Submitted URL:
https://deepseek.net/zh/chat 3yr old
Effective URL:
https://deep-seek.ai/zh/chat 1yr old
Submission Tags: hybridanalysis
Submission: On June 09 via api (June 9th 2026, 1:35:40 pm UTC) from US — Scanned from FI

Summary

This website contacted 8 IPs in 2 countries across 8 domains to perform 30 HTTP transactions. The main IP is 205.196.81.104, located in Miami, United States and belongs to BIZNESSHOSTING-DBA-VOLICO - VOLICO, US. The main domain is deep-seek.ai. 1yr old
TLS certificate: Issued by R13 on May 25th 2026. Valid for: 3mo.
deepseek.net scanned 291 times on urlscan.io Show Scans 291
deep-seek.ai scanned 12 times on urlscan.io Show Scans 12

urlscan.io Verdict: No classification


Live information

Google Safe Browsing: No classification for deep-seek.ai
Current DNS A record: 205.196.81.104 (AS33724 - BIZNESSHOSTING-DBA-VOLICO - VOLICO, US)

Domain & IP information

IP Address AS Autonomous System
1 1 65.108.76.151 65.108.76.151 24940 (HETZNER-A...) (HETZNER-AS Hetzner Online GmbH)
13 205.196.81.104 205.196.81.104 33724 (BIZNESSHO...) (BIZNESSHOSTING-DBA-VOLICO - VOLICO)
2 142.251.13.95 142.251.13.95 15169 (GOOGLE) (GOOGLE - Google LLC)
2 142.251.110.155 142.251.110.155 15169 (GOOGLE) (GOOGLE - Google LLC)
1 142.251.110.97 142.251.110.97 15169 (GOOGLE) (GOOGLE - Google LLC)
2 142.251.14.94 142.251.14.94 15169 (GOOGLE) (GOOGLE - Google LLC)
1 216.239.34.36 216.239.34.36 15169 (GOOGLE) (GOOGLE - Google LLC)
8 192.178.183.113 192.178.183.113 15169 (GOOGLE) (GOOGLE - Google LLC)
30 8
Apex Domain
Subdomains
Transfer
13 deep-seek.ai
deep-seek.ai 1yr old
217 KB
8 google.com
fundingchoicesmessages.google.com — Cisco Umbrella Rank: 701 7yr old
145 KB
2 gstatic.com
fonts.gstatic.com — Cisco Umbrella Rank: 39 10yr old
95 KB
2 googlesyndication.com
pagead2.googlesyndication.com — Cisco Umbrella Rank: 138 10yr old
223 KB
2 googleapis.com
fonts.googleapis.com — Cisco Umbrella Rank: 59 9yr old
7 KB
1 google-analytics.com
region1.google-analytics.com — Cisco Umbrella Rank: 3114 5yr old
1 googletagmanager.com
www.googletagmanager.com — Cisco Umbrella Rank: 53 13yr old
159 KB
1 deepseek.net 1 redirects
deepseek.net 3yr old
223 B
30 8
Domain Requested by
13 deep-seek.ai deep-seek.ai
8 fundingchoicesmessages.google.com pagead2.googlesyndication.com
2 fonts.gstatic.com fonts.googleapis.com
deep-seek.ai
2 pagead2.googlesyndication.com deep-seek.ai
pagead2.googlesyndication.com
2 fonts.googleapis.com deep-seek.ai
1 region1.google-analytics.com www.googletagmanager.com
1 www.googletagmanager.com deep-seek.ai
1 deepseek.net 1 redirects
30 8

This site contains links to these domains. Also see Links.

Domain
picai.com
apps.apple.com
play.google.com
Subject Issuer Validity Valid
deep-seek.ai
R13
2026-05-25 -
2026-08-23
3mo crt.sh
upload.video.google.com
WE2
2026-05-18 -
2026-08-10
3mo crt.sh
*.g.doubleclick.net
WE2
2026-05-18 -
2026-08-10
3mo crt.sh
*.google-analytics.com
WE2
2026-05-18 -
2026-08-10
3mo crt.sh
*.gstatic.com
WE2
2026-05-18 -
2026-08-10
3mo crt.sh
*.google.com
WE2
2026-05-18 -
2026-08-10
3mo crt.sh

This page contains 1 frames:

Primary Page: https://deep-seek.ai/zh/chat
Frame ID: B80022A8C5F2A0D71DEE5D974C639269
Requests: 30 HTTP requests in this frame

Screenshot

Page Title

DeepSeek AI – DeepSeek-V4驱动的免费聊天

Page URL History Show full URLs

  1. https://deepseek.net/zh/chat HTTP 301
    https://deep-seek.ai/zh/chat Page URL

Detected technologies

(Cookie compliance)
Overall confidence: 100%
Detected patterns
  • fundingchoicesmessages\.google\.com

(Advertising)
Overall confidence: 100%
Detected patterns
  • googlesyndication\.com/

(Analytics)
Overall confidence: 100%
Detected patterns
  • googletagmanager\.com/gtag/js

(Tag managers)
Overall confidence: 100%
Detected patterns
  • \.googletagmanager\.com/

(JavaScript libraries)
Overall confidence: 100%
Detected patterns
  • /(?:([\d.])+/)?highlight(?:\.min)?\.js

(JavaScript libraries)
Overall confidence: 100%
Detected patterns
  • /marked(?:\.min)?\.js

Page Statistics

30
Requests

97 %
HTTPS

0 %
IPv6

8
Domains

8
Subdomains

8
IPs

2
Countries

846 kB
Transfer

2846 kB
Size

5
Cookies

Page URL History

This captures the URL locations of the websites, including HTTP redirects and client-side redirects via JavaScript or Meta fields.

  1. https://deepseek.net/zh/chat HTTP 301
    https://deep-seek.ai/zh/chat Page URL

Redirected requests

There were HTTP redirect chains for the following requests:

30 HTTP transactions
0 data transactions

Method
Protocol
Status Resource
Path
Size
x-fer
Time
Latency
Type
MIME-Type
IP
Location
GET
H/1.1
200
OK
Primary Request chat Show response
deep-seek.ai/zh/
Redirect Chain
  • https://deepseek.net/zh/chat
  • https://deep-seek.ai/zh/chat
10 KB
4 KB
754ms
199ms
Document
text/html
205.196.81.104
VOLICO
General
Full URL
https://deep-seek.ai/zh/chat
Protocol
HTTP/1.1
Security
TLS 1.2, ECDHE_RSA, CHACHA20_POLY1305
Server
205.196.81.104 Miami, United States, ASN33724 (BIZNESSHOSTING-DBA-VOLICO - VOLICO, US),
Reverse DNS
s1d71a3de.fastvps-server.com
Software
nginx/1.22.0 / PHP/8.2.27
Resource Hash
dd419c74d8b79474273ddbfa1f8e9b59c8990bd305f75a8cece8affe051c65dd

Request headers

Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0
sec-ch-ua-platform
"Linux"

Response headers

Cache-Control
no-cache, private
Connection
keep-alive
Content-Encoding
gzip
Content-Type
text/html; charset=utf-8
Date
Tue, 09 Jun 2026 13:35:41 GMT
Server
nginx/1.22.0
Transfer-Encoding
chunked
X-Powered-By
PHP/8.2.27

Redirect headers

Connection
keep-alive
Content-Length
315
Content-Type
text/html; charset=iso-8859-1
Date
Tue, 09 Jun 2026 13:35:40 GMT
Location
https://deep-seek.ai/zh/chat
Server
nginx/1.26.1
GET
H2
200
css2
fonts.googleapis.com/
17 KB
1 KB
691ms
141ms
Stylesheet
text/css
142.251.13.95
Google LLC
General
Full URL
https://fonts.googleapis.com/css2?family=Inter:wght@400;500;600;700;800&family=JetBrains+Mono:wght@400;500&display=swap
Requested by
Host: deep-seek.ai
URL: https://deep-seek.ai/zh/chat
Protocol
H2
Security
TLS 1.3, , AES_256_GCM
Server
142.251.13.95 , United States, ASN15169 (GOOGLE - Google LLC, US),
Reverse DNS
wt-in-f95.1e100.net
Software
ESF /
Resource Hash
962be993e18cc61e9c4477b2497d5582ed1a50e527070a0b57ab52be4f8b8157
Security Headers
Name Value
Strict-Transport-Security max-age=31536000
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

content-encoding
gzip
x-content-type-options
nosniff
expires
Tue, 09 Jun 2026 13:35:41 GMT
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
date
Tue, 09 Jun 2026 13:35:41 GMT
content-type
text/css; charset=utf-8
vary
Sec-Fetch-Dest, Sec-Fetch-Mode, Sec-Fetch-Site
last-modified
Tue, 09 Jun 2026 13:35:41 GMT
x-frame-options
SAMEORIGIN
strict-transport-security
max-age=31536000
link
<https://fonts.gstatic.com>; rel=preconnect; crossorigin
cache-control
private, max-age=86400, stale-while-revalidate=604800
timing-allow-origin
*
cross-origin-opener-policy
same-origin-allow-popups
cross-origin-resource-policy
cross-origin
access-control-allow-origin
*
x-xss-protection
0
server
ESF
GET
H/1.1
200
OK
highlight-dark.min.css
deep-seek.ai/vendor/css/
1 KB
950 B
248ms
247ms
Stylesheet
text/css
205.196.81.104
VOLICO
General
Full URL
https://deep-seek.ai/vendor/css/highlight-dark.min.css
Requested by
Host: deep-seek.ai
URL: https://deep-seek.ai/zh/chat
Protocol
HTTP/1.1
Security
TLS 1.2, ECDHE_RSA, CHACHA20_POLY1305
Server
205.196.81.104 Miami, United States, ASN33724 (BIZNESSHOSTING-DBA-VOLICO - VOLICO, US),
Reverse DNS
s1d71a3de.fastvps-server.com
Software
nginx/1.22.0 /
Resource Hash
9f208d022102b1d0c7aebfecd8e42ca7997d5de636649d2b31ea63093d809019

