - "iso_code": "NY", - "names": { - "de": "New York", - "en": "New York", - "es": "Nueva York", - "fr": "New York", - "ja": "ニューヨーク州", - "pt-BR": "Nova Iorque", - "ru": "Нью-Йорк", - "zh-CN": "纽约州" - } - } - ] + } } } ] diff --git a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/zap.html b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/zap.html index d642c574..5870438a 100644 --- a/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/zap.html +++ b/results/aHR0cHM6Ly9kZWNlcy5tYXRjaGlkLmlv/zap.html @@ -127,13 +127,19 @@

- Generated on Sun, 10 Mar 2024 00:57:17 + Generated on Sun, 17 Mar 2024 00:57:04

ZAP Version: 2.14.0

+

+ ZAP is supported by the Crash Override Open + Source Fellowship +

+

Summary of Alerts

@@ -200,22 +206,22 @@

Alerts

- + - + - + - + @@ -240,7 +246,7 @@

Alerts

- + @@ -255,12 +261,12 @@

Alerts

- + - + @@ -343,6 +349,40 @@

Alert Detail

+ + + + + + + + + + + + + + + + + + + + + + + + + @@ -382,7 +422,7 @@

Alert Detail

- + @@ -476,6 +516,37 @@

Alert Detail

+ + + + + + + + + + + + + + + + + + + + + + + + + @@ -509,7 +580,7 @@

Alert Detail

- + @@ -603,6 +674,37 @@

Alert Detail

+ + + + + + + + + + + + + + + + + + + + + + + + + @@ -636,7 +738,7 @@

Alert Detail

- + @@ -730,6 +832,37 @@

Alert Detail

+ + + + + + + + + + + + + + + + + + + + + + + + + @@ -763,7 +896,7 @@

Alert Detail

- + @@ -1355,12 +1488,43 @@

Alert Detail

- + - + + + + + + + + + + + + + + + + + + + + + + + + + + @@ -1386,12 +1550,12 @@

Alert Detail

- + - + @@ -1417,12 +1581,13 @@

Alert Detail

- + - + @@ -1448,12 +1613,12 @@

Alert Detail

- + - + @@ -1479,12 +1644,12 @@

Alert Detail

- + - + @@ -1510,12 +1675,12 @@

Alert Detail

- + - + @@ -1541,12 +1706,43 @@

Alert Detail

- + + + + + + + + + + + + + + + + + + + + + + + + + + - + @@ -1572,12 +1768,43 @@

Alert Detail

- + - + + + + + + + + + + + + + + + + + + + + + + + + + + @@ -1603,18 +1830,17 @@

Alert Detail

- + - + - + @@ -1769,7 +1995,7 @@

Alert Detail

- + - + - + - + - - - - - - - - - - - - - - - - - - - - - - - - - @@ -2076,7 +2271,7 @@

Alert Detail

- + @@ -2156,7 +2351,7 @@

Alert Detail

- + - + - + - + - + - + + + + + + + + + + + + + + + + + + + + + + + + + + - + @@ -2423,7 +2649,7 @@

