Summary
A Concise Overview of the scan result of url https://accounts.google.com/v3/signin/identifier?continue=https://console.firebase.google.com/project/fb-monitoring-prod/database/s-usc1f-nss-6500/data/&followup=https://console.firebase.google.com/project/fb-monitoring-prod/database/s-usc1f-nss-6500/data/&osid=1&passive=1209600&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S1460783875:1791322173563295
- Document
- HTML
- 2
- StyleSheets
- 0
- Scripts
- 1
- Font
- 1
- Images
- 2
- Links
- 2
- JavaScript Variables
- 40
- Console log messages
- 0
- Network
- Requests
- 9
- Bytes Transferred
- 189.47KB
- Bytes Total
- 1.2MB
- DNS Record
- A Record
- 1
- AAAA Record
- 1
- Technology
- Security
- 1
- Miscellaneous
- 1
Document
Links
The outgoing links identified from the page.
| Link | Text |
|---|---|
| https://support.google.com/chrome/answer/6130773?hl=en-US | Learn more about using Guest mode (external, opens in a new window)Learn more about using Guest mode |
| https://support.google.com/accounts?hl=en-US&p=account_iph | Open Google Account Help Center (external, opens in a new window)Help |
JavaScript Variables
Global JavaScript variables are variables that are defined outside of any function or block scope in JavaScript.
Technology
The technologies identified are present on the scanned URL.
| Name | Description | Detected patterns |
|---|---|---|
| Security | ||
| HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS. | Type: headers Name: strict-transport-security Regex: (?:) | |
| Miscellaneous | ||
HTTP/3 | HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web. | Type: headers Name: alt-svc Regex: h3 |
Performance
The speed and efficiency of the scanned URL loads and displays its content.
- dns
- 1 msGood
- tcp
- 1 msGood
- requestTime
- 82 msGood
- dom
- 196 msGood
DNS Record
A DNS record maps a domain name to an IP address or other resource information.
| Type | Name | Content | DNSSEC |
|---|---|---|---|
| A | accounts.google.com | 142.250.27.84 | no |
| AAAA | accounts.google.com | 2a00:1450:4025:401::54 | no |
SSL Certificate
An SSL certificate is a digital certificate that verifies the authenticity and encrypts the communication between a website and its visitors.
| Subject | Issue date | Expiry date | Valid |
|---|---|---|---|
accounts.google.com | 10/5/2026 | 10/6/2027 | 1 year 1 day |
www.gstatic.com | 10/5/2026 | 10/6/2027 | 1 year 1 day |
fonts.gstatic.com | 10/5/2026 | 10/6/2027 | 1 year 1 day |
HTTP Headers
HTTP Header
An HTTP header is a component of an HTTP request or response that contains additional information about the message being sent or received.
| Name | Value |
|---|---|
| Accept-CH | Sec-CH-UA-Arch, Sec-CH-UA-Bitness, Sec-CH-UA-Full-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Model, Sec-CH-UA-WoW64, Sec-CH-UA-Form-Factors, Sec-CH-UA-Platform, Sec-CH-UA-Platform-Version |
| Alt-Svc | h3=":443"; ma=2592000,h3-29=":443"; ma=2592000 |
| Cache-Control | no-cache, no-store, max-age=0, must-revalidate |
| Content-Encoding | gzip |
| Content-Security-Policy | script-src 'report-sample' 'nonce-3yow4sXhGgugbm9CBW_1rA' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /v3/signin/_/AccountsSignInUi/cspreport;worker-src 'self' script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com https://www.google.com/tools/feedback/ https://www.gstatic.com/feedback/js/ https://www.gstatic.com/inproduct_help/ https://www.gstatic.com/support/content/ https://www.gstatic.com/uservoice/feedback/client/web/live/ https://www.gstatic.com/uservoice/surveys/resources/prod/js/survey/ https://support.google.com/inapp/;report-uri /v3/signin/_/AccountsSignInUi/cspreport/allowlist require-trusted-types-for 'script';report-uri /v3/signin/_/AccountsSignInUi/cspreport |