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/zh/chat
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

Transfer-Encoding
chunked
Cache-Control
max-age=2592000
Content-Encoding
gzip
ETag
W/"69dea716-523"
Connection
keep-alive
Expires
Thu, 09 Jul 2026 13:35:41 GMT
Date
Tue, 09 Jun 2026 13:35:41 GMT
Content-Type
text/css
Last-Modified
Tue, 14 Apr 2026 20:44:06 GMT
Server
nginx/1.22.0
GET
H/1.1
200
OK
katex.min.css
deep-seek.ai/vendor/css/
23 KB
4 KB
559ms
310ms
Stylesheet
text/css
205.196.81.104
VOLICO
General
Full URL
https://deep-seek.ai/vendor/css/katex.min.css
Requested by
Host: deep-seek.ai
URL: https://deep-seek.ai/zh/chat
Protocol
HTTP/1.1
Security
TLS 1.2, ECDHE_RSA, CHACHA20_POLY1305
Server
205.196.81.104 Miami, United States, ASN33724 (BIZNESSHOSTING-DBA-VOLICO - VOLICO, US),
Reverse DNS
s1d71a3de.fastvps-server.com
Software
nginx/1.22.0 /
Resource Hash
8446856873151667ccd195086c5fbdfbb09f4bbc59dcd245755e25bbdfccefb4

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/zh/chat
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

Transfer-Encoding
chunked
Cache-Control
max-age=2592000
Content-Encoding
gzip
ETag
W/"69dea726-5bec"
Connection
keep-alive
Expires
Thu, 09 Jul 2026 13:35:41 GMT
Date
Tue, 09 Jun 2026 13:35:41 GMT
Content-Type
text/css
Last-Modified
Tue, 14 Apr 2026 20:44:22 GMT
Server
nginx/1.22.0
GET
H/1.1
200
OK
chat.css
deep-seek.ai/chat-assets/
23 KB
5 KB
862ms
386ms
Stylesheet
text/css
205.196.81.104
VOLICO
General
Full URL
https://deep-seek.ai/chat-assets/chat.css?v=1779453972
Requested by
Host: deep-seek.ai
URL: https://deep-seek.ai/zh/chat
Protocol
HTTP/1.1
Security
TLS 1.2, ECDHE_RSA, CHACHA20_POLY1305
Server
205.196.81.104 Miami, United States, ASN33724 (BIZNESSHOSTING-DBA-VOLICO - VOLICO, US),
Reverse DNS
s1d71a3de.fastvps-server.com
Software
nginx/1.22.0 /
Resource Hash
392c29ae699c9b4a24ec944fdb9ab6d59bd5e2167d5b37eaeac61f0fda5fd676

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/zh/chat
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

Transfer-Encoding
chunked
Cache-Control
max-age=2592000
Content-Encoding
gzip
ETag
W/"6a105014-5a86"
Connection
keep-alive
Expires
Thu, 09 Jul 2026 13:35:41 GMT
Date
Tue, 09 Jun 2026 13:35:41 GMT
Content-Type
text/css
Last-Modified
Fri, 22 May 2026 12:46:12 GMT
Server
nginx/1.22.0
GET
H2
200
adsbygoogle.js Show response
pagead2.googlesyndication.com/pagead/js/
156 KB
55 KB
683ms
139ms
Script
text/javascript
142.251.110.155
Google LLC
General
Full URL
https://pagead2.googlesyndication.com/pagead/js/adsbygoogle.js?client=ca-pub-1851068468056357
Requested by
Host: deep-seek.ai
URL: https://deep-seek.ai/zh/chat
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
142.251.110.155 , United States, ASN15169 (GOOGLE - Google LLC, US),
Reverse DNS
bz-in-f155.1e100.net
Software
cafe /
Resource Hash
6d336241b9f3e27e0257970a924414bb7aeb41576390dc5d2d86204410bfb21a
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Origin
https://deep-seek.ai
sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

content-encoding
br
etag
14149684147799002016
x-content-type-options
nosniff
expires
Tue, 09 Jun 2026 13:35:41 GMT
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
date
Tue, 09 Jun 2026 13:35:41 GMT
content-type
text/javascript; charset=UTF-8
vary
Accept-Encoding
content-disposition
attachment; filename="f.txt"
link
<https://googleads.g.doubleclick.net>; rel="preconnect"; crossorigin
cache-control
private, max-age=3600, stale-while-revalidate=3600
timing-allow-origin
*
cross-origin-resource-policy
cross-origin
access-control-allow-origin
*
content-length
55383
x-xss-protection
0
server
cafe
GET
H/1.1
200
OK
highlight.min.js Show response
deep-seek.ai/vendor/js/
119 KB
40 KB
888ms
413ms
Script
application/javascript
205.196.81.104
VOLICO
General
Full URL
https://deep-seek.ai/vendor/js/highlight.min.js
Requested by
Host: deep-seek.ai
URL: https://deep-seek.ai/zh/chat
Protocol
HTTP/1.1
Security
TLS 1.2, ECDHE_RSA, CHACHA20_POLY1305
Server
205.196.81.104 Miami, United States, ASN33724 (BIZNESSHOSTING-DBA-VOLICO - VOLICO, US),
Reverse DNS
s1d71a3de.fastvps-server.com
Software
nginx/1.22.0 /
Resource Hash
837a6fa5b0c736b52bbde2b2b6190f305da3fc9ed41681db5321507057b5c846

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/zh/chat
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

Transfer-Encoding
chunked
Cache-Control
max-age=2592000
Content-Encoding
gzip
ETag
W/"69dea715-1db7f"
Connection
keep-alive
Expires
Thu, 09 Jul 2026 13:35:41 GMT
Date
Tue, 09 Jun 2026 13:35:41 GMT
Content-Type
application/javascript; charset=utf-8
Last-Modified
Tue, 14 Apr 2026 20:44:05 GMT
Server
nginx/1.22.0
GET
H/1.1
200
OK
katex.min.js Show response
deep-seek.ai/vendor/js/
270 KB
74 KB
818ms
342ms
Script
application/javascript
205.196.81.104
VOLICO
General
Full URL
https://deep-seek.ai/vendor/js/katex.min.js
Requested by
Host: deep-seek.ai
URL: https://deep-seek.ai/zh/chat
Protocol
HTTP/1.1
Security
TLS 1.2, ECDHE_RSA, CHACHA20_POLY1305
Server
205.196.81.104 Miami, United States, ASN33724 (BIZNESSHOSTING-DBA-VOLICO - VOLICO, US),
Reverse DNS
s1d71a3de.fastvps-server.com
Software
nginx/1.22.0 /
Resource Hash
863811e2baa0849c77bc92d26d44f4d0a4843c2a8ab52c462017dea57316e4d8

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/zh/chat
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

Transfer-Encoding
chunked
Cache-Control
max-age=2592000
Content-Encoding
gzip
ETag
W/"69dea715-4385e"
Connection
keep-alive
Expires
Thu, 09 Jul 2026 13:35:41 GMT
Date
Tue, 09 Jun 2026 13:35:41 GMT
Content-Type
application/javascript; charset=utf-8
Last-Modified
Tue, 14 Apr 2026 20:44:05 GMT
Server
nginx/1.22.0
GET
H/1.1
200
OK
marked.min.js Show response
deep-seek.ai/vendor/js/
39 KB
12 KB
791ms
316ms
Script
application/javascript
205.196.81.104
VOLICO
General
Full URL
https://deep-seek.ai/vendor/js/marked.min.js
Requested by
Host: deep-seek.ai
URL: https://deep-seek.ai/zh/chat
Protocol
HTTP/1.1
Security
TLS 1.2, ECDHE_RSA, CHACHA20_POLY1305
Server
205.196.81.104 Miami, United States, ASN33724 (BIZNESSHOSTING-DBA-VOLICO - VOLICO, US),
Reverse DNS
s1d71a3de.fastvps-server.com
Software
nginx/1.22.0 /
Resource Hash
3e7e7d7feb3e5d58cb6c804f68ab5c24cc7e5eb6270fd6e5cbb9124739217d0c

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/zh/chat
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

Transfer-Encoding
chunked
Cache-Control
max-age=2592000
Content-Encoding
gzip
ETag
W/"69dea716-9bdf"
Connection
keep-alive
Expires
Thu, 09 Jul 2026 13:35:41 GMT
Date
Tue, 09 Jun 2026 13:35:41 GMT
Content-Type
application/javascript; charset=utf-8
Last-Modified
Tue, 14 Apr 2026 20:44:06 GMT
Server
nginx/1.22.0
GET
H/1.1
200
OK
react.production.min.js Show response
deep-seek.ai/vendor/js/
10 KB
5 KB
1276ms
715ms
Script
application/javascript
205.196.81.104
VOLICO
General
Full URL
https://deep-seek.ai/vendor/js/react.production.min.js
Requested by
Host: deep-seek.ai
URL: https://deep-seek.ai/zh/chat
Protocol
HTTP/1.1
Security
TLS 1.2, ECDHE_RSA, CHACHA20_POLY1305
Server
205.196.81.104 Miami, United States, ASN33724 (BIZNESSHOSTING-DBA-VOLICO - VOLICO, US),
Reverse DNS
s1d71a3de.fastvps-server.com
Software
nginx/1.22.0 /
Resource Hash
d949f1c3687aedadcedac85261865f29b17cd273997e7f6b2bfc53b2f9d4c4dd

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/zh/chat
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

