This script periodically crawls all Apache project and podling websites to check them for a few specific links or text blocks that all projects are expected to have. The checks include verifying that all required links appear on a project homepage, along with an "image" check if project logo files are in apache.org/img
The script also checks for 3rd party resource references that might be in conflict with our privacy policy.
The Content-Security-Policy (Csp) check is a work in progress: it only checks that the default settings have not been over-ridden. It does not check if the host exceptions have been approved.
View the crawler code, website display code, validation checks details, and raw JSON data.
Last crawl time: Sat, 19 Sep 2026 10:11:59 GMT over 229 websites.
| Check Type | Check Results | Check Description |
|---|---|---|
| Uri | https://shenyu.apache.org | |
| Foundation | https://shenyu.apache.org/img/logo/asf_logo.svg | |
| Events | https://www.apache.org/events/current-event | |
| License | https://www.apache.org/licenses/ | |
| Thanks | https://www.apache.org/foundation/thanks.html | |
| Security | https://www.apache.org/security/ | |
| Sponsorship | https://www.apache.org/foundation/sponsorship.html | |
| Trademarks | The Apache Software Foundation, Licensed under the Apache License, Version 2.0. Apache ShenYu, Apache, the Apache feather logo, the Apache ShenYu logo are trademarks of The Apache Software Foundation. | |
| Copyright | Copyright 2026 The Apache Software Foundation | |
| Privacy | https://www.apache.org/foundation/policies/privacy.html | |
| Resources | Found 2 external resources: {"widget.kapa.ai"=>1, "ERROR Failed to load resource: net::ERR_FAILED"=>1} |
Text of a link expected to match regular expression:
Found \d+ external resources
Websites must not link to externally hosted resources |
| Image | shenyu.svg | |
| Csp_check | Invalid: default-src 'self' data: blob: 'unsafe-inline' 'unsafe-eval' https://*.apache.org/ https://apache.org/ https://www.apachecon.com/ https://www.communityovercode.org/ https://*.scarf.sh/; script-src 'self' data: blob: 'unsafe-inline' 'unsafe-eval' https://*.apache.org/ https://apache.org/ https://www.apachecon.com/ https://www.communityovercode.org/ https://*.scarf.sh/ https://widget.kapa.ai https://www.google.com https://www.gstatic.com https://hcaptcha.com https://*.hcaptcha.com; style-src 'self' data: blob: 'unsafe-inline' https://*.apache.org/ https://apache.org/ https://hcaptcha.com https://*.hcaptcha.com; connect-src 'self' https://*.apache.org/ https://apache.org/ https://*.scarf.sh/ https://api.github.com https://proxy.kapa.ai https://kapa-widget-proxy-la7dkmplpq-uc.a.run.app https://metrics.kapa.ai https://www.google.com https://hcaptcha.com https://*.hcaptcha.com; img-src 'self' data: blob: https:; font-src 'self' data: blob: https://*.apache.org/; frame-src 'self' data: blob: https://*.apache.org/ https://apache.org/ https://www.apachecon.com/ https://www.communityovercode.org/ https://www.google.com https://hcaptcha.com https://*.hcaptcha.com; frame-ancestors 'self'; worker-src 'self' data: blob:; object-src 'none' |
Text of a link expected to match regular expression:
^OK
Websites must not replace the default Content-Security-Policy |