HTTP response header

The Timing-Allow-Origin response header specifies origins that are allowed to see values of attributes retrieved via features of the Resource Timing API which would otherwise be reported as zero due to cross-origin restrictions

Header usage statistics

Timing-Allow-Origin response header information and usage statistics.

Websites using header Timing-Allow-Origin 136,931
Percentage of websites that use Timing-Allow-Origin header 0.14%
Total discovered header values 172
Header uses directives Yes
Header values are unique or random No
Most popular in the country China

Timing-Allow-Origin Directives (1 total)

  • *

Timing-Allow-Origin Directives

Timing-Allow-Origin directives value information and usage statistics

Directive Share Websites count Unique Values
* 99.30% 135,970 1

Distribution by websites popularity

Timing-Allow-Origin detection in the top websites by popularity

Top 10k sites 313 websites
Top 100k sites 1,508 websites
Top 1m sites 7,453 websites

Websites utilizing Timing-Allow-Origin

List of websites that use Timing-Allow-Origin header

Domain Country Rank Contacts
maps.google.com United States of America 24
maxcdn.bootstrapcdn.com United States of America 26
static.parastorage.com United States of America 31
static.wixstatic.com United States of America 33
siteassets.parastorage.com United States of America 34
polyfill.io United States of America 39
See full domain list
Flat price per the report, subscription is not required.

Geographical Distribution

Header usage distribution by websites across the globe.

Common header values

List of top common Timing-Allow-Origin header values

Header value Value prevalence
* 98.95%
*, * 0.34%
https://www.google.com 0.13%
https://www.tripadvisor.com 0.09%
https://ads.google.com 0.06%
https://twitter.com, https://mobile.twitter.com 0.05%
https://www.bbc.co.uk, https://www.bbc.com 0.05%
https://allegro.pl 0.02%
same-origin 0.02%
https://allegro.pl, http://allegro.pl 0.02%
https://badoo.com 0.02%
Timing-Allow-Origin: https://parrotsec.org,https://*.parrotsec.org,https://parrot.sh,https://*.parrot.sh,https://*.cdn.parrot.sh,https://*.d.cdn.parrot.sh,https://*.l.cdn.parrot.sh,https://*.any.parrot.sh,https://*.gibson.infra.parrot.sh,https://.*parrotl 0.01%
https://www.lanacion.com.ar,https://lnmas.lanacion.com.ar,https://club.lanacion.com.ar,https://suscripciones.lanacion.com.ar,https://myaccount.lanacion.com.ar 0.01%
https://hotornot.com 0.01%
https://heyfiesta.com 0.01%
https://github.com 0.01%
https://*.brand-portal.adobe.com/ 0.01%
https://www.gog.com, https://www.gogalaxy.com, https://embed.gog.com 0.01%
true 0.01%
https://www.canva.com 0.01%