Transfer-Encoding
chunked
Cache-Control
max-age=2592000
Content-Encoding
gzip
ETag
W/"69dea716-29ff"
Connection
keep-alive
Expires
Thu, 09 Jul 2026 13:35:42 GMT
Date
Tue, 09 Jun 2026 13:35:42 GMT
Content-Type
application/javascript; charset=utf-8
Last-Modified
Tue, 14 Apr 2026 20:44:06 GMT
Server
nginx/1.22.0
GET
H/1.1
200
OK
react-dom.production.min.js Show response
deep-seek.ai/vendor/js/
129 KB
42 KB
1128ms
543ms
Script
application/javascript
205.196.81.104
VOLICO
General
Full URL
https://deep-seek.ai/vendor/js/react-dom.production.min.js
Requested by
Host: deep-seek.ai
URL: https://deep-seek.ai/zh/chat
Protocol
HTTP/1.1
Security
TLS 1.2, ECDHE_RSA, CHACHA20_POLY1305
Server
205.196.81.104 Miami, United States, ASN33724 (BIZNESSHOSTING-DBA-VOLICO - VOLICO, US),
Reverse DNS
s1d71a3de.fastvps-server.com
Software
nginx/1.22.0 /
Resource Hash
35f4f974f4b2bcd44da73963347f8952e341f83909e4498227d4e26b98f66f0d

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/zh/chat
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

Transfer-Encoding
chunked
Cache-Control
max-age=2592000
Content-Encoding
gzip
ETag
W/"69dea716-202fb"
Connection
keep-alive
Expires
Thu, 09 Jul 2026 13:35:42 GMT
Date
Tue, 09 Jun 2026 13:35:42 GMT
Content-Type
application/javascript; charset=utf-8
Last-Modified
Tue, 14 Apr 2026 20:44:06 GMT
Server
nginx/1.22.0
GET
H/1.1
200
OK
chat-app.js Show response
deep-seek.ai/chatapp/
90 KB
25 KB
982ms
188ms
Script
application/javascript
205.196.81.104
VOLICO
General
Full URL
https://deep-seek.ai/chatapp/chat-app.js?v=1779454018
Requested by
Host: deep-seek.ai
URL: https://deep-seek.ai/zh/chat
Protocol
HTTP/1.1
Security
TLS 1.2, ECDHE_RSA, CHACHA20_POLY1305
Server
205.196.81.104 Miami, United States, ASN33724 (BIZNESSHOSTING-DBA-VOLICO - VOLICO, US),
Reverse DNS
s1d71a3de.fastvps-server.com
Software
nginx/1.22.0 /
Resource Hash
d7b1a556ccd85f99e0bbdac83295adbff6f5dd3b5e6fb19d08832fa159e90ccf

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/zh/chat
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

Transfer-Encoding
chunked
Cache-Control
max-age=2592000
Content-Encoding
gzip
ETag
W/"6a105042-168f0"
Connection
keep-alive
Expires
Thu, 09 Jul 2026 13:35:42 GMT
Date
Tue, 09 Jun 2026 13:35:42 GMT
Content-Type
application/javascript; charset=utf-8
Last-Modified
Fri, 22 May 2026 12:46:58 GMT
Server
nginx/1.22.0
GET
H2
200
js Show response
www.googletagmanager.com/gtag/
468 KB
159 KB
672ms
91ms
Script
application/javascript
142.251.110.97
Google LLC
General
Full URL
https://www.googletagmanager.com/gtag/js?id=G-C2YCJFV9N4
Requested by
Host: deep-seek.ai
URL: https://deep-seek.ai/zh/chat
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
142.251.110.97 , United States, ASN15169 (GOOGLE - Google LLC, US),
Reverse DNS
bz-in-f97.1e100.net
Software
Google Tag Manager /
Resource Hash
1db9fc869c05890d35ab52d36372fa7cb1d0a4f066da94ac80333f6f68f9c456
Security Headers
Name Value
Strict-Transport-Security max-age=31536000; includeSubDomains
X-Xss-Protection 0

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

strict-transport-security
max-age=31536000; includeSubDomains
cache-control
private, max-age=900
content-encoding
zstd
cross-origin-resource-policy
cross-origin
access-control-allow-credentials
true
expires
Tue, 09 Jun 2026 13:35:41 GMT
access-control-allow-origin
*
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
162569
date
Tue, 09 Jun 2026 13:35:41 GMT
x-xss-protection
0
content-type
application/javascript; charset=UTF-8
vary
Accept-Encoding
server
Google Tag Manager
access-control-allow-headers
Cache-Control
GET
H2
200
show_ads_impl_fy2021.js Show response
pagead2.googlesyndication.com/pagead/managed/js/adsense/m202606040101/
517 KB
169 KB
625ms
76ms
Script
text/javascript
142.251.110.155
Google LLC
General
Full URL
https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202606040101/show_ads_impl_fy2021.js
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/js/adsbygoogle.js?client=ca-pub-1851068468056357
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
142.251.110.155 , United States, ASN15169 (GOOGLE - Google LLC, US),
Reverse DNS
bz-in-f155.1e100.net
Software
cafe /
Resource Hash
30dcc627f9e900ed1ada401308a8b56c462c45a3bb70b4a0c6b98ebeb0858301
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

content-encoding
br
etag
911856908798628849
age
37899
x-content-type-options
nosniff
expires
Tue, 23 Jun 2026 03:04:03 GMT
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
date
Tue, 09 Jun 2026 03:04:03 GMT
content-disposition
attachment; filename="f.txt"
content-type
text/javascript; charset=UTF-8
vary
Accept-Encoding
cache-control
public, immutable, max-age=1209600
timing-allow-origin
*
cross-origin-resource-policy
cross-origin
content-length
172444
x-xss-protection
0
server
cafe
GET
H/1.1
200
OK
highlight-light.min.css
deep-seek.ai/vendor/css/
1 KB
946 B
200ms
200ms
Stylesheet
text/css
205.196.81.104
VOLICO
General
Full URL
https://deep-seek.ai/vendor/css/highlight-light.min.css
Requested by
Host: deep-seek.ai
URL: https://deep-seek.ai/chatapp/chat-app.js?v=1779454018
Protocol
HTTP/1.1
Security
TLS 1.2, ECDHE_RSA, CHACHA20_POLY1305
Server
205.196.81.104 Miami, United States, ASN33724 (BIZNESSHOSTING-DBA-VOLICO - VOLICO, US),
Reverse DNS
s1d71a3de.fastvps-server.com
Software
nginx/1.22.0 /
Resource Hash
3a9a5def8b9c311e5ae43abde85c63133185eed4f0d9f67fea4b00a8308cf066

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/zh/chat
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

Transfer-Encoding
chunked
Cache-Control
max-age=2592000
Content-Encoding
gzip
ETag
W/"69dea716-51d"
Connection
keep-alive
Expires
Thu, 09 Jul 2026 13:35:42 GMT
Date
Tue, 09 Jun 2026 13:35:42 GMT
Content-Type
text/css
Last-Modified
Tue, 14 Apr 2026 20:44:06 GMT
Server
nginx/1.22.0
GET
H/1.1
200
OK
chat-logo.svg
deep-seek.ai/
1 KB
1 KB
368ms
368ms
Image
image/svg+xml
205.196.81.104
VOLICO
General
Full URL
https://deep-seek.ai/chat-logo.svg
Requested by
Host: deep-seek.ai
URL: https://deep-seek.ai/zh/chat
Protocol
HTTP/1.1
Security
TLS 1.2, ECDHE_RSA, CHACHA20_POLY1305
Server
205.196.81.104 Miami, United States, ASN33724 (BIZNESSHOSTING-DBA-VOLICO - VOLICO, US),
Reverse DNS
s1d71a3de.fastvps-server.com
Software
nginx/1.22.0 /
Resource Hash
7bf14b633a980303b38e85c1ad6acdaa05bcbeee0f0deb18b96668f849ad102b

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/zh/chat
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

Transfer-Encoding
chunked
Cache-Control
max-age=2592000
Content-Encoding
gzip
ETag
W/"69dfbcd5-519"
Connection
keep-alive
Expires
Thu, 09 Jul 2026 13:35:42 GMT
Date
Tue, 09 Jun 2026 13:35:42 GMT
Content-Type
image/svg+xml
Last-Modified
Wed, 15 Apr 2026 16:29:09 GMT
Server
nginx/1.22.0
GET
H2
200
UcC73FwrK3iLTeHuS_nVMrMxCp50SjIa1ZL7.woff2
fonts.gstatic.com/s/inter/v20/
47 KB
48 KB
618ms
122ms
Font
font/woff2
142.251.14.94
Google LLC
General
Full URL
https://fonts.gstatic.com/s/inter/v20/UcC73FwrK3iLTeHuS_nVMrMxCp50SjIa1ZL7.woff2
Requested by
Host: fonts.googleapis.com
URL: https://fonts.googleapis.com/css2?family=Inter:wght@400;500;600;700;800&family=JetBrains+Mono:wght@400;500&display=swap
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
142.251.14.94 , United States, ASN15169 (GOOGLE - Google LLC, US),
Reverse DNS
pm-in-f94.1e100.net
Software
sffe /
Resource Hash
3100e775e8616cd2611beecfa23a4263d7037586789b43f035236a2e6fbd4c62
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Origin
https://deep-seek.ai
sec-ch-ua-platform
"Linux"
Referer
https://fonts.googleapis.com/
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