Alert Detail

- + - + - + - +
CSP: Wildcard Directive Medium23
CSP: script-src unsafe-eval Medium23
CSP: script-src unsafe-inline Medium23
CSP: style-src unsafe-inline Medium23
Sub Resource Integrity Attribute Missing
Base64 Disclosure Informational912
Information Disclosure - Suspicious Comments
Re-examine Cache-control Directives Informational54
Retrieved from Cache Informational67
Sec-Fetch-Dest Header is Missing The following directives either allow wildcard sources (or ancestors), are not defined, or are overly broadly defined: style-src, frame-ancestors, form-action +The directive(s): frame-ancestors, form-action are among the directives that do not fallback to default-src, missing/excluding them is the same as allowing anything.
URLhttps://deces.matchid.io/
MethodGET
ParameterContent-Security-Policy
Attack
Evidencedefault-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com
Other InfoThe following directives either allow wildcard sources (or ancestors), are not defined, or are overly broadly defined: +style-src, frame-ancestors, form-action + The directive(s): frame-ancestors, form-action are among the directives that do not fallback to default-src, missing/excluding them is the same as allowing anything.
Instances23
Solution script-src includes unsafe-eval.
URLhttps://deces.matchid.io/
MethodGET
ParameterContent-Security-Policy
Attack
Evidencedefault-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com
Other Infoscript-src includes unsafe-eval.
URL
Instances23
Solution script-src includes unsafe-inline.
URLhttps://deces.matchid.io/
MethodGET
ParameterContent-Security-Policy
Attack
Evidencedefault-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com
Other Infoscript-src includes unsafe-inline.
URL
Instances23
Solution style-src includes unsafe-inline.
URLhttps://deces.matchid.io/
MethodGET
ParameterContent-Security-Policy
Attack
Evidencedefault-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com
Other Infostyle-src includes unsafe-inline.
URL
Instances23
Solution
Evidence2FDmbNyrmWGGRzVbs1SmXW8S514bk8sf4Epp5jFe7O4u9d2BUSRoYYMPWjsDQLsFXUpmJeYlbOlbF
Other Info�P�lܫ�a�G5[�T�]o�^���Ji�1^��.��F�0���4 �UԦb^bVΕ�
URLhttps://deces.matchid.io
MethodGET
Parameter
Attack
Evidence2BkQiSRuvMruOga3WSxZtMwwEibnt9G3K2
Other Info��$n���:�Y,Y��0&�ѷ+
Evidence2FptDxVrPWSL84ih9ibf4GDpHD75vxa35ktX2Bo85E0WeajuPYFCJsLJ6PDmv6veC1XTTm0vQl0LZ8B0P26ND8CjcbYvBnQVeLy5lDUynr
Other Info�Zmk=d���&��`�>����KW�<�My��=�B&����濫� U�Nm/B] g�t?n���q�/tx���52�
Evidence2Fx9V7YsYK8khuRpUPDz51FfHCO5PZlyO2V42TrAJd0BGypBib7UVFQ52BM1ZVlDr2k4F9W0oudSa2oIuLcXxqyxq57CCz0FGrRxt1KvwEoKVRd5GXlJU9rZaIMRwSjf2PTOHdwJ13z8UieBPb0iRlzB2m9dMATVeUV1
Other Info�\}W�,`�$��iP���Q_#�=�r;ex�:�%�*A���TT9�5eYC�i8մ��Rkj��Ƭ���� =�q�R��J +UyyIS��h��(����� �|�R'�=�"F\��o]0�yEu
Evidence2BCNk00YG1JDUV1gTVxBK7YAIv9Y45IJgMA7tD2F9TcHtmECgUwBqqyJm07QicD6R5lJ35VFy2uvqq90mrzXmjUaQgi0FbvwKrhabQsM3K
Other Info���MRCQ]`M\A+�"�X� ��;��_Sp{f(��ș����y���T\�����I��y�Q� �A[����а��
Evidence2BcZ1WDFkWxkDFWhL7Pkrp5AYRcGsTa0koqfLNZip5KjwVpA1SBJf5QdJwusNdo6kBFRI3Q0XCjvG9XHaMTo3P7E8iV9eT9GP2XLkwvO
Other Info��`őld U�/�䮞@a�6����,�b����Z@���A�p��]��7CEŽ�\v�N���O"Wד�c�\�0�
Evidence2FeYjNf8uinrW7pGHu9F0fptkKcfrqQVMUREFx3KiLVE7ZejkK0hY7leNizFIa26UlodFaV8sj92BBwby0ZrZDCYGeUMC0RrXRPy3bqGQbNf7pz
Other Info�W�����)�[�F�E��m����1DDʈ�D헣��!c�^6,�!��RZ�|�?�po-���`g�0-�tO�v���s
Evidence2F5vSJomJ2aAS3DJb1wG10eIAd7WaOfjWi9xRQ2f2FC0JShVLXYqm8Qi8Unm5lkMmD4eUhC2x73raI8JJrZJ
Other Info�P�%(U-v*��"�I��Y �>R�ǽ�h� &�I
URLhttps://deces.matchid.io/favicon.svg
MethodGET
Parameter
Attack
Evidence2B9T4ZzohszDpFbgZR8s1VNrwjvyDWY1
Other Info�^oH�&'f�Kp�o\�G���h��Z/qE ��S���äV�e,�Sk�;� f5
Evidence2B8YzDqghVvdopIemXS3YiU1qjEYO0RVf0BhONsChKeiek6Rt89Z2N8md3cJSAxZurXevMYYKgIfAFUaqpBLHylwWht2BILW4FolkJMWdqD6iqXuIOTnWUcU77HTZSh1sxOkU0W
Other Info��:��[ݢ��t�b%5�1;DU@a8����zN���Y��&ww H Y��޼�*U��K)pZ� [�h�BLYڃ�*�����eS��M����N�M
URLhttps://deces.matchid.io/manifest.json
MethodGET
Parameter
Attack
EvidencemJWTywfi26twQMcdMdYdJvapVLebgY
Other Info�����۫p@�1�&��T���
EvidenceTj96Owom9lS9XAIldxSBay5iUpHMbnonVcvzMOACUsdt4qW0BKcPbKDfSdG2Bg7Gy1g1BFhPMolG0OgC9Y0kSZzpeBH6bJQg5L
Other InfoN?z; -&�T�\%w�k.bR��nz'U��0�R�m⥴�l��I��;-`�a<�%C� �4�&s��G�P��
Instances912
Solution
Evidence<script defer src="/js/matchid.min.js" type="3c5a37f3a4da82e728707fb6-text/javascript"></script><script defer src="/js/matchid.min.js" type="3e42580513e13eb4c7e96254-text/javascript"></script>
Alert Detail
Evidence<script defer src="/js/matchid.min.js" type="5baca66a0956a314e6b1f932-text/javascript"></script><script defer src="/js/matchid.min.js" type="fb60056563dc27747d8e1062-text/javascript"></script>
Alert Detail
Evidence<script defer src="/js/matchid.min.js" type="1862235c15c45fccaa8c8f77-text/javascript"></script><script defer src="/js/matchid.min.js" type="8b9e819b3f076da0fb1f05de-text/javascript"></script>
Alert Detail
Evidence<script defer src="/js/matchid.min.js" type="75ccb9a288ade751ebeabac4-text/javascript"></script><script defer src="/js/matchid.min.js" type="4a359324d280e793de99f73e-text/javascript"></script>
Alert Detail
URLhttps://deces.matchid.io/robots.txt
MethodGET
Parametercache-control
Attack
Evidencemax-age=86400
Other Info
URL
Instances54
Solution
EvidenceAge: 153Age: 1321
Alert Detail
EvidenceAge: 153Age: 1322
Alert Detail
EvidenceAge: 13Age: 139
Alert Detail
EvidenceAge: 3959Age: 1324
Alert Detail
EvidenceAge: 12Age: 1323
Alert Detail
EvidenceAge: 3959Age: 139
Other InfoThe presence of the 'Age' header indicates that that a HTTP/1.1 compliant caching server is in use.
URLhttps://deces.matchid.io/robots.txt
MethodGET
Parameter
Attack
EvidenceAge: 140
Alert Detail
Instances67
Solution
URLhttps://deces.matchid.io/favicon-apple.pnghttps://deces.matchid.io/favicon.svg
Alert Detail
URLhttps://deces.matchid.io/favicon-apple.pnghttps://deces.matchid.io/favicon.svg
Alert Detail
URLhttps://deces.matchid.io/favicon-apple.pnghttps://deces.matchid.io/favicon.svg
Alert Detail
URLhttps://deces.matchid.io/favicon-apple.pnghttps://deces.matchid.io/favicon.svg
Ensure that your web server, application server, load balancer, etc. is properly configured to set the Content-Security-Policy header.

