HTTP response header

The X-Permitted-Cross-Domain-Policies header tells clients like Flash and Acrobat what cross-domain policies they can use. If you don't want them to load data from your domain set the header's value to none

Header usage statistics

X-Permitted-Cross-Domain-Policies response header information and usage statistics.

Websites using header X-Permitted-Cross-Domain-Policies 1,651,933
Percentage of websites that use X-Permitted-Cross-Domain-Policies header 1.67%
Total discovered header values 91
Header uses directives No
Header values are unique or random No
Most popular in the country Canada

Distribution by websites popularity

X-Permitted-Cross-Domain-Policies detection in the top websites by popularity

Top 10k sites 341 websites
Top 100k sites 2,317 websites
Top 1m sites 24,057 websites

Websites utilizing X-Permitted-Cross-Domain-Policies

List of websites that use X-Permitted-Cross-Domain-Policies header

Domain Country Rank Contacts
fonts.adobe.com United States of America 75
dan.com United States of America 150
eventbrite.com United States of America 180
www.eventbrite.com United States of America 180
www.shopify.com United States of America 185
cdn1.dan.com United States of America 218
See full domain list
Flat price per the report, subscription is not required.

Geographical Distribution

Header usage distribution by websites across the globe.

Common header values

List of top common X-Permitted-Cross-Domain-Policies header values

Header value Value prevalence
none 97.34%
master-only 2.42%
all 0.07%
"master-only"; 0.05%
value 0.02%
self 0.01%
by-content-type 0.01%
none; 0.01%
: none 0.01%
* 0.01%
'master-only'; 0.01%
"none" 0.01%
master-only; 0.00%
: master-only 0.00%
“master-only” 0.00%
“none” 0.00%
"master-only" 0.00%
 "master-only" 0.00%
'none' 0.00%
none master-only by-content-type by-ftp-filename all 0.00%