age
407395
report-to
{"group":"apps-themes","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/apps-themes"}]}
x-content-type-options
nosniff
expires
Fri, 04 Jun 2027 20:25:48 GMT
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
date
Thu, 04 Jun 2026 20:25:48 GMT
last-modified
Tue, 09 Sep 2025 18:33:53 GMT
content-type
font/woff2
cache-control
public, max-age=31536000
timing-allow-origin
*
cross-origin-opener-policy
same-origin; report-to="apps-themes"
cross-origin-resource-policy
cross-origin
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/apps-themes
accept-ranges
bytes
access-control-allow-origin
*
content-length
48256
x-xss-protection
0
server
sffe
POST
H2
204
collect
region1.google-analytics.com/g/
0
0
473ms
49ms
Fetch
text/plain
216.239.34.36
Google LLC
General
Full URL
https://region1.google-analytics.com/g/collect?v=2&tid=G-C2YCJFV9N4&gtm=45je6631v9205195640za200zd9205195640&_p=1781012142482&gcd=13l3l3l2l1l1&npa=1&dma_cps=a&dma=1&are=1&cid=1827365865.1781012143&frm=0&pscdl=noapi&rcb=0&sr=1600x1200&uaa=x86&uab=64&uafvl=Chromium%3B149.0.0.0%7CGoogle%2520Chrome%3B149.0.0.0%7CNot-A.Brand%3B24.0.0.0&uam=&uamb=0&uap=Linux&uapv=&uaw=0&ul=fi-fi&_s=1&tag_exp=0~115938466~115938469&sid=1781012142&sct=1&seg=0&dl=https%3A%2F%2Fdeep-seek.ai%2Fzh%2Fchat&dt=DeepSeek%20AI%20%E2%80%93%20DeepSeek-V4%E9%A9%B1%E5%8A%A8%E7%9A%84%E5%85%8D%E8%B4%B9%E8%81%8A%E5%A4%A9&en=page_view&_fv=1&_nsi=1&_ss=1&_ee=1&tfd=2411
Requested by
Host: www.googletagmanager.com
URL: https://www.googletagmanager.com/gtag/js?id=G-C2YCJFV9N4
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
216.239.34.36 , United States, ASN15169 (GOOGLE - Google LLC, US),
Reverse DNS
Software
Golfe2 /
Resource Hash

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

cache-control
no-cache, no-store, must-revalidate
pragma
no-cache
cross-origin-resource-policy
cross-origin
access-control-allow-credentials
true
content-security-policy-report-only
script-src 'none'; form-action 'none'; frame-src 'none'; report-uri https://csp.withgoogle.com/csp/scaffolding/ascnsrsggc:138:0
report-to
{"group":"ascnsrsggc:138:0","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/scaffolding/ascnsrsggc:138:0"}],}
expires
Fri, 01 Jan 1990 00:00:00 GMT
access-control-allow-origin
https://deep-seek.ai
cross-origin-opener-policy-report-only
same-origin; report-to=ascnsrsggc:138:0
content-length
0
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
date
Tue, 09 Jun 2026 13:35:42 GMT
content-type
text/plain
server
Golfe2
GET
H2
200
ca-pub-1851068468056357 Show response
fundingchoicesmessages.google.com/i/
220 KB
70 KB
699ms
152ms
Script
application/javascript
192.178.183.113
Google LLC
General
Full URL
https://fundingchoicesmessages.google.com/i/ca-pub-1851068468056357?href=https%3A%2F%2Fdeep-seek.ai%2Fzh%2Fchat&ers=2
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202606040101/show_ads_impl_fy2021.js
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
192.178.183.113 , United States, ASN15169 (GOOGLE - Google LLC, US),
Reverse DNS
lcfraw-in-f113.1e100.net
Software
ESF /
Resource Hash
7043276bddc97f513f8f168f8221439c524ae38e5a5e77c97885bc3869298e82
Security Headers
Name Value
Content-Security-Policy script-src 'report-sample' 'nonce-b3B4cYU8I07GMMf_h4kG2w' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/ContributorServingWebSwitchboardHttp/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com;report-uri /_/ContributorServingWebSwitchboardHttp/cspreport/allowlist, require-trusted-types-for 'script';report-uri /_/ContributorServingWebSwitchboardHttp/cspreport
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

content-encoding
gzip
x-content-type-options
nosniff
expires
Mon, 01 Jan 1990 00:00:00 GMT
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
date
Tue, 09 Jun 2026 13:35:43 GMT
content-type
application/javascript; charset=utf-8
x-frame-options
SAMEORIGIN
reporting-endpoints
default="/_/ContributorServingWebSwitchboardHttp/web-reports?context=eJzjytHikmJw15BiaL15jnUyEJcsOs_aBMRdQDwDiA0VLrHaA_GH-susP4C4SOIKawMQf6q6wSpQfYP1W7EvG0sJEL_1ZzMNCWRzBuKF0wLZVgKxiEEQmwwQn1odzHYJiIV4ONavXXCRTWDHtjunGJU0kvIL45Pz80qKMpNKS_KL0pLTUotTi8pSi-KNDIzMDMwMTPQMDOMLDACWsz06"
content-security-policy
script-src 'report-sample' 'nonce-b3B4cYU8I07GMMf_h4kG2w' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/ContributorServingWebSwitchboardHttp/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com;report-uri /_/ContributorServingWebSwitchboardHttp/cspreport/allowlist, require-trusted-types-for 'script';report-uri /_/ContributorServingWebSwitchboardHttp/cspreport
cache-control
no-cache, no-store, max-age=0, must-revalidate
timing-allow-origin
*
cross-origin-opener-policy
same-origin
pragma
no-cache
accept-ch
Sec-CH-UA-Arch, Sec-CH-UA-Bitness, Sec-CH-UA-Full-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Model, Sec-CH-UA-WoW64, Sec-CH-UA-Form-Factors, Sec-CH-UA-Platform, Sec-CH-UA-Platform-Version
cross-origin-resource-policy
cross-origin
permissions-policy
ch-ua-arch=*, ch-ua-bitness=*, ch-ua-full-version=*, ch-ua-full-version-list=*, ch-ua-model=*, ch-ua-wow64=*, ch-ua-form-factors=*, ch-ua-platform=*, ch-ua-platform-version=*
x-xss-protection
0
server
ESF
POST
H2
204
AGSKWxU-_sL7kfeEGpvV9xwyWtd54H9S0EHJcAd5rg6_5HlBj6Ou3B0wkRbsVhMuyo5EfSclOGcmsvYZethLkSC3CBhXkGEyXohzsLpL2hhUx8aHOq33JI5fPGCN-_nEvGgrIWC8vb-w Show response
fundingchoicesmessages.google.com/el/
0
366 B
621ms
128ms
XHR
text/html
192.178.183.113
Google LLC
General
Full URL
https://fundingchoicesmessages.google.com/el/AGSKWxU-_sL7kfeEGpvV9xwyWtd54H9S0EHJcAd5rg6_5HlBj6Ou3B0wkRbsVhMuyo5EfSclOGcmsvYZethLkSC3CBhXkGEyXohzsLpL2hhUx8aHOq33JI5fPGCN-_nEvGgrIWC8vb-w
Requested by
Host:
URL: /_/mss/boq-content-ads-contributor/_/js/k=boq-content-ads-contributor.ContributorServingResponseClientJs.fi.ySJDkEdgI8Q.es5.O/d=1/rs=AJlcJMwb9wcXLWCwF6Ed6XwlfdCw4tmo6A/m=kernel_loader,loader_js_executable
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
192.178.183.113 , United States, ASN15169 (GOOGLE - Google LLC, US),
Reverse DNS
lcfraw-in-f113.1e100.net
Software
ESF /
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
Security Headers
Name Value
Content-Security-Policy script-src 'report-sample' 'nonce-1-lsBRavME3RKDLPmp0HIw' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/ContributorLoggingHttp/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com;report-uri /_/ContributorLoggingHttp/cspreport/allowlist, require-trusted-types-for 'script';report-uri /_/ContributorLoggingHttp/cspreport
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
Content-Type
text/plain
sec-ch-ua-mobile
?0

Response headers

access-control-max-age
86400
access-control-allow-methods
POST, GET, OPTIONS
x-content-type-options
nosniff
expires
Mon, 01 Jan 1990 00:00:00 GMT
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
date
Tue, 09 Jun 2026 13:35:44 GMT
content-type
text/html; charset=utf-8
x-frame-options
SAMEORIGIN
reporting-endpoints
default="/_/ContributorLoggingHttp/web-reports?context=eJzjMtDikmII1JBi-FB_mfUHEJuGBLI5A_HCaYFsK4FYxCCITQaIT60OZrsExELcHBvWLrjIJvDj6lJ3JZek_ML45Py8ktS8Et3ElGJdELsoM6m0JL8IhZ1aBlKRk5-enpmXHm9kYGRmYGZgomdgGl9gAADlVy5p"
content-security-policy
script-src 'report-sample' 'nonce-1-lsBRavME3RKDLPmp0HIw' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/ContributorLoggingHttp/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com;report-uri /_/ContributorLoggingHttp/cspreport/allowlist, require-trusted-types-for 'script';report-uri /_/ContributorLoggingHttp/cspreport
cache-control
no-cache, no-store, max-age=0, must-revalidate
cross-origin-opener-policy
same-origin
pragma
no-cache
accept-ch
Sec-CH-UA-Arch, Sec-CH-UA-Bitness, Sec-CH-UA-Full-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Model, Sec-CH-UA-WoW64, Sec-CH-UA-Form-Factors, Sec-CH-UA-Platform, Sec-CH-UA-Platform-Version
access-control-allow-credentials
true
permissions-policy
ch-ua-arch=*, ch-ua-bitness=*, ch-ua-full-version=*, ch-ua-full-version-list=*, ch-ua-model=*, ch-ua-wow64=*, ch-ua-form-factors=*, ch-ua-platform=*, ch-ua-platform-version=*
access-control-allow-origin
https://deep-seek.ai
content-length
0
x-xss-protection
0
server
ESF
POST
H2
204
AGSKWxU-_sL7kfeEGpvV9xwyWtd54H9S0EHJcAd5rg6_5HlBj6Ou3B0wkRbsVhMuyo5EfSclOGcmsvYZethLkSC3CBhXkGEyXohzsLpL2hhUx8aHOq33JI5fPGCN-_nEvGgrIWC8vb-w Show response
fundingchoicesmessages.google.com/el/
0
376 B
619ms
126ms
XHR
text/html
192.178.183.113
Google LLC
General
Full URL
https://fundingchoicesmessages.google.com/el/AGSKWxU-_sL7kfeEGpvV9xwyWtd54H9S0EHJcAd5rg6_5HlBj6Ou3B0wkRbsVhMuyo5EfSclOGcmsvYZethLkSC3CBhXkGEyXohzsLpL2hhUx8aHOq33JI5fPGCN-_nEvGgrIWC8vb-w
Requested by
Host:
URL: /_/mss/boq-content-ads-contributor/_/js/k=boq-content-ads-contributor.ContributorServingResponseClientJs.fi.ySJDkEdgI8Q.es5.O/d=1/rs=AJlcJMwb9wcXLWCwF6Ed6XwlfdCw4tmo6A/m=kernel_loader,loader_js_executable
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
192.178.183.113 , United States, ASN15169 (GOOGLE - Google LLC, US),
Reverse DNS
lcfraw-in-f113.1e100.net
Software
ESF /
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
Security Headers
Name Value
Content-Security-Policy require-trusted-types-for 'script';report-uri /_/ContributorLoggingHttp/cspreport, script-src 'report-sample' 'nonce-d9sBJ1ACvrDHConI-O33Dg' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/ContributorLoggingHttp/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com;report-uri /_/ContributorLoggingHttp/cspreport/allowlist
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
Content-Type
text/plain
sec-ch-ua-mobile
?0