", "otherinfo": "

The following directives either allow wildcard sources (or ancestors), are not defined, or are overly broadly defined:

style-src, frame-ancestors, form-action

The directive(s): frame-ancestors, form-action are among the directives that do not fallback to default-src, missing/excluding them is the same as allowing anything.

", "reference": "

https://www.w3.org/TR/CSP/

https://caniuse.com/#search=content+security+policy

https://content-security-policy.com/

https://github.com/HtmlUnit/htmlunit-csp

https://developers.google.com/web/fundamentals/security/csp#policy_applies_to_a_wide_variety_of_resources

", @@ -62,6 +70,14 @@ "evidence": "default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com", "otherinfo": "script-src includes unsafe-eval." }, + { + "uri": "https://deces.matchid.io/", + "method": "GET", + "param": "Content-Security-Policy", + "attack": "", + "evidence": "default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com", + "otherinfo": "script-src includes unsafe-eval." + }, { "uri": "https://deces.matchid.io/sitemap.xml", "method": "GET", @@ -71,7 +87,7 @@ "otherinfo": "script-src includes unsafe-eval." } ], - "count": "2", + "count": "3", "solution": "

Ensure that your web server, application server, load balancer, etc. is properly configured to set the Content-Security-Policy header.

", "otherinfo": "

script-src includes unsafe-eval.

