Home

facebook.com

Scanned: 10:17:19+0000 on 19 April 2024

{
  "time": 1713521838.7886736,
  "raw_target": "facebook.com",
  "has_contact": true,
  "target": "facebook.com",
  "scan_type": "domain",
  "message": "facebook.com",
  "domain_details": {
    "a_records": [
      "31.13.66.35"
    ],
    "cname_records": [],
    "txt_records": [
      "zoom-domain-verification=a6c90d61-66ec-485c-9f3d-cce7036f01bb",
      "google-site-verification=wdH5DTJTc9AYNwVunSVFeK0hYDGUIEOGb-RReU6pJlY",
      "google-site-verification=A2WZWCNQHrGV_TWwKh6KHY90tY0SHZo_RnyMJoDaG0s",
      "google-site-verification=sK6uY9x7eaMoEMfn3OILqwTFYgaNp4llmguKI-C3_iA",
      "v=spf1 redirect=_spf.facebook.com"
    ],
    "time": 0,
    "dns_resolve_time": 1713521838.868519
  },
  "dnssecuritytxt": {
    "security_contact": null,
    "security_policy": null,
    "matching_domain": null
  },
  "port": 443,
  "certificate": {
    "issuer": "/C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert SHA2 High Assurance Server CA",
    "notAfter": "2024-04-26 23:59:59 UTC",
    "notBefore": "2024-01-27 00:00:00 UTC",
    "serialNumber": 9317282596727229798338707843520947618,
    "subject": "/C=US/ST=California/L=Menlo Park/O=Meta Platforms, Inc./CN=*.facebook.com",
    "authorityKeyIdentifier": [
      "51:68:FF:90:AF:02:07:75:3C:CC:D9:65:64:62:A2:12:B8:59:72:3B"
    ],
    "subjectKeyIdentifier": [
      "9E:66:EF:5F:2D:4D:0B:F4:63:4F:F9:07:40:57:75:7B:D3:6A:77:2D"
    ],
    "subjectAltName": {
      "DNS": [
        "*.facebook.com",
        "*.facebook.net",
        "*.fbcdn.net",
        "*.fbsbx.com",
        "*.m.facebook.com",
        "*.messenger.com",
        "*.xx.fbcdn.net",
        "*.xy.fbcdn.net",
        "*.xz.fbcdn.net",
        "facebook.com",
        "messenger.com"
      ]
    },
    "certificatePolicies": [
      "Policy: 2.23.140.1.2.2",
      "CPS: http://www.digicert.com/CPS"
    ],
    "keyUsage": [
      "Digital Signature, Key Agreement"
    ],
    "extendedKeyUsage": [
      "TLS Web Server Authentication, TLS Web Client Authentication"
    ],
    "crlDistributionPoints": [
      "Full Name:",
      {
        "URI": "http://crl3.digicert.com/sha2-ha-server-g6.crl"
      },
      {
        "URI": "http://crl4.digicert.com/sha2-ha-server-g6.crl"
      }
    ],
    "authorityInfoAccess": [
      {
        "OCSP - URI": "http://ocsp.digicert.com"
      },
      {
        "CA Issuers - URI": "http://cacerts.digicert.com/DigiCertSHA2HighAssuranceServerCA.crt"
      }
    ],
    "basicConstraints": [
      "CA:FALSE"
    ],
    "ct_precert_scts": [
      "Signed Certificate Timestamp:",
      "Version   : v1 (0x0)",
      "Log ID    : EE:CD:D0:64:D5:DB:1A:CE:C5:5C:B7:9D:B4:CD:13:A2:",
      "32:87:46:7C:BC:EC:DE:C3:51:48:59:46:71:1F:B5:9B",
      "Timestamp : Jan 27 00:27:11.600 2024 GMT",
      "Extensions: none",
      "Signature : ecdsa-with-SHA256",
      "30:45:02:21:00:E0:47:79:52:1A:60:BF:47:F0:D9:41:",
      "50:72:7F:3F:87:8E:84:33:D8:08:3C:4C:04:33:6B:B6:",
      "BB:E3:83:79:95:02:20:74:4A:5B:86:05:71:8A:E4:BC:",
      "06:C2:87:DD:8D:FE:91:DC:EE:5F:67:BF:B1:26:06:29:",
      "78:E7:4F:77:1A:8B:55",
      "Log ID    : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:",
      "1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73",
      "Timestamp : Jan 27 00:27:11.643 2024 GMT",
      "30:46:02:21:00:E0:A3:7B:AB:79:43:B7:34:2C:9D:BE:",
      "04:5C:EA:A8:C7:1A:05:23:8D:AA:57:F6:2F:D7:6D:5F:",
      "BD:0E:B6:2E:B2:02:21:00:95:61:C1:27:AF:63:27:AB:",
      "D6:52:C2:CE:C8:07:26:00:94:17:54:94:E8:FC:11:D8:",
      "93:21:13:BE:E0:36:B2:80",
      "Log ID    : DA:B6:BF:6B:3F:B5:B6:22:9F:9B:C2:BB:5C:6B:E8:70:",
      "91:71:6C:BB:51:84:85:34:BD:A4:3D:30:48:D7:FB:AB",
      "Timestamp : Jan 27 00:27:11.632 2024 GMT",
      "30:45:02:20:50:CD:97:63:AE:38:D7:16:A0:E1:74:B6:",
      "84:61:C9:56:A8:29:7D:44:A0:2F:D0:D5:62:A8:98:CC:",
      "42:0F:2D:1E:02:21:00:C0:A2:40:A6:6A:D7:02:59:15:",
      "A0:83:FB:27:16:50:B8:3D:FA:E5:19:D8:FD:22:58:18:",
      "CF:5A:F0:DE:70:BF:BB"
    ]
  },
  "http_security_txt": {
    "url": "https://www.facebook.com/.well-known/security.txt",
    "status_code": 200,
    "has_contact": true,
    "valid_https": true,
    "valid_content_type": true,
    "full_text": "Contact: https://www.facebook.com/whitehat/report/\nAcknowledgments: https://www.facebook.com/whitehat/thanks/\nHiring: https://www.metacareers.com/areas-of-work/security/\n\n# Found a bug? Our bug bounty policy:\nPolicy: https://www.facebook.com/whitehat/info/\n\n# What we do when we find a bug in another product:\nPolicy: https://about.meta.com/security/vulnerability-disclosure-policy\n\nExpires: Sun, 19 May 2024 03:17:19 -0700",
    "min_text": "Contact: https://www.facebook.com/whitehat/report/\nAcknowledgements: https://www.facebook.com/whitehat/thanks/\nHiring: https://www.metacareers.com/areas-of-work/security/\nPolicy: https://www.facebook.com/whitehat/info/\nPolicy: https://about.meta.com/security/vulnerability-disclosure-policy\nExpires: Sun, 19 May 2024 03:17:19 -0700\n",
    "items": {
      "Acknowledgements": [
        "https://www.facebook.com/whitehat/thanks/"
      ],
      "Canonical": [],
      "Contact": [
        "https://www.facebook.com/whitehat/report/"
      ],
      "Encryption": [],
      "Preferred-Languages": "",
      "Expires": "Sun, 19 May 2024 03:17:19 -0700",