Response headers

access-control-max-age
86400
access-control-allow-methods
POST, GET, OPTIONS
x-content-type-options
nosniff
expires
Mon, 01 Jan 1990 00:00:00 GMT
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
date
Tue, 09 Jun 2026 13:35:44 GMT
content-type
text/html; charset=utf-8
x-frame-options
SAMEORIGIN
reporting-endpoints
default="/_/ContributorLoggingHttp/web-reports?context=eJzjMtDikmJw1pBi-FB_mfUHEJuGBLI5A_HCaYFsK4FYxCCITQaIT60OZrsExELcHBvWLrjIJnCgs8tDySUpvzA-OT-vJDWvRDcxpVgXxC7KTCotyS9CYaeWgVTk5KenZ-alxxsZGJkZmBmY6BmYxhcYAACxOC29"
content-security-policy
require-trusted-types-for 'script';report-uri /_/ContributorLoggingHttp/cspreport, script-src 'report-sample' 'nonce-d9sBJ1ACvrDHConI-O33Dg' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/ContributorLoggingHttp/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com;report-uri /_/ContributorLoggingHttp/cspreport/allowlist
cache-control
no-cache, no-store, max-age=0, must-revalidate
cross-origin-opener-policy
same-origin
pragma
no-cache
accept-ch
Sec-CH-UA-Arch, Sec-CH-UA-Bitness, Sec-CH-UA-Full-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Model, Sec-CH-UA-WoW64, Sec-CH-UA-Form-Factors, Sec-CH-UA-Platform, Sec-CH-UA-Platform-Version
access-control-allow-credentials
true
permissions-policy
ch-ua-arch=*, ch-ua-bitness=*, ch-ua-full-version=*, ch-ua-full-version-list=*, ch-ua-model=*, ch-ua-wow64=*, ch-ua-form-factors=*, ch-ua-platform=*, ch-ua-platform-version=*
access-control-allow-origin
https://deep-seek.ai
content-length
0
x-xss-protection
0
server
ESF
POST
H2
204
AGSKWxU-_sL7kfeEGpvV9xwyWtd54H9S0EHJcAd5rg6_5HlBj6Ou3B0wkRbsVhMuyo5EfSclOGcmsvYZethLkSC3CBhXkGEyXohzsLpL2hhUx8aHOq33JI5fPGCN-_nEvGgrIWC8vb-w Show response
fundingchoicesmessages.google.com/el/
0
367 B
612ms
124ms
XHR
text/html
192.178.183.113
Google LLC
General
Full URL
https://fundingchoicesmessages.google.com/el/AGSKWxU-_sL7kfeEGpvV9xwyWtd54H9S0EHJcAd5rg6_5HlBj6Ou3B0wkRbsVhMuyo5EfSclOGcmsvYZethLkSC3CBhXkGEyXohzsLpL2hhUx8aHOq33JI5fPGCN-_nEvGgrIWC8vb-w
Requested by
Host:
URL: /_/mss/boq-content-ads-contributor/_/js/k=boq-content-ads-contributor.ContributorServingResponseClientJs.fi.ySJDkEdgI8Q.es5.O/d=1/rs=AJlcJMwb9wcXLWCwF6Ed6XwlfdCw4tmo6A/m=kernel_loader,loader_js_executable
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
192.178.183.113 , United States, ASN15169 (GOOGLE - Google LLC, US),
Reverse DNS
lcfraw-in-f113.1e100.net
Software
ESF /
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
Security Headers
Name Value
Content-Security-Policy require-trusted-types-for 'script';report-uri /_/ContributorLoggingHttp/cspreport, script-src 'report-sample' 'nonce-MY0ZE9OlultKPC5qIZGQFA' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/ContributorLoggingHttp/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com;report-uri /_/ContributorLoggingHttp/cspreport/allowlist
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
Content-Type
text/plain
sec-ch-ua-mobile
?0

Response headers

access-control-max-age
86400
access-control-allow-methods
POST, GET, OPTIONS
x-content-type-options
nosniff
expires
Mon, 01 Jan 1990 00:00:00 GMT
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
date
Tue, 09 Jun 2026 13:35:44 GMT
content-type
text/html; charset=utf-8
x-frame-options
SAMEORIGIN
reporting-endpoints
default="/_/ContributorLoggingHttp/web-reports?context=eJzjMtDikmLw1ZBi-FB_mfUHEJuGBLI5A_HCaYFsK4FYxCCITQaIT60OZrsExELcHBvWLrjIJjDh1kJ3JZek_ML45Py8ktS8Et3ElGJdELsoM6m0JL8IhZ1aBlKRk5-enpmXHm9kYGRmYGZgomdgGl9gAADFmC3-"
content-security-policy
require-trusted-types-for 'script';report-uri /_/ContributorLoggingHttp/cspreport, script-src 'report-sample' 'nonce-MY0ZE9OlultKPC5qIZGQFA' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/ContributorLoggingHttp/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com;report-uri /_/ContributorLoggingHttp/cspreport/allowlist
cache-control
no-cache, no-store, max-age=0, must-revalidate
cross-origin-opener-policy
same-origin
pragma
no-cache
accept-ch
Sec-CH-UA-Arch, Sec-CH-UA-Bitness, Sec-CH-UA-Full-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Model, Sec-CH-UA-WoW64, Sec-CH-UA-Form-Factors, Sec-CH-UA-Platform, Sec-CH-UA-Platform-Version
access-control-allow-credentials
true
permissions-policy
ch-ua-arch=*, ch-ua-bitness=*, ch-ua-full-version=*, ch-ua-full-version-list=*, ch-ua-model=*, ch-ua-wow64=*, ch-ua-form-factors=*, ch-ua-platform=*, ch-ua-platform-version=*
access-control-allow-origin
https://deep-seek.ai
content-length
0
x-xss-protection
0
server
ESF
GET
H2
200
AGSKWxUnp5tF68BI4VIKLjpKaLptv69cPzWByoECUTNUywnC--RFYFieo6e8qdU-WG3ilL9hd2iFPxZxXX7Y78QoAOiQ2XECwxyrjTUXrLoeUZXPwDwcHCYUgY6G_CDVbdTqx3qKax3n Show response
fundingchoicesmessages.google.com/f/
520 KB
71 KB
169ms
169ms
Script
application/javascript
192.178.183.113
Google LLC
General
Full URL
https://fundingchoicesmessages.google.com/f/AGSKWxUnp5tF68BI4VIKLjpKaLptv69cPzWByoECUTNUywnC--RFYFieo6e8qdU-WG3ilL9hd2iFPxZxXX7Y78QoAOiQ2XECwxyrjTUXrLoeUZXPwDwcHCYUgY6G_CDVbdTqx3qKax3n?fccs=W251bGwsbnVsbCxudWxsLG51bGwsbnVsbCxudWxsLFsxNzgxMDEyMTQzLDU5MjAwMDAwMF0sbnVsbCxudWxsLG51bGwsW251bGwsWzddXSwiaHR0cHM6Ly9kZWVwLXNlZWsuYWkvemgvY2hhdCIsbnVsbCxbWzgsInlTSkRrRWRnSThRIl0sWzksImZpIl0sWzE4LCJbW1tudWxsLDI2NDBdXV0iXSxbMzUsIjE3ODEwMTIxNDMiXSxbMjYsIjEiXSxbMzMsIjEyIl0sWzE5LCIxIl0sWzE3LCJbMF0iXSxbMjQsIiJdLFsyNSwiW1szMTA5NzYwMl1dIl0sWzI5LCJmYWxzZSJdXV0
Requested by
Host:
URL: /_/mss/boq-content-ads-contributor/_/js/k=boq-content-ads-contributor.ContributorServingResponseClientJs.fi.ySJDkEdgI8Q.es5.O/d=1/rs=AJlcJMwb9wcXLWCwF6Ed6XwlfdCw4tmo6A/m=kernel_loader,loader_js_executable
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
192.178.183.113 , United States, ASN15169 (GOOGLE - Google LLC, US),
Reverse DNS
lcfraw-in-f113.1e100.net
Software
ESF /
Resource Hash
b93af7ba9742e34cbc54c62ca29cc24a423e399288d3ed27efd4e4c73537dbb5
Security Headers
Name Value
Content-Security-Policy require-trusted-types-for 'script';report-uri /_/ContributorServingWebSwitchboardHttp/cspreport, script-src 'report-sample' 'nonce-qSi_6cKb0HPzAA1BfxpxAw' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/ContributorServingWebSwitchboardHttp/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com;report-uri /_/ContributorServingWebSwitchboardHttp/cspreport/allowlist
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

