MercadoLibre icon MercadoLibre HackerOne

prod-cxwidget.mercadolibre.com.ar


Endpoints (2 of 2)

Page 1 of 1

Path
Port
Status Code
Content-Length
Title
Resp Headers
/
80
301
167
301 Moved Permanently

Location: https://prod-cxwidget.mercadolibre.com.ar/

Content-Type: text/html

/
443
200
2059
None

Content-Type: text/html

  • Path: /
  • Port: 80
  • Status Code: 301
  • Title: 301 Moved Permanently
  • Via: 1.1 f48e3bba7eb119871945c3726fab1888.cloudfront.net (CloudFront)

    Date: Mon, 10 Jun 2024 23:54:12 GMT

    Server: CloudFront

    Alt-Svc: h3=":443"; ma=86400

    X-Cache: Redirect from cloudfront

    Location: https://prod-cxwidget.mercadolibre.com.ar/

    X-Amz-Cf-Id: e6sT8izKQq2vH1tUEx0SXB1SGngo9QltVdFVa63wfEa8jdotA6Mo5A==

    Content-Type: text/html

    X-Amz-Cf-Pop: JFK50-P6

    Content-Length: 167

  • Technologies:

    Amazon Cloudfront

    Amazon Web Services

    Http/3

  • First snapshot: 3 years, 1 month ago
  • Latest snapshot: 9 months ago
  • Path: /
  • Port: 443
  • Status Code: 200
  • Title: None
  • Via: 1.1 7c55514b62254664b7255cfc5da6dc92.cloudfront.net (CloudFront)

    Date: Mon, 10 Jun 2024 23:54:24 GMT

    Etag: W/"80b-KgKIY0ZFAguU8TwrOW3vk2BDAU0"

    Vary: Accept-Encoding

    Server: Tengine

    X-D2id: 6e44d83d-3bb3-4e9f-8408-678346e6546b

    Alt-Svc: h3=":443"; ma=86400

    X-Cache: Miss from cloudfront

    Accept-Ch: device-memory, dpr, viewport-width, rtt, downlink, ect, save-data

    Expect-Ct: max-age=0

    Set-Cookie: _d2id=6e44d83d-3bb3-4e9f-8408-678346e6546b-n; SameSite=None; Secure; Path=/; Domain=.mercadolibre.com.ar; Expires=Tue, 10 Jun 2025 23:54:24 GMT, _csrf=wCClQuCyg2b44IqCNsyJk7YA; Path=/; HttpOnly; Secure, NSESSIONID_LUIGI_SESSION=s%3Aip5Mu5nO5vg-FRKS1vmXutY4fZlJgsWX.vYYfMbBnN8TebvV26PxXHy0TI53YyCfUUUf9tKj%2BLJ0; Path=/; Expires=Tue, 11 Jun 2024 00:24:24 GMT; HttpOnly; Secure

    X-Amz-Cf-Id: BEI_5BFMK7RHhBJHEKrBMoIimnZKhJfKPk4CZUck6IadBC3BPgJlvw==

    Content-Type: text/html; charset=utf-8

    X-Amz-Cf-Pop: JFK50-P6

    X-Request-Id: 6e44d83d-3bb3-4e9f-8408-678346e6546b

    Cache-Control: private, max-age=0, no-cache, no-store, must-revalidate

    Referrer-Policy: no-referrer-when-downgrade

    X-Xss-Protection: 1; mode=block

    Accept-Ch-Lifetime: 60

    X-Download-Options: noopen

    Reporting-Endpoints: csp-endpoint="https://events.mercadolibre.com/csp/v2/reports?identifier=z4KT7qnFE_rjNung3Tj9NkaTx2RkT7YDi9Qe0u8zPnjM-R4VN_M9CNAgii0NJmY4iez0jEMNNuonLg==&user_id=&request_id=6e44d83d-3bb3-4e9f-8408-678346e6546b"

    X-Request-Device-Id: 6e44d83d-3bb3-4e9f-8408-678346e6546b

    X-Content-Type-Options: nosniff

    X-Dns-Prefetch-Control: on

    Content-Security-Policy: script-src 'nonce-6o9CEACm9xkNkEttV8DFtw==' 'strict-dynamic' https: 'unsafe-inline' 'report-sample'; base-uri 'none'; report-uri https://events.mercadolibre.com/csp/reports?identifier=z4KT7qnFE_rjNung3Tj9NkaTx2RkT7YDi9Qe0u8zPnjM-R4VN_M9CNAgii0NJmY4iez0jEMNNuonLg==&policy_id=9&user_id=&request_id=6e44d83d-3bb3-4e9f-8408-678346e6546b; report-to csp-endpoint; object-src https://http2.mlstatic.com/ https://mlstaticquic-a.akamaihd.net/

    Strict-Transport-Security: max-age=15552000; includeSubDomains

    X-Envoy-Upstream-Service-Time: 27

    X-Permitted-Cross-Domain-Policies: none

  • Technologies:

    Amazon Cloudfront

    Amazon Web Services

    Envoy

    Hsts

    Http/3

    Tengine

  • First snapshot: 3 years, 1 month ago
  • Latest snapshot: 9 months ago

Page 1 of 1