diff --git a/allowlist.txt b/allowlist.txt index 873aa67..cfd9065 100755 --- a/allowlist.txt +++ b/allowlist.txt @@ -22,29 +22,29 @@ # ----------------------------------------- # ๐Ÿ“ฐ FUNKEMEDIEN / WAZ # ----------------------------------------- -# ๐ŸŸข Funktional notwendig โ€“ Login & Konto +# ๐ŸŸข Login & Konto login.funkemedien.de subscriptions.funkemedien.de - -# ๐ŸŸข Funktional notwendig โ€“ Core App & Inhalte + +# ๐ŸŸข Core App & Inhalte spark.cloud.funkedigital.de img.sparknews.funkemedien.de app-webview.sparknews.funkemedien.de -# ๐ŸŸข Funktional notwendig โ€“ Video / Streams +# ๐ŸŸข Video / Streams cdn.vtv.funkedigital.de front.vtv.funkedigital.de 1376624012.rsc.cdn77.org -# ๐ŸŸข Funktional notwendig โ€“ Audio (Artikel vorlesen) +# ๐ŸŸข Audio (Artikel vorlesen) bottalk.io audio.bottalk.io -# โš ๏ธ Kritisch โ€“ Consent Management (Tracking-relevant, aber erforderlich) +# โš ๏ธ Consent Management (Tracking-relevant, aber erforderlich) cdn.consentmanager.net *.delivery.consentmanager.net -# โš ๏ธ Kritisch โ€“ Paywall / Abo (Tracking + Monetarisierung) +# โš ๏ธ Paywall / Abo (Tracking + Monetarisierung) # Nur notwendig bei Login / aktivem Abo c2.piano.io cdn.piano.io @@ -52,36 +52,28 @@ buy.tinypass.com # ----------------------------------------- - -# ----------------------------------------- -# ๐Ÿ“ฐ T-Online -# ----------------------------------------- -# โš ๏ธ Kritisch โ€“ Reichweitenmessung / Nutzungsanalyse -# Wird fรผr Seitenstatistiken und Performance-Messung genutzt, -# ist fรผr den reinen Seitenaufruf in der Regel nicht ZWINGEND erforderlich. -data.rt.t-online.de - -# ----------------------------------------- - - # ----------------------------------------- # ๐Ÿ“ฐ WELT.de โ€“ Funktionalitรคt # ----------------------------------------- -# Video / Player +# ๐ŸŸข Video / Player licensing.bitmovin.com -# WELT First-Party APIs & Assets + +# ๐ŸŸข WELT APIs & Assets resources-production.la.welt.de hua-production.la.welt.de ast.welt.de as.welt.de -# Content-/HTML-Loader -content-loader.com -fb.content-loader.com -# Livestream (WELT TV) + +# ๐ŸŸข Livestream (WELT TV) welt.personalstream.tv broadcast.welt.personalstream.tv stream-launcher-welt-tv.prd.ott-core.as-infra.de -# Consent + +# ๐ŸŸก Content- / HTML-Loader +content-loader.com +fb.content-loader.com + +# โš ๏ธ Consent / Identitรคt einwilligungsspeicher.netid.de # ----------------------------------------- @@ -89,59 +81,74 @@ einwilligungsspeicher.netid.de # ----------------------------------------- # ๐Ÿ“ฐ BILD.de โ€“ Funktionalitรคt # ----------------------------------------- -# Video / Player +# ๐ŸŸข Video / Player ast.bild.de rosetta.prod.ps.bild.de as.bild.de -# First-Party Data / Config + +# ๐ŸŸข First-Party Data / Konfiguration data-bb21a2f11b.bild.de whoami-web.prod.ps.bild.de -# Consent + +# โš ๏ธ Consent / Tracking-nahe Infrastruktur cmp2.bild.de # ----------------------------------------- + # ----------------------------------------- # ๐ŸŸ๏ธ SPORT1 โ€“ Funktionalitรคt # ----------------------------------------- +# ๐ŸŸข Core-Seite & Assets www.sport1.de images.sport1.de reshape.sport1.de metadataservice.sport1.de + +# ๐ŸŸข APIs / Inhalte api.sport1.info cp.sport1.de -consentv2.sport1.de + +# ๐ŸŸข Video / VOD vod-int.sport1.de vod-d.sport1.de + +# โš ๏ธ Paywall / Content-Zugriff 0bf7c3e3.with.contentpass.net with-contentpass-net.b-cdn.net + +# โš ๏ธ Consent-Management +consentv2.sport1.de # ----------------------------------------- + # ----------------------------------------- -# ๐Ÿ“ฐ Westfalenpost +# ๐Ÿ“ฐ Westfalenpost โ€“ Funktionalitรคt # ----------------------------------------- +# ๐ŸŸข Core-Seite www.wp.de # ----------------------------------------- # ----------------------------------------- -# ๐Ÿ–จ๏ธ 3druck.com +# ๐Ÿ–จ๏ธ 3druck.com โ€“ Funktionalitรคt # ----------------------------------------- +# ๐ŸŸข Core-Seite 3druck.com # ----------------------------------------- - # ----------------------------------------- -# ๐Ÿ‘ฎโ€โ™‚๏ธ Polizei.nrw +# ๐Ÿ‘ฎโ€โ™‚๏ธ Polizei.nrw โ€“ Funktionalitรคt # ----------------------------------------- +# ๐ŸŸข Core-Seite polizei.nrw # ----------------------------------------- - # ----------------------------------------- -# โšฝ liga3-online +# โšฝ liga3-online โ€“ Funktionalitรคt # ----------------------------------------- +# ๐ŸŸข Core-Seite www.liga3-online.de # ----------------------------------------- @@ -157,77 +164,91 @@ www.liga3-online.de # ----------------------------------------- # ๐Ÿ’ณ Google Pay โ€“ Payment / Security # ----------------------------------------- +# ๐ŸŸข Zahlung / Autorisierung pay.google.com payments.google.com + +# โš ๏ธ Sicherheits- & Policy-Checks (Google) csp.withgoogle.com # ----------------------------------------- - # ----------------------------------------- # ๐Ÿ’ณ Apple Pay โ€“ Payment # ----------------------------------------- +# ๐ŸŸข Zahlung / Assets applepay.cdn-apple.com world-gen.g.aaplimg.com # ----------------------------------------- - # ----------------------------------------- # ๐Ÿ’ณ Onerway โ€“ Checkout / Kreditkarte # ----------------------------------------- +# ๐ŸŸข Checkout / API www.checkout.onerway.com api.onerway.com acq.onerway.com + +# โš ๏ธ Gateway / Fraud- & Security-Layer gw-dmz.onerway.com # ----------------------------------------- # ----------------------------------------- -# ๐Ÿ’ณ Paypal +# ๐Ÿ’ณ PayPal โ€“ Payment # ----------------------------------------- +# ๐ŸŸข Zahlung / Checkout i.paypal.com # ----------------------------------------- - # ----------------------------------------- -๐Ÿ’ณ Sparkasse +# ๐Ÿ’ณ Sparkasse โ€“ Banking / Payment # ----------------------------------------- +# ๐ŸŸข Kern-Domains (Onlinebanking & Inhalte) www.sparkasse-bochum.de sparkasse-bochum.de *.sparkasse-bochum.de sparkasse.de *.sparkasse.de + +# ๐ŸŸข Zentrale Banking-Infrastruktur (Finanz Informatik) sparkassen-hub.com *.sparkassen-hub.com f-i.de *.f-i.de fi-ts.io *.fi-ts.io + +# โš ๏ธ CDN / Auslieferung (technisch notwendig, aber Drittanbieter) akamai.net edgesuite.net # ----------------------------------------- # ----------------------------------------- -# ๐Ÿ’ณ Stripe (Zahlungsabwicklung) +# ๐Ÿ’ณ Stripe โ€“ Zahlungsabwicklung # ----------------------------------------- +# ๐ŸŸข Zahlung / Checkout / API m.stripe.network