0clickjacking0.github.io Website Overview & Technology Report
🤖 AI Summary
We performed a comprehensive analysis of 0clickjacking0.github.io on 2026-06-27. The website returned an HTTP 200 status code with a server response time of 10965ms. The page is served over HTTP/2 protocol with Gzip compression enabled, achieving approximately 60.0% size reduction. The total page weight is 56 KB, and the site is served behind a CDN (Content Delivery Network).
Warning: The website does not have a valid SSL certificate. Visitors may see security warnings in their browser, and data transmitted to and from this website is not encrypted.
The security headers analysis reveals a score of 20/100 (poor). The following security headers are properly configured: Strict-Transport-Security (HSTS). However, the site is missing Content-Security-Policy, X-Frame-Options, X-Content-Type-Options, Referrer-Policy, and Permissions-Policy, which could expose the site and its users to cross-site scripting (XSS), clickjacking, and other web-based attacks.
Our technology detection scan identified 4 technologies across 4 categories powering 0clickjacking0.github.io. The detected stack includes Google AdSense, GitHub Pages, jQuery, and Font Awesome.
Based on our comprehensive analysis of domain age, SSL configuration, email authentication, security headers, and blacklist status, 0clickjacking0.github.io receives an overall trust score of 57/100, classified as "Caution Advised".
HTTP Response
Status200 OK
Response Time10965ms
ProtocolHTTP/2
Page Size56 KB
CompressionGzip
Compression Savings~60.0%
CDNYes ✓
ServerGitHub.com
Total Requests97
3rd Party Domains16
RedirectNone
Detected Technologies (4)
📢 Google AdSense
🖥️ GitHub Pages
📦 jQuery
🎯 Font Awesome
Security Headers
✗
Content-Security-Policy
Not set
✓
Strict-Transport-Security (HSTS)
Set ✓
✗
X-Frame-Options
Not set
✗
X-Content-Type-Options
Not set
✗
Referrer-Policy
Not set
✗
Permissions-Policy
Not set
SSL Certificate
IssuerLet's Encrypt
Issuer FullcountryName=US, organizationName=Let's Encrypt, commonName=YR2
SubjectcommonName=*.github.io
Type—
TLS VersionTLS 1.3
Cipher SuiteTLS_AES_128_GCM_SHA256
Algorithm—
Issued—
Expires— (? days)
SANs—
0clickjacking0.github.io Trust Score & Safety Analysis
🤖 AI Summary
After conducting a thorough safety and legitimacy analysis, 0clickjacking0.github.io receives a trust score of 57/100, which places it in the "Caution Advised" category. This score is calculated by evaluating multiple factors including SSL certificate validity, domain registration history, email authentication protocols, security header configuration, and blacklist status across major threat intelligence databases.
The analysis identified several positive trust signals: a valid HTTPS connection protecting data in transit and HSTS (HTTP Strict Transport Security) enforcement preventing protocol downgrade attacks.
Areas of concern include: the absence of a Content-Security-Policy header, which leaves the site more vulnerable to cross-site scripting (XSS) attacks, no X-Frame-Options header, which could allow the site to be embedded in malicious iframes (clickjacking), missing Referrer-Policy, potentially leaking URL information to third parties, the domain's WHOIS information is hidden behind a privacy service, making it harder to verify the owner's identity, and DNSSEC is not enabled, leaving DNS queries vulnerable to spoofing attacks. While these issues don't necessarily indicate malicious intent, they represent areas where the website's security posture could be improved.
We checked 0clickjacking0.github.io against 8 major blacklist databases including Google Safe Browsing, Phishtank, Urlhaus, Openphish, Dnsfilter, Spamhaus Dbl, Surbl, and Virustotal. The domain passed all 8 checks with a clean status, meaning it has not been flagged for phishing, malware distribution, spam, or other malicious activities by any of the tested threat intelligence providers.
Trust Signals
✅ Valid HTTPS
✅ HSTS enabled
⚠️ DNSSEC not enabled
✅ Sitemap.xml found
⚠️ Missing Content-Security-Policy
⚠️ Missing X-Frame-Options
⚠️ Missing Referrer-Policy
Blacklist Checks (8/8 clean)
✓
Google Safe Browsing
clean
✓
Phishtank
clean
✓
Urlhaus
clean
✓
Openphish
clean
✓
Dnsfilter
clean
✓
Spamhaus Dbl
clean
✓
Surbl
clean
✓
Virustotal
clean
0clickjacking0.github.io Technology Stack & Detected Technologies
🤖 AI Summary
Our technology detection engine scanned 0clickjacking0.github.io and identified 4 distinct technologies across 4 categories. This analysis is performed by examining HTTP response headers, HTML source code patterns, JavaScript library fingerprints, CSS framework signatures, and DNS records.