content-encoding
gzip
x-content-type-options
nosniff
expires
Mon, 01 Jan 1990 00:00:00 GMT
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
date
Tue, 09 Jun 2026 13:35:43 GMT
content-type
application/javascript; charset=utf-8
x-frame-options
SAMEORIGIN
reporting-endpoints
default="/_/ContributorServingWebSwitchboardHttp/web-reports?context=eJzjytHikmII0pBiaL15jnUyEJcsOs_aBMRdQDwDiA0VLrHaA_GH-susP4C4SOIKawMQf6q6wSpQfYP1W7EvG0sJEL_1ZzMNCWRzBuKF0wLZVgKxiEEQmwwQn1odzHYJiIV4ONavXXCRTWDC7d1XmJQ0kvIL45Pz80qKMpNKS_KL0pLTUotTi8pSi-KNDIzMDMwMTPQMDOMLDACY9z0s"
content-security-policy
require-trusted-types-for 'script';report-uri /_/ContributorServingWebSwitchboardHttp/cspreport, script-src 'report-sample' 'nonce-qSi_6cKb0HPzAA1BfxpxAw' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/ContributorServingWebSwitchboardHttp/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com;report-uri /_/ContributorServingWebSwitchboardHttp/cspreport/allowlist
cache-control
no-cache, no-store, max-age=0, must-revalidate
timing-allow-origin
*
cross-origin-opener-policy
same-origin
pragma
no-cache
accept-ch
Sec-CH-UA-Arch, Sec-CH-UA-Bitness, Sec-CH-UA-Full-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Model, Sec-CH-UA-WoW64, Sec-CH-UA-Form-Factors, Sec-CH-UA-Platform, Sec-CH-UA-Platform-Version
cross-origin-resource-policy
cross-origin
permissions-policy
ch-ua-arch=*, ch-ua-bitness=*, ch-ua-full-version=*, ch-ua-full-version-list=*, ch-ua-model=*, ch-ua-wow64=*, ch-ua-form-factors=*, ch-ua-platform=*, ch-ua-platform-version=*
x-xss-protection
0
server
ESF
GET
H2
200
css
fonts.googleapis.com/
123 KB
6 KB
109ms
108ms
Stylesheet
text/css
142.251.13.95
Google LLC
General
Full URL
https://fonts.googleapis.com/css?family=Archivo:400,500|Arimo:400,500|Bitter:400,500|EB+Garamond:400,500|Lato|Libre+Baskervill|Libre+Franklin:400,500|Lora:400,500|Google+Sans:regular,medium:400,500|Material+Icons|Google+Symbols|Merriweather|Montserrat:400,500|Mukta:400,500|Muli:400,500|Nunito:400,500|Open+Sans:400,500,600|Open+Sans+Condensed:400,600|Oswald:500|Playfair+Display:400,500|Poppins:400,500|Raleway:400,500|Roboto:400,500|Roboto+Condensed:400,500|Roboto+Slab:400,500|Slabo+27px|Source+Sans+Pro|Ubuntu:400,500|Volkhov&display=swap
Requested by
Host:
URL: /_/mss/boq-content-ads-contributor/_/js/k=boq-content-ads-contributor.ContributorServingResponseClientJs.fi.ySJDkEdgI8Q.es5.O/d=1/exm=kernel_loader,loader_js_executable/ed=1/rs=AJlcJMwb9wcXLWCwF6Ed6XwlfdCw4tmo6A/m=web_iab_tcf_v2_wall_executable
Protocol
H2
Security
TLS 1.3, , AES_256_GCM
Server
142.251.13.95 , United States, ASN15169 (GOOGLE - Google LLC, US),
Reverse DNS
wt-in-f95.1e100.net
Software
ESF /
Resource Hash
b3d83ccbd5939915ee2c348d17bf8c13dd81decd84ab6a74b2c96367b5f18015
Security Headers
Name Value
Strict-Transport-Security max-age=31536000
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

content-encoding
gzip
x-content-type-options
nosniff
expires
Tue, 09 Jun 2026 13:35:43 GMT
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
date
Tue, 09 Jun 2026 13:35:43 GMT
content-type
text/css; charset=utf-8
vary
Sec-Fetch-Dest, Sec-Fetch-Mode, Sec-Fetch-Site
last-modified
Tue, 09 Jun 2026 13:35:43 GMT
x-frame-options
SAMEORIGIN
strict-transport-security
max-age=31536000
link
<https://fonts.gstatic.com>; rel=preconnect; crossorigin
cache-control
private, max-age=86400, stale-while-revalidate=604800
timing-allow-origin
*
cross-origin-opener-policy
same-origin-allow-popups
cross-origin-resource-policy
cross-origin
access-control-allow-origin
*
x-xss-protection
0
server
ESF
GET
H2
200
memvYaGs126MiZpBA-UvWbX2vVnXBbObj2OVTS-muw.woff2
fonts.gstatic.com/s/opensans/v40/
47 KB
47 KB
77ms
76ms
Font
font/woff2
142.251.14.94
Google LLC
General
Full URL
https://fonts.gstatic.com/s/opensans/v40/memvYaGs126MiZpBA-UvWbX2vVnXBbObj2OVTS-muw.woff2
Requested by
Host: deep-seek.ai
URL: https://deep-seek.ai/zh/chat
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
142.251.14.94 , United States, ASN15169 (GOOGLE - Google LLC, US),
Reverse DNS
pm-in-f94.1e100.net
Software
sffe /
Resource Hash
3c4d6a1421c7ddb7e404521fe8c4cd5be5af446d7689cd880be26612eaad3cfa
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Origin
https://deep-seek.ai
sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

age
404490
report-to
{"group":"apps-themes","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/apps-themes"}]}
x-content-type-options
nosniff
expires
Fri, 04 Jun 2027 21:14:13 GMT
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
date
Thu, 04 Jun 2026 21:14:13 GMT
last-modified
Thu, 14 Dec 2023 02:08:40 GMT
content-type
font/woff2
cache-control
public, max-age=31536000
timing-allow-origin
*
cross-origin-opener-policy
same-origin; report-to="apps-themes"
cross-origin-resource-policy
cross-origin
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/apps-themes
accept-ranges
bytes
access-control-allow-origin
*
content-length
48236
x-xss-protection
0
server
sffe
POST
H2
204
AGSKWxU-_sL7kfeEGpvV9xwyWtd54H9S0EHJcAd5rg6_5HlBj6Ou3B0wkRbsVhMuyo5EfSclOGcmsvYZethLkSC3CBhXkGEyXohzsLpL2hhUx8aHOq33JI5fPGCN-_nEvGgrIWC8vb-w Show response
fundingchoicesmessages.google.com/el/
0
366 B
322ms
127ms
XHR
text/html
192.178.183.113
Google LLC
General
Full URL
https://fundingchoicesmessages.google.com/el/AGSKWxU-_sL7kfeEGpvV9xwyWtd54H9S0EHJcAd5rg6_5HlBj6Ou3B0wkRbsVhMuyo5EfSclOGcmsvYZethLkSC3CBhXkGEyXohzsLpL2hhUx8aHOq33JI5fPGCN-_nEvGgrIWC8vb-w
Requested by
Host:
URL: /_/mss/boq-content-ads-contributor/_/js/k=boq-content-ads-contributor.ContributorServingResponseClientJs.fi.ySJDkEdgI8Q.es5.O/d=1/rs=AJlcJMwb9wcXLWCwF6Ed6XwlfdCw4tmo6A/m=kernel_loader,loader_js_executable
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
192.178.183.113 , United States, ASN15169 (GOOGLE - Google LLC, US),
Reverse DNS
lcfraw-in-f113.1e100.net
Software
ESF /
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
Security Headers
Name Value
Content-Security-Policy require-trusted-types-for 'script';report-uri /_/ContributorLoggingHttp/cspreport, script-src 'report-sample' 'nonce-d_ssvgh-zMqyUi5_wIaH3g' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/ContributorLoggingHttp/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com;report-uri /_/ContributorLoggingHttp/cspreport/allowlist
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
Content-Type
text/plain
sec-ch-ua-mobile
?0

