Summary of sso.myid.disney.com [Mobile version] Website Security Test
Provided "as is" without any warranty of any kind.
Date/Time:Nov 15th, 2024 11:25 GMT+0
Server IP:35.71.168.214
Reverse DNS:ad3225ce0e27ecc67.awsglobalaccelerator.com
Location:Seattle, United States
Version:for iPhone 6
Your final score:
- A
- B
- C
- F
A
This test was made 550 days ago and may be outdated
Refresh Test
Executive Summary for sso.myid.disney.com
- 3 third-party web software dependancies were identified. All appear to be outdated, but no known vulnerabilities were detected. No Content Management System (CMS) was identified. The following CMS components, JS-libraries or frameworks were identified: core-js, jquery, handlebars.js. Show details.
- No obvious GDPR-related compliance issues were detected across Privacy Policy, Website Security, TLS Encryption, Cookie Protection, Cookie Disclaimer. Show details.
- The website is compliant with PCI DSS Requirement 6.3, while being non-compliant with Requirement 6.4. Show details.
- Issues were identified with key security header misconfigured Content-Security-Policy. An optional HTTP header may not be properly configured: Content-Security-Policy-Report-Only. Deprecated HTTP headers detected: X-XSS-Protection. Show details.
- Content-Security-Policy is enforced but configuration issues were identified: directive errors. The report-only Content-Security-Policy contains issues: overly permissive directives, directive errors. Show details.
- 7 cookies detected; xids, sid, autolaunch_triggered, activate_ca_modal_triggered, JSESSIONID, t, DT have security or privacy-related configuration issues. Show details.
- 9 external requests detected; all requests completed successfully. SRI is correctly implemented for all 4 third-party JavaScript and CSS files. Show details.
- No significant anti-scraping protections were detected. Show details.
- DNS CNAME record detected; DNSSEC signatures are not present. Show details.