Advertising: Google AdSense — handles advertising pixel tracking and conversion measurement for 0clickjacking0.github.io.
Hosting: GitHub Pages — provides the server infrastructure for 0clickjacking0.github.io.
JavaScript Library: jQuery — provides utility functions and DOM manipulation for 0clickjacking0.github.io.
Icon Set: Font Awesome — provides additional functionality for 0clickjacking0.github.io.
Advertising
Hosting
JavaScript Library
Icon Set
0clickjacking0.github.io Performance, Speed & Core Web Vitals
🤖 AI Summary
0clickjacking0.github.io delivers its homepage in 10965ms (server response time), which is considered slow by industry standards. The total page weight is 56 KB, and we detected 97 resource requests loading assets from 16 third-party domains. A high number of third-party domains can significantly impact page load time due to additional DNS lookups and TLS handshakes required for each domain.
The website uses Gzip compression for text-based assets, achieving an estimated 60.0% reduction in transfer size. This reduces bandwidth usage and improves page load times, especially for visitors on slower connections.
Asset minification status: 2 out of 4 CSS files and 6 out of 17 JavaScript files are minified. Minifying the remaining 13 unminified file(s) could further reduce page weight by 10-30% for those assets. Minification is a best practice that reduces download sizes without affecting functionality.
The site is served through a Content Delivery Network (CDN), which caches static assets at edge servers around the world. This means visitors from different geographic regions receive content from the nearest edge server, significantly reducing latency. CDN usage is particularly important for websites with a global audience, as it can reduce page load times by 40-60% for distant visitors.
From an environmental perspective, each page view of 0clickjacking0.github.io produces approximately 0.03g of CO₂, earning a carbon rating of A. This places the website among the cleanest on the web, demonstrating efficient use of server resources and optimized content delivery. For reference, the average web page produces about 0.5g of CO₂ per page view. The page weight of 56 KB is the primary factor in this calculation.
Core Web Vitals data from the Chrome User Experience Report (CrUX) is not available for 0clickjacking0.github.io. This typically means the site doesn't have enough real-world Chrome user traffic to generate statistically significant field data, or the domain is not included in the CrUX dataset. Core Web Vitals (LCP, INP, CLS) are important Google ranking factors that measure real user experience.
Core Web Vitals data not available
Requires CrUX API key configuration
Carbon Footprint
CO₂ per page view0.03g
RatingA
Page Weight & Optimization
HTML Size56 KB
CompressionGzip
Compression Savings~60.0%
CDNYes ✓
Total Requests97
3rd Party Domains16
CSS Minified2/4
JS Minified6/17
0clickjacking0.github.io DNS Records, Email Authentication & Domain Registration
🤖 AI Summary
0clickjacking0.github.io resolves to the IPv4 address 185.199.109.153 and also supports IPv6 (2606:50c0:8003::153), demonstrating modern network infrastructure readiness. The domain has 4 A record(s) configured.
SPF is not configured, meaning any server could potentially send emails pretending to be from this domain. This is a significant email security concern. DMARC is not configured, leaving the domain vulnerable to email spoofing and phishing attacks that impersonate this domain. DKIM was not detected. Without DKIM, recipients cannot cryptographically verify that emails claiming to be from this domain are authentic.
DNSSEC is not enabled for 0clickjacking0.github.io. While not critical for most websites, DNSSEC adds an important security layer by ensuring DNS responses haven't been tampered with during transit. Enabling DNSSEC is recommended for domains handling sensitive data or financial transactions.
Our subdomain enumeration scan discovered 25 active subdomains for 0clickjacking0.github.io: admin.0clickjacking0.github.io, api.0clickjacking0.github.io, app.0clickjacking0.github.io, apps.0clickjacking0.github.io, blog.0clickjacking0.github.io, cdn.0clickjacking0.github.io, community.0clickjacking0.github.io, and dev.0clickjacking0.github.io. Plus 17 additional subdomains. Active subdomains can reveal the organization's infrastructure, including development environments, API endpoints, and third-party service integrations.