Response headers

access-control-max-age
86400
access-control-allow-methods
POST, GET, OPTIONS
x-content-type-options
nosniff
expires
Mon, 01 Jan 1990 00:00:00 GMT
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
date
Tue, 09 Jun 2026 13:35:44 GMT
content-type
text/html; charset=utf-8
x-frame-options
SAMEORIGIN
reporting-endpoints
default="/_/ContributorLoggingHttp/web-reports?context=eJzjMtDikmLw15Bi-FB_mfUHEJuGBLI5A_HCaYFsK4FYxCCITQaIT60OZrsExELcHBvWLrjIJrBiZau7kktSfmF8cn5eSWpeiW5iSrEuiF2UmVRakl-Ewk4tA6nIyU9Pz8xLjzcyMDIzMDMw0TMwjS8wAAC3rS3L"
content-security-policy
require-trusted-types-for 'script';report-uri /_/ContributorLoggingHttp/cspreport, script-src 'report-sample' 'nonce-d_ssvgh-zMqyUi5_wIaH3g' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/ContributorLoggingHttp/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com;report-uri /_/ContributorLoggingHttp/cspreport/allowlist
cache-control
no-cache, no-store, max-age=0, must-revalidate
cross-origin-opener-policy
same-origin
pragma
no-cache
accept-ch
Sec-CH-UA-Arch, Sec-CH-UA-Bitness, Sec-CH-UA-Full-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Model, Sec-CH-UA-WoW64, Sec-CH-UA-Form-Factors, Sec-CH-UA-Platform, Sec-CH-UA-Platform-Version
access-control-allow-credentials
true
permissions-policy
ch-ua-arch=*, ch-ua-bitness=*, ch-ua-full-version=*, ch-ua-full-version-list=*, ch-ua-model=*, ch-ua-wow64=*, ch-ua-form-factors=*, ch-ua-platform=*, ch-ua-platform-version=*
access-control-allow-origin
https://deep-seek.ai
content-length
0
x-xss-protection
0
server
ESF
POST
H2
204
AGSKWxU-_sL7kfeEGpvV9xwyWtd54H9S0EHJcAd5rg6_5HlBj6Ou3B0wkRbsVhMuyo5EfSclOGcmsvYZethLkSC3CBhXkGEyXohzsLpL2hhUx8aHOq33JI5fPGCN-_nEvGgrIWC8vb-w Show response
fundingchoicesmessages.google.com/el/
0
376 B
324ms
129ms
XHR
text/html
192.178.183.113
Google LLC
General
Full URL
https://fundingchoicesmessages.google.com/el/AGSKWxU-_sL7kfeEGpvV9xwyWtd54H9S0EHJcAd5rg6_5HlBj6Ou3B0wkRbsVhMuyo5EfSclOGcmsvYZethLkSC3CBhXkGEyXohzsLpL2hhUx8aHOq33JI5fPGCN-_nEvGgrIWC8vb-w
Requested by
Host:
URL: /_/mss/boq-content-ads-contributor/_/js/k=boq-content-ads-contributor.ContributorServingResponseClientJs.fi.ySJDkEdgI8Q.es5.O/d=1/rs=AJlcJMwb9wcXLWCwF6Ed6XwlfdCw4tmo6A/m=kernel_loader,loader_js_executable
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
192.178.183.113 , United States, ASN15169 (GOOGLE - Google LLC, US),
Reverse DNS
lcfraw-in-f113.1e100.net
Software
ESF /
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
Security Headers
Name Value
Content-Security-Policy require-trusted-types-for 'script';report-uri /_/ContributorLoggingHttp/cspreport, script-src 'report-sample' 'nonce-EAZJ6l6UmKxDnfj0n6WbMg' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/ContributorLoggingHttp/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com;report-uri /_/ContributorLoggingHttp/cspreport/allowlist
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
Content-Type
text/plain
sec-ch-ua-mobile
?0

Response headers

access-control-max-age
86400
access-control-allow-methods
POST, GET, OPTIONS
x-content-type-options
nosniff
expires
Mon, 01 Jan 1990 00:00:00 GMT
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
date
Tue, 09 Jun 2026 13:35:44 GMT
content-type
text/html; charset=utf-8
x-frame-options
SAMEORIGIN
reporting-endpoints
default="/_/ContributorLoggingHttp/web-reports?context=eJzjMtDikmJw1JBi-FB_mfUHEJuGBLI5A_HCaYFsK4FYxCCITQaIT60OZrsExELcHBvWLrjIJtCxc46HkktSfmF8cn5eSWpeiW5iSrEuiF2UmVRakl-Ewk4tA6nIyU9Pz8xLjzcyMDIzMDMw0TMwjS8wAACyyi3F"
content-security-policy
require-trusted-types-for 'script';report-uri /_/ContributorLoggingHttp/cspreport, script-src 'report-sample' 'nonce-EAZJ6l6UmKxDnfj0n6WbMg' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/ContributorLoggingHttp/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com;report-uri /_/ContributorLoggingHttp/cspreport/allowlist
cache-control
no-cache, no-store, max-age=0, must-revalidate
cross-origin-opener-policy
same-origin
pragma
no-cache
accept-ch
Sec-CH-UA-Arch, Sec-CH-UA-Bitness, Sec-CH-UA-Full-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Model, Sec-CH-UA-WoW64, Sec-CH-UA-Form-Factors, Sec-CH-UA-Platform, Sec-CH-UA-Platform-Version
access-control-allow-credentials
true
permissions-policy
ch-ua-arch=*, ch-ua-bitness=*, ch-ua-full-version=*, ch-ua-full-version-list=*, ch-ua-model=*, ch-ua-wow64=*, ch-ua-form-factors=*, ch-ua-platform=*, ch-ua-platform-version=*
access-control-allow-origin
https://deep-seek.ai
content-length
0
x-xss-protection
0
server
ESF
POST
H2
204
AGSKWxU-_sL7kfeEGpvV9xwyWtd54H9S0EHJcAd5rg6_5HlBj6Ou3B0wkRbsVhMuyo5EfSclOGcmsvYZethLkSC3CBhXkGEyXohzsLpL2hhUx8aHOq33JI5fPGCN-_nEvGgrIWC8vb-w Show response
fundingchoicesmessages.google.com/el/
0
1 KB
317ms
121ms
XHR
text/html
192.178.183.113
Google LLC
General
Full URL
https://fundingchoicesmessages.google.com/el/AGSKWxU-_sL7kfeEGpvV9xwyWtd54H9S0EHJcAd5rg6_5HlBj6Ou3B0wkRbsVhMuyo5EfSclOGcmsvYZethLkSC3CBhXkGEyXohzsLpL2hhUx8aHOq33JI5fPGCN-_nEvGgrIWC8vb-w
Requested by
Host:
URL: /_/mss/boq-content-ads-contributor/_/js/k=boq-content-ads-contributor.ContributorServingResponseClientJs.fi.ySJDkEdgI8Q.es5.O/d=1/rs=AJlcJMwb9wcXLWCwF6Ed6XwlfdCw4tmo6A/m=kernel_loader,loader_js_executable
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
192.178.183.113 , United States, ASN15169 (GOOGLE - Google LLC, US),
Reverse DNS
lcfraw-in-f113.1e100.net
Software
ESF /
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
Security Headers
Name Value
Content-Security-Policy require-trusted-types-for 'script';report-uri /_/ContributorLoggingHttp/cspreport, script-src 'report-sample' 'nonce-TmEEOpnlgeSTpyRTMN3gZQ' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/ContributorLoggingHttp/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com;report-uri /_/ContributorLoggingHttp/cspreport/allowlist
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
Content-Type
text/plain
sec-ch-ua-mobile
?0

Response headers

access-control-max-age
86400
access-control-allow-methods
POST, GET, OPTIONS
x-content-type-options
nosniff
expires
Mon, 01 Jan 1990 00:00:00 GMT
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
date
Tue, 09 Jun 2026 13:35:44 GMT
content-type
text/html; charset=utf-8
x-frame-options
SAMEORIGIN
reporting-endpoints
default="/_/ContributorLoggingHttp/web-reports?context=eJzjstDikmLw05BiOHnrNtNFIP5Qf5n1BxCbhgSyOQPxwmmBbCuBWMQgiE0GiE-tDma7BMRC3Bwb1i64yCYw40mju5JLUn5hfHJ-XklqXoluYkqxLohdlJlUWpJfhMJOLQOpyMlPT8_MS483MjAyMzAzMNEzMI0vMAAAU2IzAQ"
content-security-policy
require-trusted-types-for 'script';report-uri /_/ContributorLoggingHttp/cspreport, script-src 'report-sample' 'nonce-TmEEOpnlgeSTpyRTMN3gZQ' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/ContributorLoggingHttp/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com;report-uri /_/ContributorLoggingHttp/cspreport/allowlist
cache-control
no-cache, no-store, max-age=0, must-revalidate
cross-origin-opener-policy
same-origin
pragma
no-cache
accept-ch
Sec-CH-UA-Arch, Sec-CH-UA-Bitness, Sec-CH-UA-Full-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Model, Sec-CH-UA-WoW64, Sec-CH-UA-Form-Factors, Sec-CH-UA-Platform, Sec-CH-UA-Platform-Version
access-control-allow-credentials
true
permissions-policy
ch-ua-arch=*, ch-ua-bitness=*, ch-ua-full-version=*, ch-ua-full-version-list=*, ch-ua-model=*, ch-ua-wow64=*, ch-ua-form-factors=*, ch-ua-platform=*, ch-ua-platform-version=*
access-control-allow-origin
https://deep-seek.ai
content-length
0
x-xss-protection
0
server
ESF
GET
H/1.1
200
OK
favicon.ico
deep-seek.ai/
15 KB
2 KB
193ms
193ms
Other
image/x-icon
205.196.81.104
VOLICO
General
Full URL
https://deep-seek.ai/favicon.ico
Protocol
HTTP/1.1
Security
TLS 1.2, ECDHE_RSA, CHACHA20_POLY1305
Server
205.196.81.104 Miami, United States, ASN33724 (BIZNESSHOSTING-DBA-VOLICO - VOLICO, US),
Reverse DNS
s1d71a3de.fastvps-server.com
Software
nginx/1.22.0 /
Resource Hash
48c741b8d0490fce8b278568d9ac4f87e1cc04d663f1ccb1b7a2d4cc031d70f3

Request headers

sec-ch-ua-platform
"Linux"
Referer
https://deep-seek.ai/zh/chat
User-Agent
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
sec-ch-ua
"Chromium";v="149", "Google Chrome";v="149", "Not-A.Brand";v="24"
sec-ch-ua-mobile
?0

Response headers

Transfer-Encoding
chunked
Cache-Control
max-age=2592000
Content-Encoding
gzip
ETag
W/"69e0f3cd-3aee"
Connection
keep-alive
Expires
Thu, 09 Jul 2026 13:35:44 GMT
Date
Tue, 09 Jun 2026 13:35:44 GMT
Content-Type
image/x-icon
Last-Modified
Thu, 16 Apr 2026 14:35:57 GMT
Server
nginx/1.22.0
POST

collect
region1.google-analytics.com/g/
0
0


Failed requests

These URLs were requested, but there was no response received. You will also see them in the list above.

