webtelemetry.dev

animate-onlineshop.jp

F

animate|アニメイト通販|オンラインショップ

Last scanned 7 h agoCompare with another site →

Built with

Backend
PHP

Also detected

Infrastructure
Apache
Third-party services
Google Tag Manager

Overview

Status
alive
Registered
not looked up yet
First seen here
2026-09-22
Security grade
F (10/100, from headers & TLS)
Privacy score
84/100 (0 third-party script hosts, 1 tracking/marketing services)
Hosting
unknown
Linked to from
16 other sites seen so far

What to fix

  1. Fix the TLS certificate
    Browsers show a warning because the certificate is expired, self-signed, or doesn't match the domain.
  2. Add Strict-Transport-Security
    Header: Strict-Transport-Security: max-age=31536000; includeSubDomains
  3. Add a Content-Security-Policy
    Limits which scripts can run, and is the main defense against XSS. Start with Content-Security-Policy-Report-Only to test.
  4. Add X-Content-Type-Options
    Header: X-Content-Type-Options: nosniff
  5. Prevent clickjacking
    Header: X-Frame-Options: DENY (or a CSP frame-ancestors directive).
  6. Add a Referrer-Policy
    Header: Referrer-Policy: strict-origin-when-cross-origin
  7. Mark cookies Secure and HttpOnly
    At least one cookie is sent without these flags, exposing it to interception or scripts.

Security & email signals

Badge

Show this site's security grade in a README or footer:

webtelemetry security grade for animate-onlineshop.jp
<a href="https://webtelemetry.dev/site/animate-onlineshop.jp"><img src="https://webtelemetry.dev/badge/animate-onlineshop.jp.svg" alt="Security grade"></a>

Generated automatically from passive, publicly observable data. Think something here is wrong or want this profile removed? See /bot. Machine-readable: JSON.