", "reference": "

https://www.w3.org/TR/CSP/

https://caniuse.com/#search=content+security+policy

https://content-security-policy.com/

https://github.com/HtmlUnit/htmlunit-csp

https://developers.google.com/web/fundamentals/security/csp#policy_applies_to_a_wide_variety_of_resources

", @@ -97,6 +113,14 @@ "evidence": "default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com", "otherinfo": "script-src includes unsafe-inline." }, + { + "uri": "https://deces.matchid.io/", + "method": "GET", + "param": "Content-Security-Policy", + "attack": "", + "evidence": "default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com", + "otherinfo": "script-src includes unsafe-inline." + }, { "uri": "https://deces.matchid.io/sitemap.xml", "method": "GET", @@ -106,7 +130,7 @@ "otherinfo": "script-src includes unsafe-inline." } ], - "count": "2", + "count": "3", "solution": "

Ensure that your web server, application server, load balancer, etc. is properly configured to set the Content-Security-Policy header.

", "otherinfo": "

script-src includes unsafe-inline.

", "reference": "

https://www.w3.org/TR/CSP/

https://caniuse.com/#search=content+security+policy

https://content-security-policy.com/

https://github.com/HtmlUnit/htmlunit-csp

https://developers.google.com/web/fundamentals/security/csp#policy_applies_to_a_wide_variety_of_resources

", @@ -132,6 +156,14 @@ "evidence": "default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com", "otherinfo": "style-src includes unsafe-inline." }, + { + "uri": "https://deces.matchid.io/", + "method": "GET", + "param": "Content-Security-Policy", + "attack": "", + "evidence": "default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com ajax.cloudflare.com www.googletagmanager.com fundingchoicesmessages.google.com www.google.com www.google.ca analytics.google.com www.google-analytics.com pagead2.googlesyndication.com partner.googleadservices.com tpc.googlesyndication.com www.googletagservices.com adservice.google.com adservice.google.fr;style-src https: 'self' 'unsafe-inline';font-src 'self' data:;img-src 'self' matchid.io a.basemaps.cartocdn.com b.basemaps.cartocdn.com c.basemaps.cartocdn.com upload.wikimedia.org pagead2.googlesyndication.com www.google-analytics.com stats.g.doubleclick.net www.google.fr;connect-src 'self' www.data.gouv.fr cloudflareinsights.com www.google-analytics.com analytics.google.com csi.gstatic.com region1.analytics.google.com stats.g.doubleclick.net pagead2.googlesyndication.com; frame-src 'self' matchid.io www.google.com google.com googleads.g.doubleclick.net tpc.googlesyndication.com", + "otherinfo": "style-src includes unsafe-inline." + }, { "uri": "https://deces.matchid.io/sitemap.xml", "method": "GET", @@ -141,7 +173,7 @@ "otherinfo": "style-src includes unsafe-inline." } ], - "count": "2", + "count": "3", "solution": "

Ensure that your web server, application server, load balancer, etc. is properly configured to set the Content-Security-Policy header.

", "otherinfo": "

style-src includes unsafe-inline.

", "reference": "

https://www.w3.org/TR/CSP/

https://caniuse.com/#search=content+security+policy

https://content-security-policy.com/

https://github.com/HtmlUnit/htmlunit-csp

https://developers.google.com/web/fundamentals/security/csp#policy_applies_to_a_wide_variety_of_resources

", @@ -174,7 +206,7 @@ "reference": "

https://developer.mozilla.org/en-US/docs/Web/Security/Subresource_Integrity

", "cweid": "345", "wascid": "15", - "sourceid": "25" + "sourceid": "28" }, { "pluginid": "10020", @@ -295,7 +327,7 @@ "reference": "

