THUGS(red) DarkWeb/Monitor_

ProtonMail (web)

Alive Email Provider

Open

capture taken 49m ago
Screenshot of ProtonMail (web)
what the page says

Proton Mail: Get a free email account with privacy and encryption | Proton

Proton Mail is the world’s largest secure email service with over 100 million users. Available on Web, iOS, Android, and desktop. Protected by Swiss privacy law.

Personal Business Download Discover Proton Pricing Get Proton Mail Sign in Secure email that protects your privacy Keep your conversations private with Proton Mail, an encrypted email service based in Switzerland. Create a free account Get Mail for Business Trusted by over 100 million users and organizations 4.5+ app rating Recommended by the experts What makes encrypted email better? Because what's in your email is your business Gmail and and Microsoft Outlook can technically scan your inbox: These "free" email services may cost your privacy, using your messages for targeted ads, AI…
reachability history
The 4 most recent checks.
When Status HTTP Response Bytes Via
49m ago Alive content moved 200 54 ms 347,117 chrome-stealth
2h ago Alive 200 52 ms 351,637 chrome-stealth
3h ago Alive content moved 200 54 ms 351,635 chrome-stealth
5h ago Alive 200 47 ms 347,118 chrome-stealth
security headers
Csp
Raw
default-src 'self'; media-src https://static.zdassets.com https://res.cloudinary.com https://pmecdn.protonweb.com; connect-src 'self' wss: https://protonmail.zendesk.com https://ekr.zdassets.com blob: https://account.proton.me https://reports.proton.me https://telemetry.proton.me https://*.algolia.net https://*.algolianet.com https://go.getproton.me https://noembed.com https://boards-api.greenhouse.io https://proton.me https://*.paypal.com https://*.paypalobjects.com https://growth.proton.me ; script-src 'self' blob: 'unsafe-eval' 'unsafe-inline' https://static.zdassets.com https://pmecdn.protonweb.com https://www.youtube.com https://platform.twitter.com https://*.paypal.com https://*.paypalobjects.com; style-src 'self' 'unsafe-inline' https://pmecdn.protonweb.com https://*.paypal.com https://*.paypalobjects.com; font-src 'self' https://pmecdn.protonweb.com; img-src 'self' data: blob: https:; frame-src 'self' data: blob: https://www.youtube-nocookie.com https://platform.twitter.com https://*.paypal.com https://*.paypalobjects.com; object-src 'self' data: blob:; child-src 'self' data: blob: https://*.paypal.com https://*.paypalobjects.com; report-uri https://reports.proton.me/reports/csp; frame-ancestors 'self' https://*.proton.me;
Directives
Default src
'self'
Media src
https://static.zdassets.comhttps://res.cloudinary.comhttps://pmecdn.protonweb.com
Connect src
'self'wss:https://protonmail.zendesk.comhttps://ekr.zdassets.comblob:https://account.proton.mehttps://reports.proton.mehttps://telemetry.proton.mehttps://*.algolia.nethttps://*.algolianet.comhttps://go.getproton.mehttps://noembed.comhttps://boards-api.greenhouse.iohttps://proton.mehttps://*.paypal.comhttps://*.paypalobjects.comhttps://growth.proton.me
Script src
'self'blob:'unsafe-eval''unsafe-inline'https://static.zdassets.comhttps://pmecdn.protonweb.comhttps://www.youtube.comhttps://platform.twitter.comhttps://*.paypal.comhttps://*.paypalobjects.com
Style src
'self''unsafe-inline'https://pmecdn.protonweb.comhttps://*.paypal.comhttps://*.paypalobjects.com
Font src
'self'https://pmecdn.protonweb.com
Img src
'self'data:blob:https:
Frame src
'self'data:blob:https://www.youtube-nocookie.comhttps://platform.twitter.comhttps://*.paypal.comhttps://*.paypalobjects.com