      "Hiring": [
        "https://www.metacareers.com/areas-of-work/security/"
      ],
      "Policy": [
        "https://www.facebook.com/whitehat/info/",
        "https://about.meta.com/security/vulnerability-disclosure-policy"
      ]
    },
    "headers": {
      "vary": "Accept-Encoding",
      "content-encoding": "br",
      "content-type": "text/plain;charset=utf-8",
      "reporting-endpoints": "coop_report=\"https://www.facebook.com/browser_reporting/coop/?minimize=0\", coep_report=\"https://www.facebook.com/browser_reporting/coep/?minimize=0\", default=\"https://www.facebook.com/ajax/browser_error_reports/?device_level=unknown\", permissions_policy=\"https://www.facebook.com/ajax/browser_error_reports/\"",
      "report-to": "{\"max_age\":2592000,\"endpoints\":[{\"url\":\"https:\\/\\/www.facebook.com\\/browser_reporting\\/coop\\/?minimize=0\"}],\"group\":\"coop_report\",\"include_subdomains\":true}, {\"max_age\":86400,\"endpoints\":[{\"url\":\"https:\\/\\/www.facebook.com\\/browser_reporting\\/coep\\/?minimize=0\"}],\"group\":\"coep_report\"}, {\"max_age\":259200,\"endpoints\":[{\"url\":\"https:\\/\\/www.facebook.com\\/ajax\\/browser_error_reports\\/?device_level=unknown\"}]}, {\"max_age\":21600,\"endpoints\":[{\"url\":\"https:\\/\\/www.facebook.com\\/ajax\\/browser_error_reports\\/\"}],\"group\":\"permissions_policy\"}",
      "content-security-policy": "default-src data: blob: 'self' https://*.fbsbx.com 'unsafe-inline' *.facebook.com *.fbcdn.net 'unsafe-eval';script-src *.facebook.com *.fbcdn.net *.facebook.net 127.0.0.1:* 'unsafe-inline' blob: data: 'self' connect.facebook.net 'unsafe-eval' https://*.google-analytics.com *.google.com;style-src *.fbcdn.net data: *.facebook.com 'unsafe-inline' https://fonts.googleapis.com;connect-src *.facebook.com facebook.com *.fbcdn.net *.facebook.net wss://*.facebook.com:* wss://*.whatsapp.com:* wss://*.fbcdn.net attachment.fbsbx.com ws://localhost:* blob: *.cdninstagram.com 'self' http://localhost:3103 wss://gateway.facebook.com wss://edge-chat.facebook.com wss://snaptu-d.facebook.com wss://kaios-d.facebook.com/ v.whatsapp.net *.fbsbx.com *.fb.com https://*.google-analytics.com;font-src data: *.facebook.com *.fbcdn.net *.fbsbx.com https://fonts.gstatic.com;img-src *.fbcdn.net *.facebook.com data: https://*.fbsbx.com facebook.com *.cdninstagram.com fbsbx.com fbcdn.net connect.facebook.net *.carriersignal.info blob: android-webview-video-poster: *.whatsapp.net *.fb.com *.oculuscdn.com *.tenor.co *.tenor.com *.giphy.com https://paywithmybank.com/ https://*.paywithmybank.com/ https://www.googleadservices.com https://googleads.g.doubleclick.net https://*.google-analytics.com;media-src *.cdninstagram.com blob: *.fbcdn.net *.fbsbx.com www.facebook.com *.facebook.com data: *.tenor.co *.tenor.com https://*.giphy.com;frame-src *.facebook.com *.fbsbx.com fbsbx.com data: www.instagram.com *.fbcdn.net https://paywithmybank.com/ https://*.paywithmybank.com/ https://www.googleadservices.com https://googleads.g.doubleclick.net https://www.google.com https://td.doubleclick.net *.google.com *.doubleclick.net;worker-src blob: *.facebook.com data: https://*.google-analytics.com *.google.com;block-all-mixed-content;upgrade-insecure-requests;",
      "document-policy": "force-load-at-top",
      "permissions-policy": "accelerometer=(), attribution-reporting=(self), autoplay=(), bluetooth=(), camera=(self), ch-device-memory=(), ch-downlink=(), ch-dpr=(), ch-ect=(), ch-rtt=(), ch-save-data=(), ch-ua-arch=(), ch-ua-bitness=(), ch-viewport-height=(), ch-viewport-width=(), ch-width=(), clipboard-read=(self), clipboard-write=(self), display-capture=(self), encrypted-media=(self), fullscreen=(self), gamepad=*, geolocation=(self), gyroscope=(), hid=(), idle-detection=(), keyboard-map=(), local-fonts=(), magnetometer=(), microphone=(self), midi=(), otp-credentials=(), payment=(), picture-in-picture=(self), publickey-credentials-get=(self), screen-wake-lock=(), serial=(), usb=(), window-management=(), xr-spatial-tracking=(self);report-to=\"permissions_policy\"",
      "cross-origin-resource-policy": "same-origin",
      "cross-origin-embedder-policy-report-only": "require-corp;report-to=\"coep_report\"",
      "cross-origin-opener-policy": "same-origin-allow-popups;report-to=\"coop_report\"",
      "pragma": "no-cache",
      "cache-control": "private, no-cache, no-store, must-revalidate",
      "expires": "Sat, 01 Jan 2000 00:00:00 GMT",
      "x-content-type-options": "nosniff",
      "x-xss-protection": "0",
      "x-frame-options": "DENY",
      "strict-transport-security": "max-age=15552000; preload",
      "x-fb-debug": "uWjGl0nGzRkQsStAB9ecLp10seqFiN7FFtBUncqh9qOOzrh5lFy1AF1t/YIIyzGhk5VPcO6DUa8y/fiI4OQREg==",
      "date": "Fri, 19 Apr 2024 10:17:19 GMT",
      "x-fb-connection-quality": "GOOD; q=0.7, rtt=68, rtx=0, c=10, mss=1380, tbw=3535, tp=-1, tpl=-1, uplat=52, ullat=0",
      "alt-svc": "h3=\":443\"; ma=86400"
    },
    "http_version": "HTTP/2",
    "redirects": [
      {
        "type": "301",
        "val": "https://facebook.com/.well-known/security.txt",
        "https": true,
        "http_version": "HTTP/2"
      },
      {
        "type": "200",
        "val": "https://www.facebook.com/.well-known/security.txt",
        "https": true,
        "http_version": "HTTP/2"
      }
    ],
    "type": "https_well-known"
  },
  "rank": 27
}