https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Permissions-Policy

https://developer.chrome.com/blog/feature-policy/

https://scotthelme.co.uk/a-new-security-header-feature-policy/

https://w3c.github.io/webappsec-feature-policy/

https://www.smashingmagazine.com/2018/12/feature-policy/

", "cweid": "693", "wascid": "15", - "sourceid": "20" + "sourceid": "23" }, { "pluginid": "10094", @@ -312,77 +344,101 @@ "method": "GET", "param": "", "attack": "", - "evidence": "2FDmbNyrmWGGRzVbs1SmXW8S514bk8sf4Epp5jFe7O4u9d", - "otherinfo": "\uFFFDP\uFFFDl\u072B\uFFFDa\uFFFDG5[\uFFFDT\uFFFD]o\\x0012\uFFFD^\\x001b\uFFFD\uFFFD\\x001f\uFFFDJi\uFFFD1^\uFFFD\uFFFD.\uFFFD" + "evidence": "2BUSRoYYMPWjsDQLsFXUpmJeYlbOlbF", + "otherinfo": "\uFFFD\\x0015\\x0012F\uFFFD\\x00180\uFFFD\uFFFD\uFFFD4\\x000b\uFFFDU\u0526b^bV\u0395\uFFFD" + }, + { + "uri": "https://deces.matchid.io", + "method": "GET", + "param": "", + "attack": "", + "evidence": "2BkQiSRuvMruOga3WSxZtMwwEibnt9G3K2", + "otherinfo": "\uFFFD\\x0019\\x0010\uFFFD$n\uFFFD\uFFFD\uFFFD:\\x0006\uFFFDY,Y\uFFFD\uFFFD0\\x0012&\uFFFD\u0477+" }, { "uri": "https://deces.matchid.io/", "method": "GET", "param": "", "attack": "", - "evidence": "2FptDxVrPWSL84ih9ibf4GDpHD75vxa35ktX", - "otherinfo": "\uFFFDZm\\x000f\\x0015k=d\uFFFD\uFFFD\uFFFD&\uFFFD\uFFFD`\uFFFD\\x001c>\uFFFD\uFFFD\\x0016\uFFFD\uFFFDKW" + "evidence": "2Bo85E0WeajuPYFCJsLJ6PDmv6veC1XTTm0vQl0LZ8B0P26ND8CjcbYvBnQVeLy5lDUynr", + "otherinfo": "\uFFFD\\x001a<\uFFFDM\\x0016y\uFFFD\uFFFD=\uFFFDB&\uFFFD\uFFFD\uFFFD\uFFFD\u6FEB\uFFFD\\x000bU\uFFFDNm/B]\\x000bg\uFFFDt?n\uFFFD\\x000f\uFFFD\uFFFDq\uFFFD/\\x0006t\\x0015x\uFFFD\uFFFD\uFFFD52\uFFFD" }, { "uri": "https://deces.matchid.io/build/module/bundle.css", "method": "GET", "param": "", "attack": "", - "evidence": "2Fx9V7YsYK8khuRpUPDz51FfHCO5PZlyO2V42TrAJd0BGypBib7UVFQ5", - "otherinfo": "\uFFFD\\}W\uFFFD,`\uFFFD$\uFFFD\uFFFDiP\uFFFD\uFFFD\uFFFDQ_\\x001c#\uFFFD=\uFFFDr;ex\uFFFD:\uFFFD%\uFFFD\\x0001\\x001b*A\uFFFD\uFFFD\uFFFDTT9" + "evidence": "2BM1ZVlDr2k4F9W0oudSa2oIuLcXxqyxq57CCz0FGrRxt1KvwEoKVRd5GXlJU9rZaIMRwSjf2PTOHdwJ13z8UieBPb0iRlzB2m9dMATVeUV1", + "otherinfo": "\uFFFD\\x00135eYC\uFFFDi8\\x0017\u0574\uFFFD\uFFFDRkj\\x0008\uFFFD\uFFFD\\x0017\u01AC\uFFFD\uFFFD\uFFFD\uFFFD\\x000b=\\x0005\\x001a\uFFFDq\uFFFDR\uFFFD\uFFFDJ\nU\\x0017y\\x0019yIS\uFFFD\uFFFDh\uFFFD\\x0011\uFFFD(\uFFFD\uFFFD\uFFFD\uFFFD\\x001d\uFFFD\t\uFFFD|\uFFFDR'\uFFFD=\uFFFD\"F\\\uFFFD\uFFFDo]0\\x0004\uFFFDyEu" }, { "uri": "https://deces.matchid.io/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js", "method": "GET", "param": "", "attack": "", - "evidence": "2BCNk00YG1JDUV1gTVxBK7YAIv9Y45IJgMA7tD", - "otherinfo": "\uFFFD\\x0010\uFFFD\uFFFDM\\x0018\\x001bRCQ]`M\\A+\uFFFD\\x0000\"\uFFFDX\uFFFD\t\uFFFD\uFFFD;\uFFFD" + "evidence": "2F9TcHtmECgUwBqqyJm07QicD6R5lJ35VFy2uvqq90mrzXmjUaQgi0FbvwKrhabQsM3K", + "otherinfo": "\uFFFD_Sp{f\\x0010(\\x0014\uFFFD\\x001a\uFFFD\u0219\uFFFD\uFFFD\\x0008\uFFFD\\x000f\uFFFDy\uFFFD\uFFFD\uFFFDT\\\uFFFD\uFFFD\uFFFD\uFFFD\uFFFDI\uFFFD\uFFFDy\uFFFDQ\uFFFD \uFFFDA[\uFFFD\\x0002\uFFFD\uFFFD\uFFFD\u0430\uFFFD\uFFFD" }, { "uri": "https://deces.matchid.io/css/global.css", "method": "GET", "param": "", "attack": "", - "evidence": "2BcZ1WDFkWxkDFWhL7Pkrp5AYRcGsTa0koqfLNZip5KjwVpA1S", - "otherinfo": "\uFFFD\\x0017\\x0019\uFFFD`\u0151ld\\x000cU\uFFFD/\uFFFD\u4B9E@a\\x0017\\x0006\uFFFD6\uFFFD\uFFFD\uFFFD\uFFFD,\uFFFDb\uFFFD\uFFFD\uFFFD\uFFFDZ@\uFFFD" + "evidence": "BJf5QdJwusNdo6kBFRI3Q0XCjvG9XHaMTo3P7E8iV9eT9GP2XLkwvO", + "otherinfo": "\\x0004\uFFFD\uFFFDA\uFFFDp\uFFFD\uFFFD]\uFFFD\uFFFD\\x0001\\x0015\\x00127CE\u008E\uFFFD\\v\uFFFDN\uFFFD\uFFFD\uFFFDO\"W\u05D3\uFFFDc\uFFFD\\\uFFFD0\uFFFD" }, { "uri": "https://deces.matchid.io/css/matchid.min.css", "method": "GET", "param": "", "attack": "", - "evidence": "2FeYjNf8uinrW7pGHu9F0fptkKcfrqQVMUREFx3KiLVE7ZejkK0hY7leNizFIa26UlodFaV8sj9", - "otherinfo": "\uFFFDW\uFFFD\uFFFD\uFFFD\uFFFD\uFFFD)\uFFFD[\uFFFDF\\x001e\uFFFDE\uFFFD\uFFFDm\uFFFD\uFFFD\\x001f\uFFFD\uFFFD\\x00151DD\\x0017\\x001d\u0288\uFFFDD\uD5E3\uFFFD\uFFFD!c\uFFFD^6,\uFFFD!\uFFFD\uFFFDRZ\\x001d\\x0015\uFFFD|\uFFFD?" + "evidence": "2BBwby0ZrZDCYGeUMC0RrXRPy3bqGQbNf7pz", + "otherinfo": "\uFFFD\\x0010po-\\x0019\uFFFD\uFFFD\uFFFD`g\uFFFD0-\\x0011\uFFFDtO\uFFFDv\uFFFD\\x0019\\x0006\uFFFD\uFFFDs" }, { "uri": "https://deces.matchid.io/favicon-apple.png", "method": "GET", "param": "", "attack": "", - "evidence": "2F5vSJomJ2aAS3DJb1wG10eIAd7WaOfjWi9xRQ2f", - "otherinfo": "\uFFFD^oH\uFFFD&'f\uFFFDKp\uFFFDo\\\\x0006\uFFFDG\uFFFD\\x0001\uFFFD\uFFFDh\uFFFD\uFFFDZ/qE\r\uFFFD" + "evidence": "2FC0JShVLXYqm8Qi8Unm5lkMmD4eUhC2x73raI8JJrZJ", + "otherinfo": "\uFFFDP\uFFFD%(U-v*\uFFFD\uFFFD\"\uFFFDI\uFFFD\uFFFDY\\x000c\uFFFD>\\x001eR\\x0010\uFFFD\u01FD\uFFFDh\uFFFD\t&\uFFFDI" + }, + { + "uri": "https://deces.matchid.io/favicon.svg", + "method": "GET", + "param": "", + "attack": "", + "evidence": "2B9T4ZzohszDpFbgZR8s1VNrwjvyDWY1", + "otherinfo": "\uFFFD\\x001fS\uFFFD\uFFFD\uFFFD\u00E4V\uFFFDe\\x001f,\uFFFDSk\uFFFD;\uFFFD\rf5" }, { "uri": "https://deces.matchid.io/js/matchid.min.js", "method": "GET", "param": "", "attack": "", - "evidence": "2B8YzDqghVvdopIemXS3YiU1qjEYO0RVf0BhONsChKeiek6Rt89Z2N8md3cJSAxZurXevMYYKgIfAFUaqpBLHylwWht", - "otherinfo": "\uFFFD\\x001f\\x0018\uFFFD:\uFFFD\uFFFD[\u0762\uFFFD\\x001e\uFFFDt\uFFFDb%5\uFFFD1\\x0018;DU@a8\uFFFD\\x0002\uFFFD\uFFFD\uFFFDzN\uFFFD\uFFFD\uFFFDY\uFFFD\uFFFD&ww\tH\\x000cY\uFFFD\uFFFD\u07BC\uFFFD\\x0018*\\x0002\\x001f\\x0000U\\x001a\uFFFD\uFFFDK\\x001f)pZ\\x001b" + "evidence": "2BILW4FolkJMWdqD6iqXuIOTnWUcU77HTZSh1sxOkU0W", + "otherinfo": "\uFFFD\\x0012\\x000b[\uFFFDh\uFFFDBLY\u0683\uFFFD*\uFFFD\uFFFD\uFFFD\uFFFD\uFFFDe\\x001cS\uFFFD\uFFFDM\uFFFD\uFFFD\uFFFD\uFFFDN\uFFFDM\\x0016" + }, + { + "uri": "https://deces.matchid.io/manifest.json", + "method": "GET", + "param": "", + "attack": "", + "evidence": "mJWTywfi26twQMcdMdYdJvapVLebgY", + "otherinfo": "\uFFFD\uFFFD\uFFFD\uFFFD\\x0007\uFFFD\u06EBp@\uFFFD\\x001d1\uFFFD\\x001d&\uFFFD\uFFFDT\uFFFD\uFFFD\uFFFD" }, { "uri": "https://deces.matchid.io/sitemap.xml", "method": "GET", "param": "", "attack": "", - "evidence": "Tj96Owom9lS9XAIldxSBay5iUpHMbnonVcvzMOACUsdt4qW0BKcPbKDfSdG", - "otherinfo": "N?z;\n&\uFFFDT\uFFFD\\\\x0002%w\\x0014\uFFFDk.bR\uFFFD\uFFFDnz'U\uFFFD\uFFFD0\uFFFD\\x0002R\uFFFDm\u2974\\x0004\uFFFD\\x000fl\uFFFD\uFFFDI\uFFFD" + "evidence": "2Bg7Gy1g1BFhPMolG0OgC9Y0kSZzpeBH6bJQg5L", + "otherinfo": "\uFFFD\\x0018;\\x001b-`\uFFFD\\x0011a<\uFFFD%\\x001bC\uFFFD\\x000b\uFFFD4\uFFFD&s\uFFFD\uFFFDG\uFFFDP\uFFFD\uFFFD" } ], - "count": "9", + "count": "12", "solution": "

