Observed endpoint
Security · Browser policy signals
CORS & Cookie Inspector
Inspect CORS response headers and cookie security metadata observed during a safe public GET request. This is passive inspection—not a custom-Origin or OPTIONS preflight simulator.
Cross-origin response policy
CORS headers
A response may behave differently for another Origin, method, request header set, or an OPTIONS preflight. Treat this as the policy observed for this Cloud Engine GET request only.
Cookie metadata
Cookie security flags
Continue investigating