Object src
'self'data:blob:
Child src
'self'data:blob:https://*.paypal.comhttps://*.paypalobjects.com
Report uri
https://reports.proton.me/reports/csp
Frame ancestors
'self'https://*.proton.me
Unsafe inline
yes
Unsafe eval
yes
Hsts
Max age
31536000
Include subdomains
yes
Preload
yes
X content type options
nosniff
Referrer policy
strict-origin-when-cross-origin
Cross origin
X xss protection
0
Cookies
Count
0
Secure
0
Httponly
0
Samesite
0
Score
51
Missing
x_frame_optionspermissions_policycoopcoepcorp
tls certificate
Protocol
TLS 1.3
Cipher
AES_128_GCM
Key exchange group
X25519MLKEM768
Signature algorithm
2052
Subject
proton.me
Issuer
YR2
San
*.pr.tn*.proton.me*.storage.proton.mepr.tnproton.me
San count
5
Wildcard
yes
Valid from
2026-07-09 13:13:53
Valid to
2026-10-07 13:13:52
Days remaining
46
Self signed
no
Ct compliance
unknown
Ech
no
technology detected
Server
Family
unknown
Protocol
h2
what blocks us
Detected
no
Confidence
0
Waited ms
0
Http code
200
Via
chrome-stealth
contacts published
  • Total0
crypto addresses
  • Total0
forms on the page
Count
0
Has login
no
Has search
no
Has upload
no
outbound onion links
  • onion_unique not tracked onion_unique
  • onion_total not tracked onion_total
  • clearnet_unique not tracked clearnet_unique 21
  • internal not tracked internal 80
  • external not tracked external 29
  • total not tracked total 196
  • truncated not tracked truncated
response headers
HeaderValue
accept-ranges bytes
cache-control no-store, no-cache, must-revalidate, proxy-revalidate
content-encoding gzip
content-length 47122
content-security-policy default-src 'self'; media-src https://static.zdassets.com https://res.cloudinary.com https://pmecdn.protonweb.com; connect-src 'self' wss: https://protonmail.zendesk.com https://ekr.zdassets.com blob: https://account.proton.me https://reports.proton.me https://telemetry.proton.me https://*.algolia.net https://*.algolianet.com https://go.getproton.me https://noembed.com https://boards-api.greenhouse.io https://proton.me https://*.paypal.com https://*.paypalobjects.com https://growth.proton.me ; script-src 'self' blob: 'unsafe-eval' 'unsafe-inline' https://static.zdassets.com https://pmecdn.protonweb.com https://www.youtube.com https://platform.twitter.com https://*.paypal.com https://*.paypalobjects.com; style-src 'self' 'unsafe-inline' https://pmecdn.protonweb.com https://*.paypal.com https://*.paypalobjects.com; font-src 'self' https://pmecdn.protonweb.com; img-src 'self' data: blob: https:; frame-src 'self' data: blob: https://www.youtube-nocookie.com https://platform.twitter.com https://*.paypal.com https://*.paypalobjects.com; object-src 'self' data: blob:; child-src 'self' data: blob: https://*.paypal.com https://*.paypalobjects.com; report-uri https://reports.proton.me/reports/csp; frame-ancestors 'self' https://*.proton.me;
content-type text/html; charset=utf-8
date Fri, 21 Aug 2026 16:34:26 GMT
etag "54bed-6598adb29ed9a-gzip"
expires 0
last-modified Fri, 21 Aug 2026 08:59:37 GMT
pragma no-cache
public-key-pins-report-only pin-sha256="CT56BhOTmj5ZIPgb/xD5mH8rY3BLo/MlhP7oPyJUEDo="; pin-sha256="35Dx28/uzN3LeltkCBQ8RHK0tlNSa2kCpCRGNp34Gxc="; report-uri="https://reports.proton.me/reports/tls"
referrer-policy strict-origin-when-cross-origin
strict-transport-security max-age=31536000; includeSubDomains; preload
vary Accept-Encoding
x-ab-variant B
x-content-type-options nosniff
x-permitted-cross-domain-policies none
x-xss-protection 0