Manually confirm that the Base64 data does not leak sensitive information, and that the data cannot be aggregated/used to exploit other vulnerabilities.

", - "otherinfo": "

\uFFFDP\uFFFDl\u072B\uFFFDa\uFFFDG5[\uFFFDT\uFFFD]o\\x0012\uFFFD^\\x001b\uFFFD\uFFFD\\x001f\uFFFDJi\uFFFD1^\uFFFD\uFFFD.\uFFFD

", + "otherinfo": "

\uFFFD\\x0015\\x0012F\uFFFD\\x00180\uFFFD\uFFFD\uFFFD4\\x000b\uFFFDU\u0526b^bV\u0395\uFFFD

", "reference": "

https://projects.webappsec.org/w/page/13246936/Information%20Leakage

", "cweid": "200", "wascid": "13", @@ -413,7 +469,7 @@ "reference": "", "cweid": "200", "wascid": "13", - "sourceid": "20" + "sourceid": "23" }, { "pluginid": "10109", @@ -430,7 +486,7 @@ "method": "GET", "param": "", "attack": "", - "evidence": "", + "evidence": "", "otherinfo": "No links have been found while there are scripts, which is an indication that this is a modern web application." }, { @@ -438,7 +494,7 @@ "method": "GET", "param": "", "attack": "", - "evidence": "", + "evidence": "", "otherinfo": "No links have been found while there are scripts, which is an indication that this is a modern web application." }, { @@ -446,7 +502,7 @@ "method": "GET", "param": "", "attack": "", - "evidence": "", + "evidence": "", "otherinfo": "No links have been found while there are scripts, which is an indication that this is a modern web application." }, { @@ -454,7 +510,7 @@ "method": "GET", "param": "", "attack": "", - "evidence": "", + "evidence": "", "otherinfo": "No links have been found while there are scripts, which is an indication that this is a modern web application." } ], @@ -464,7 +520,7 @@ "reference": "", "cweid": "-1", "wascid": "-1", - "sourceid": "1" + "sourceid": "8" }, { "pluginid": "10015", @@ -500,14 +556,6 @@ "evidence": "", "otherinfo": "" }, - { - "uri": "https://deces.matchid.io/robots.txt", - "method": "GET", - "param": "cache-control", - "attack": "", - "evidence": "max-age=86400", - "otherinfo": "" - }, { "uri": "https://deces.matchid.io/sitemap.xml", "method": "GET", @@ -517,7 +565,7 @@ "otherinfo": "" } ], - "count": "5", + "count": "4", "solution": "

For secure content, ensure the cache-control HTTP header is set with \"no-cache, no-store, must-revalidate\". If an asset should be cached consider setting the directives \"public, max-age, immutable\".