| Content-Security-Policy-Report-Only | script-src 'unsafe-inline' 'unsafe-eval' blob: data: https://ajax.googleapis.com/ajax/libs/jquery/3.6.4/jquery.min.js https://translate.google.com/translate_a/element.js https://www.google.com/recaptcha/api.js https://www.google.com/recaptcha/enterprise.js https://www.gstatic.com/recaptcha/ https://www.google.com/tools/feedback/chat_load.js https://www.google.com/tools/feedback/help_api.js https://www.google.com/tools/feedback/load.js https://www.google.com/tools/feedback/open.js https://www.google.com/tools/feedback/open_to_help_guide_lazy.js https://www.gstatic.com/feedback/js/ https://www.gstatic.com/feedback/js/help/prod/service/lazy.min.js https://www.gstatic.com/inproduct_help/api/main.min.js https://www.gstatic.com/inproduct_help/chatsupport/chatsupport_button_v2.js https://www.gstatic.com/inproduct_help/service/lazy.min.js https://www.gstatic.com/uservoice/feedback/client/web/live/ https://www.gstatic.com/uservoice/surveys/resources/prod/js/survey/ https://www.gstatic.com/_/mss/boq-one-google/_/ https://www.gstatic.com/og/_/js/ https://apis.google.com/js/api.js https://apis.google.com/js/client.js https://www.googletagmanager.com/gtag/js https://www.google-analytics.com/analytics.js https://www.googletagmanager.com/gtag/destination https://www.gstatic.com/_/mss/boq-identity/_/js/k=boq-identity.AccountsSignInUi.en_US.oYcE8o0xLPM.es5.O/ https://apis.google.com/_/scs/abc-static/_/js/ https://translate.googleapis.com/_/translate_http/_/js/ https://www.gstatic.com/recaptcha/releases/;report-uri /v3/signin/_/AccountsSignInUi/cspreport/fine-allowlist |
| Content-Type | text/html; charset=utf-8 |
| Cross-Origin-Opener-Policy-Report-Only | same-origin; report-to="AccountsSignInUi" |
| Cross-Origin-Resource-Policy | same-site |
| Date | Tue, 06 Oct 2026 21:29:33 GMT |
| Expires | Mon, 01 Jan 1990 00:00:00 GMT |
| Permissions-Policy | ch-ua-arch=*, ch-ua-bitness=*, ch-ua-full-version=*, ch-ua-full-version-list=*, ch-ua-model=*, ch-ua-wow64=*, ch-ua-form-factors=*, ch-ua-platform=*, ch-ua-platform-version=* |
| Pragma | no-cache |
| Report-To | {"group":"AccountsSignInUi","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/AccountsSignInUi"}]} |
| Server | ESF |
| Strict-Transport-Security | max-age=31536000; includeSubDomains |
| Transfer-Encoding | chunked |
| Vary | Sec-Fetch-Dest, Sec-Fetch-Mode, Sec-Fetch-Site |
| X-Content-Type-Options | nosniff |
| X-Frame-Options | DENY |
| X-XSS-Protection | 0 |
| reporting-endpoints | default="/v3/signin/_/AccountsSignInUi/web-reports?context=eJwNw11IU2EABmBbfi-xpEY_ZgtCdtUC7fjTCgzCpMStzR3Omc25OqmbOJBNtzMhi340xawgCC3sJrqJkOpekgi0snCljTxZVBcGiYkpOsy66H3gMRsb95utWc591qwXtmFT-elZ03EeyJkzDXL3p5S4zfqDd6KT-_guN5-dFC1clD8ljnI8Ly0us_1wWhTwqN0Qr3m5wxCW84aoyBiiknNnPgsrj6e_iAn-WenCL7701oUuXv3mwh9--OEk7IVuFHAm4Ua27sZ8jweLPNTvwVP2bqiGytkL1XjU5cVjnuGvPDbtxThr-TIa-aAqo4LftMhIcey5jASnZmVM8e-dClbYkqdgBy85FKyy84gCD_-oVzDHa_yPtzco2MWtmgqdYxdUZNZUrHN7xIf56z4sctsrH5LcN-HDlZEadPMNvsV3-B7X7DmFAB_a7UcZHxvy4wT7X9YiyBe5k0N_a3GmKoABZwCDXPI9AHlvHa7Z6nCTN9uC2Mrmq0Fs4W05m0be93-E5X7vsycm24GGWJsWCYWjekQ_1xSPRfVwNFSf1JuTkUQ43h6Oa8VSsaNIkkoLJYfWKv0H-b3C-A" |
| x-auto-login | realm=com.google&args=continue%3Dhttps://console.firebase.google.com/project/fb-monitoring-prod/database/s-usc1f-nss-6500/data/ |
| x-ua-compatible | IE=edge |
Content Security Policy
Content Security Policy (CSP) is a security mechanism that helps prevent cross-site scripting (XSS) and other code injection attacks by specifying which content sources are allowed to be loaded on a web page.
| Name | Value |
|---|
Cookies
Cookies are small pieces of data stored on a user's web browser to track and remember information about their browsing activity on a website.
| Name | Value | Domain/Path | Expires | Secure | HTTP Only |
|---|---|---|---|---|---|
| __Host-GAPS | 1:ECOUqNltyEaUFy3RFAj6eJ9DYvBIAQ:Owks0Z9QalZN4iSa | accounts.google.com/ | 11/10/2027, 9:29:33 PM | yes | yes |