← new scan
~/scans/Pornhub.com.report
⇣ export pdf
target Pornhub.com
resolved66.254.114.41
scanned 2026-05-01 17:50:40
modules 7 of 7 completed
// overall risk
HIGH Risk
20 issues across 7 modules — 4 high, 10 medium, 6 low
0 critical
4 high
10 medium
6 low
0 ok
01
WHOIS & DNS
DNS records retrieved — SPF & DMARC present
· LOW
02
SSL / TLS Certificate
Valid certificate, expires in 273 days — TLSv1.3
OK
03
CMS Detection
No CMS detected
OK
04
Security Headers
5 of 7 headers missing
HIGH
// raw output
HSTS ok (max-age=63072000; includeSubDomains; pre)
CSP MISSING
X-Frame-Options ok (SAMEORIGIN)
X-Content-Type-Options MISSING
Referrer-Policy MISSING
Permissions-Policy MISSING
Cross-Origin-Opener MISSING
// findings (8)
  • high X-Content-Type-Options missing — MIME-sniffing possible
  • medium Referrer-Policy missing — leaking referrer data to third parties
  • medium Content-Security-Policy missing — site exposed to XSS injection
  • medium Permissions-Policy missing — browser features not restricted
  • · low Cross-Origin-Opener-Policy not set
  • ok X-Frame-Options is configured
  • ok Strict-Transport-Security is configured
  • · low No /.well-known/security.txt — researchers cannot find a contact for vulnerability reports
05
Raw HTTP Headers
HTTP/3 · 15 headers · openresty
MEDIUM
06
External JS Libraries
15 external scripts from 3 domains
MEDIUM
07
Malware & Blocklists
Threats detected — 4 suspicious indicator(s)
HIGH
// raw output
Google Safe Browsing clean
VirusTotal clean
injected scripts 4 detected
malware patterns 4 matches
// findings (5)
  • ok Google Safe Browsing — clean
  • ok VirusTotal — clean
  • high Malware pattern detected: Suspicious onclick with javascript:
  • high Malware pattern detected: Suspicious innerHTML manipulation
  • high Malware pattern detected: Suspicious window.open
// end of report · Pornhub.com · 2026-05-01 17:50:40 ↻ scan again