", "otherinfo": "", "reference": "

https://cheatsheetseries.owasp.org/cheatsheets/Session_Management_Cheat_Sheet.html#web-content-caching

https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Cache-Control

https://grayduck.mn/2021/09/13/cache-control-recommendations/

", @@ -540,7 +588,7 @@ "method": "GET", "param": "", "attack": "", - "evidence": "Age: 153", + "evidence": "Age: 1321", "otherinfo": "The presence of the 'Age' header indicates that that a HTTP/1.1 compliant caching server is in use." }, { @@ -548,7 +596,7 @@ "method": "GET", "param": "", "attack": "", - "evidence": "Age: 153", + "evidence": "Age: 1322", "otherinfo": "The presence of the 'Age' header indicates that that a HTTP/1.1 compliant caching server is in use." }, { @@ -556,7 +604,7 @@ "method": "GET", "param": "", "attack": "", - "evidence": "Age: 13", + "evidence": "Age: 139", "otherinfo": "The presence of the 'Age' header indicates that that a HTTP/1.1 compliant caching server is in use." }, { @@ -564,7 +612,7 @@ "method": "GET", "param": "", "attack": "", - "evidence": "Age: 3959", + "evidence": "Age: 1324", "otherinfo": "The presence of the 'Age' header indicates that that a HTTP/1.1 compliant caching server is in use." }, { @@ -572,7 +620,7 @@ "method": "GET", "param": "", "attack": "", - "evidence": "Age: 12", + "evidence": "Age: 1323", "otherinfo": "The presence of the 'Age' header indicates that that a HTTP/1.1 compliant caching server is in use." }, { @@ -580,17 +628,25 @@ "method": "GET", "param": "", "attack": "", - "evidence": "Age: 3959", + "evidence": "Age: 139", + "otherinfo": "The presence of the 'Age' header indicates that that a HTTP/1.1 compliant caching server is in use." + }, + { + "uri": "https://deces.matchid.io/robots.txt", + "method": "GET", + "param": "", + "attack": "", + "evidence": "Age: 140", "otherinfo": "The presence of the 'Age' header indicates that that a HTTP/1.1 compliant caching server is in use." } ], - "count": "6", + "count": "7", "solution": "

Validate that the response does not contain sensitive, personal or user-specific information. If it does, consider the use of the following HTTP response headers, to limit, or prevent the content being stored and retrieved from the cache by another user:

Cache-Control: no-cache, no-store, must-revalidate, private

Pragma: no-cache

Expires: 0

This configuration directs both HTTP 1.0 and HTTP 1.1 compliant caching servers to not store the response, and to not retrieve the response (without validation) from the cache, in response to a similar request.

", "otherinfo": "

The presence of the 'Age' header indicates that that a HTTP/1.1 compliant caching server is in use.

", "reference": "

https://tools.ietf.org/html/rfc7234

https://tools.ietf.org/html/rfc7231

https://www.rfc-editor.org/rfc/rfc9110.html

", "cweid": "-1", "wascid": "-1", - "sourceid": "29" + "sourceid": "30" }, { "pluginid": "90005", @@ -611,7 +667,7 @@ "otherinfo": "" }, { - "uri": "https://deces.matchid.io/favicon-apple.png", + "uri": "https://deces.matchid.io/favicon.svg", "method": "GET", "param": "Sec-Fetch-Dest", "attack": "", @@ -654,7 +710,7 @@ "otherinfo": "" }, { - "uri": "https://deces.matchid.io/favicon-apple.png", + "uri": "https://deces.matchid.io/favicon.svg", "method": "GET", "param": "Sec-Fetch-Mode", "attack": "", @@ -697,7 +753,7 @@ "otherinfo": "" }, { - "uri": "https://deces.matchid.io/favicon-apple.png", + "uri": "https://deces.matchid.io/favicon.svg", "method": "GET", "param": "Sec-Fetch-Site", "attack": "", @@ -740,7 +796,7 @@ "otherinfo": "" }, { - "uri": "https://deces.matchid.io/favicon-apple.png", + "uri": "https://deces.matchid.io/favicon.svg", "method": "GET", "param": "Sec-Fetch-User", "attack": "",