Domain
region1.google-analytics.com
URL
https://region1.google-analytics.com/g/collect?v=2&tid=G-C2YCJFV9N4&gtm=45je6631v9205195640za200zd9205195640&_p=1781012142482&gcd=13l3l3l2l1l1&npa=1&dma_cps=a&dma=1&_eu=AEAAAAQ&ae=a&are=1&cid=1827365865.1781012143&frm=0&pscdl=noapi&rcb=0&sr=1600x1200&uaa=x86&uab=64&uafvl=Chromium%3B149.0.0.0%7CGoogle%2520Chrome%3B149.0.0.0%7CNot-A.Brand%3B24.0.0.0&uam=&uamb=0&uap=Linux&uapv=&uaw=0&ul=fi-fi&_s=2&tag_exp=0~115938466~115938469&sid=1781012142&sct=1&seg=0&dl=https%3A%2F%2Fdeep-seek.ai%2Fzh%2Fchat&dt=DeepSeek%20AI%20%E2%80%93%20DeepSeek-V4%E9%A9%B1%E5%8A%A8%E7%9A%84%E5%85%8D%E8%B4%B9%E8%81%8A%E5%A4%A9&en=scroll&epn.percent_scrolled=90&_et=2&tfd=7415

Verdicts & Comments Add Verdict or Comment

76 JavaScript Window variables

These are the non-standard variables defined on the window object. These include var declarations and global functions and can be helpful in identifying possible client-side frameworks and code.

object| 0 object| 1 object| 2 object| 3 object| google_js_reporting_queue number| google_srt boolean| BGtEY object| google_logging_queue object| ggeac object| google_persistent_state_async object| google_tag_data object| google_reactive_ads_global_state object| google_ad_modifications object| adsbygoogle object| google_sa_queue function| google_process_slots number| google_unique_id number| google_rum_task_id_counter string| google_user_agent_client_hint object| hljs object| katex object| marked object| React object| ReactDOM object| __RU_PROMO__ object| __CHAT_MODELS__ string| __CHAT_SITE_NAME__ string| __CHAT_LOGO__ string| __CHAT_LANG__ function| renderInputTabs function| getModelChatUrl object| LIMIT_I18N function| getLimitText function| t function| genId function| loadChats function| saveChats function| renderRich function| RichContent object| PROMPTS_I18N function| pickRandom function| TypingCarousel function| EmptyState function| TypingIndicator function| MessageBubble function| RuAdBlock object| APP_AD_TEXT function| AppAdBlock function| InputArea function| SettingsPopup function| Sidebar function| PromoPopup function| App function| copyCode function| gtag object| dataLayer object| google_tag_manager function| onYouTubeIframeAPIReady object| gaGlobal function| google_sa_impl object| googlefc boolean| adsbygoogle_ama_fc_has_run boolean| googFloatingToolbarManagerAsyncPositionUpdate object| default_ContributorServingResponseClientJs object| _F_toggles_default_ContributorServingResponseClientJs object| __googlefc string| __fcInvoked string| __fcexpdef string| MjUwZTcxZWMxZTM1ODhmbG9hZGVyX2pz string| MjUwZTcxZWMxZTM1ODhmY2FjaGVkX2pz object| __fcInternalApiManager boolean| __fcInternalApiPostMessageReady object| __tcfapiEventListeners function| __tcfapi object| __tcfapiManager boolean| __tcfapiPostMessageReady

5 Cookies

Cookies are little pieces of information stored in the browser of a user. Whenever a user visits the site again, he will also send his cookie values, thus allowing the website to re-identify him even if he changed locations. This is how permanent logins work.

Domain/Path Expires Name / Value
deep-seek.ai/ 1970-01-21
14:43:39
Name: XSRF-TOKEN
Value: eyJpdiI6ImZ3bFZ6R2lRQ1gzMTM4T3E3b2cwMGc9PSIsInZhbHVlIjoiNXBQOWY0WmxNNlZlMFFUdmpsQ3FiQXJjWjlYbmpEb2lhUkpDN1M0dDdoVjlpaGtVemdZWVBpOE1kVmwzMjdsem0ySG1QbHh5cXVGdkxrbDExUnl5VnpPRUdGS0g3ZkxGVjJPalByVnV4SzVMZXQzcDFSdk53L0kyQW90SWRxTXMiLCJtYWMiOiI2ZmUyNTE5NzFkM2ZmMmQ5ZDY0MDZiYjFmZGVkNzVlN2NiYzE1M2IzNzMzMGI1YzFlYzc4M2ZiZTk5ZDZkODg4IiwidGFnIjoiIn0%3D
deep-seek.ai/ 1970-01-21
14:43:39
Name: deepseek_session
Value: eyJpdiI6IkFkTVhwb2xSeTdNZWNYTkZCVlNyTVE9PSIsInZhbHVlIjoiUWhIQlIyQzRtNEorT2taOW9hVHpsV2E0SGpPeSt0dXRvNEZNNXdwa1V2WVdGUEZDMXhERncwcUFtcDNUa1V1ei8rWENUWElieW03cFpISis5cVVNOUg1WGNITGM3TTB2c0xLeTZaOUVDZ3ZsaTVHM1RncmplYjVhdFduWGpuSUsiLCJtYWMiOiJkYWZhYTE0NTU3MDgyYjBiZTQ0YzZiNzVjZDNlNTU4MDBmMjkxOThjYjA4MTZmYTE2ZGU3ODg1MGFlNzkxZDEwIiwidGFnIjoiIn0%3D
.deep-seek.ai/ 1970-01-22
00:19:32
Name: _ga
Value: GA1.1.1827365865.1781012143
.deep-seek.ai/ 1970-01-22
00:19:32
Name: _ga_C2YCJFV9N4
Value: GS2.1.s1781012142$o1$g0$t1781012142$j60$l0$h0
.deep-seek.ai/ 1970-01-22
00:05:08
Name: FCCDCF
Value: %5Bnull%2Cnull%2Cnull%2Cnull%2Cnull%2Cnull%2C%5B%5B32%2C%22%5B%5C%227a15bae3-5087-4b45-a561-b54ef20d5fed%5C%22%2C%5B1781012143%2C577000000%5D%5D%22%5D%5D%5D

Indicators

This is a term in the security industry to describe indicators such as IPs, Domains, Hashes, etc. This does not imply that any of these indicate malicious activity.

deep-seek.ai
deepseek.net
fonts.googleapis.com
fonts.gstatic.com
fundingchoicesmessages.google.com
pagead2.googlesyndication.com
region1.google-analytics.com
www.googletagmanager.com
region1.google-analytics.com
142.251.110.155
142.251.110.97
142.251.13.95
142.251.14.94
192.178.183.113
205.196.81.104
216.239.34.36
65.108.76.151
1db9fc869c05890d35ab52d36372fa7cb1d0a4f066da94ac80333f6f68f9c456
30dcc627f9e900ed1ada401308a8b56c462c45a3bb70b4a0c6b98ebeb0858301
3100e775e8616cd2611beecfa23a4263d7037586789b43f035236a2e6fbd4c62
35f4f974f4b2bcd44da73963347f8952e341f83909e4498227d4e26b98f66f0d
392c29ae699c9b4a24ec944fdb9ab6d59bd5e2167d5b37eaeac61f0fda5fd676
3a9a5def8b9c311e5ae43abde85c63133185eed4f0d9f67fea4b00a8308cf066
3c4d6a1421c7ddb7e404521fe8c4cd5be5af446d7689cd880be26612eaad3cfa
3e7e7d7feb3e5d58cb6c804f68ab5c24cc7e5eb6270fd6e5cbb9124739217d0c
48c741b8d0490fce8b278568d9ac4f87e1cc04d663f1ccb1b7a2d4cc031d70f3
6d336241b9f3e27e0257970a924414bb7aeb41576390dc5d2d86204410bfb21a
7043276bddc97f513f8f168f8221439c524ae38e5a5e77c97885bc3869298e82
7bf14b633a980303b38e85c1ad6acdaa05bcbeee0f0deb18b96668f849ad102b
837a6fa5b0c736b52bbde2b2b6190f305da3fc9ed41681db5321507057b5c846
8446856873151667ccd195086c5fbdfbb09f4bbc59dcd245755e25bbdfccefb4
863811e2baa0849c77bc92d26d44f4d0a4843c2a8ab52c462017dea57316e4d8
962be993e18cc61e9c4477b2497d5582ed1a50e527070a0b57ab52be4f8b8157
9f208d022102b1d0c7aebfecd8e42ca7997d5de636649d2b31ea63093d809019
b3d83ccbd5939915ee2c348d17bf8c13dd81decd84ab6a74b2c96367b5f18015
b93af7ba9742e34cbc54c62ca29cc24a423e399288d3ed27efd4e4c73537dbb5
d7b1a556ccd85f99e0bbdac83295adbff6f5dd3b5e6fb19d08832fa159e90ccf
d949f1c3687aedadcedac85261865f29b17cd273997e7f6b2bfc53b2f9d4c4dd
dd419c74d8b79474273ddbfa1f8e9b59c8990bd305f75a8cece8affe051c65dd
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855