DNS Records
A
185.199.109.153
185.199.110.153
185.199.111.153
185.199.108.153
Email & Authentication
MX Provider—
Registrar—
Organisation—
Country—
Contact—
Registered—
Expires—
Domain Age—
IPv6 SupportYes ✓
Subdomains (25 found)
admin.0clickjacking0.github.io api.0clickjacking0.github.io app.0clickjacking0.github.io apps.0clickjacking0.github.io blog.0clickjacking0.github.io cdn.0clickjacking0.github.io community.0clickjacking0.github.io dev.0clickjacking0.github.io developers.0clickjacking0.github.io docs.0clickjacking0.github.io ftp.0clickjacking0.github.io help.0clickjacking0.github.io m.0clickjacking0.github.io mail.0clickjacking0.github.io partners.0clickjacking0.github.io portal.0clickjacking0.github.io shop.0clickjacking0.github.io smtp.0clickjacking0.github.io staging.0clickjacking0.github.io static.0clickjacking0.github.io status.0clickjacking0.github.io store.0clickjacking0.github.io support.0clickjacking0.github.io webmail.0clickjacking0.github.io www.0clickjacking0.github.io
0clickjacking0.github.io Page Content, Images & Accessibility
🤖 AI Summary
The homepage of 0clickjacking0.github.io contains 166 words of visible text content. This is a relatively short page — adding more descriptive content could improve search engine visibility. The page is structured with 0 H2 headings, 0 H3 headings, 0 H4 headings.
The link structure consists of 47 internal links pointing to other pages on the same domain and 13 external links pointing to third-party websites. There are 17 external JavaScript files, 4 CSS stylesheets, and 0 iframes on the page.
The site implements the following web standards and features: XML Sitemap (helps search engines discover all pages) and RSS feed for content syndication.
Notable missing features: robots.txt and Schema.org structured data. Adding these could improve search engine discoverability and rich result eligibility.
Content Structure
H1leetcode力扣 94 144 145 二叉树的前中后序遍历 go实现
H2 Tags0
H3 Tags0
H4 Tags0
H5 Tags0
H6 Tags0
Internal Links47
External Links13
Assets & Features
JavaScript Files17
JS Minified6/17
CSS Files4
CSS Minified2/4
Iframes0
Images0
Missing Alt0
SitemapYes ✓
Robots.txtNo
PWANo
AMPNo
RSS FeedYes ✓
0clickjacking0.github.io SEO Analysis, Meta Tags & Open Graph
🤖 AI Summary
The title tag for 0clickjacking0.github.io is good at 16 characters: "xianyu123's Blog". The length is acceptable, though it may be slightly truncated in some search result displays.
No meta description is configured for 0clickjacking0.github.io. This is a critical SEO oversight — without a meta description, Google will auto-generate a snippet from page content, which may not accurately represent the page or entice users to click. Adding a unique, compelling meta description of 120-155 characters is strongly recommended.
The canonical url is correctly set to http://0clickjacking0.github.io/, preventing duplicate content issues, the page language is declared as zh-hans, and a favicon is configured.
Open Graph meta tags are configured with 2/4 recommended fields: OG title ("xianyu123's Blog..."), OG type (website). These tags control how the page appears when shared on Facebook, LinkedIn, and other social media platforms that support the Open Graph protocol.
A Twitter Card of type summary is configured, which controls how links appear when shared on Twitter/X. The "summary" type displays a large image preview, which typically generates higher engagement rates than the basic card type.
The meta keywords tag contains 2 terms including Hexo and NexT. Note: Google has officially confirmed that it does not use the meta keywords tag as a ranking signal. However, some other search engines (Bing, Yandex) may still reference it.
Google SERP Preview
xianyu123's Blog
https://0clickjacking0.github.io
Meta Tags
Titlexianyu123's Blog...
Title Length16 chars
Meta Desc Length0 chars
H1leetcode力扣 94 144 145 二叉树的前中后序遍历 go实现
Languagezh-Hans
Canonicalhttp://0clickjacking0.github.io/
Meta Robotsnot set
Meta KeywordsHexo, NexT
Schema.org & Social
Schema Types—
OG Typewebsite
OG ImageNot set
Twitter Cardsummary
FaviconSet ✓