api.stripe.com js.stripe.com # ----------------------------------------- - # ----------------------------------------- # ๐Ÿ’ณ Terminbuchung & Zahlung โ€“ Shore # ----------------------------------------- +# ๐ŸŸข Kernfunktion (Buchung & Bezahlung) connect.shore.com -booking-widget.shore-cdn.com secure.shore.com payment.shore.com api.shore.com + +# ๐ŸŸก Widgets / Assets +booking-widget.shore-cdn.com # ----------------------------------------- + #โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ โ–ˆโ–ˆโ–ˆ โ–ˆโ–ˆ #โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆโ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆโ–ˆโ–ˆ โ–ˆโ–ˆ #โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ โ–ˆโ–ˆ @@ -236,24 +257,40 @@ api.shore.com # ----------------------------------------- -# ๐Ÿ›’ Lidl Plus +# ๐Ÿ›’ Lidl Plus โ€“ App / Coupons / Prospekte # ----------------------------------------- +# ๐ŸŸข Kernfunktionen (Login, App, Coupons) lidlplus.com -segments.lidlplus.com appgateway.lidlplus.com shortcuts.lidlplus.com + +# ๐ŸŸก Inhalte / Komfort (Prospekte, Lokalisierung) brochures.lidlplus.com static-localization.lidlplus.com + +# ๐ŸŸก Prospekt- & Angebotsplattform (Schwarz-Gruppe) leaflets.schwarz imgproxy.leaflets.schwarz endpoints.leaflets.schwarz lidl.leaflets.schwarz + +# โš ๏ธ Segmentierung / Marketing +segments.lidlplus.com # ----------------------------------------- +# ----------------------------------------- +# ๐Ÿ›’ EDEKA โ€“ App / Login / Marktsuche +# ----------------------------------------- +# ๐ŸŸข Kernfunktionen (Login, API) +login.edeka +b2b-login.api.edeka +api.edeka +# ----------------------------------------- # ----------------------------------------- -# ๐Ÿ›’ Edeka +# ๐Ÿ›’ Netto โ€“ App / Login / Marktsuche # ----------------------------------------- +# ๐ŸŸข Kernfunktionen (Netto nutzt EDEKA-Infrastruktur) login.edeka b2b-login.api.edeka api.edeka @@ -261,38 +298,35 @@ api.edeka # ----------------------------------------- -# ๐Ÿ›’ Netto +# ๐Ÿช‘ Zurbrรผggen โ€“ Funktionalitรคt # ----------------------------------------- -login.edeka -b2b-login.api.edeka -api.edeka -# ----------------------------------------- - - -# ----------------------------------------- -๐Ÿช‘ Zurbrรผggen -# ----------------------------------------- -cdn.zurbrueggen.de +# ๐ŸŸข Core-Seite / Inhalte www.zurbrueggen.de +cdn.zurbrueggen.de # ----------------------------------------- - # ----------------------------------------- -# ๐Ÿ‘ž Deichmann +# ๐Ÿ‘ž Deichmann โ€“ Funktionalitรคt # ----------------------------------------- +# ๐ŸŸข Assets / Shop-Funktion asset.deichmann.com # ----------------------------------------- - # ----------------------------------------- -# ๐Ÿ›๏ธ Takko +# ๐Ÿ›๏ธ Takko โ€“ App / Login / Consent # ----------------------------------------- -query.conscia.io -delivery.consentmanager.net +# ๐ŸŸข Login / Identitรคt takko-prod.cidaas.eu + +# ๐ŸŸก Consent-Management +delivery.consentmanager.net + +# โš ๏ธ Tracking / Personalisierung +#query.conscia.io # ----------------------------------------- + # ----------------------------------------- # ๐Ÿ“ฆ DHL # -----------------------------------------