dnssecuritytxt (DNS)

You can find out more about dnssecuritytxt here.

No DNS records found

security.txt (HTTP)

You can find out more about security.txt here or by looking up RFC 9116.

Status: 200

Scheme: https

URL: https://www.facebook.com/.well-known/security.txt (HTTP/2)

Has a contact: Yes

Contacts:

Policy:

Minimal version:

Contact: https://www.facebook.com/whitehat/report/
Acknowledgements: https://www.facebook.com/whitehat/thanks/
Hiring: https://www.metacareers.com/areas-of-work/security/
Policy: https://www.facebook.com/whitehat/info/
Policy: https://about.meta.com/security/vulnerability-disclosure-policy
Expires: Sun, 19 May 2024 03:17:19 -0700

Full version:

Contact: https://www.facebook.com/whitehat/report/
Acknowledgments: https://www.facebook.com/whitehat/thanks/
Hiring: https://www.metacareers.com/areas-of-work/security/

# Found a bug? Our bug bounty policy:
Policy: https://www.facebook.com/whitehat/info/

# What we do when we find a bug in another product:
Policy: https://about.meta.com/security/vulnerability-disclosure-policy

Expires: Sun, 19 May 2024 03:17:19 -0700

Redirects:

  • 301: https://facebook.com/.well-known/security.txt (HTTP/2)
  • 200: https://www.facebook.com/.well-known/security.txt (HTTP/2)
Updated at: 10:17:19+0000 on 19 April 2024