Security and networkingChecked through WebDiag API

Mixed Content Checker

Enter an HTTPS URL to find static HTML mixed-content candidates without browser runtime DOM or CSS crawling.

  • active/passive
  • static HTML
  • HTTPS page
Online tool

Try the tool

Enter a URL: WebDiag will run a safe network check and show the result.

URL

Network check through backend

For HTTP/SEO tools, the URL is sent to the WebDiag API, where SSRF protection, DNS/IP policy, and redirect limits are applied.

Reviewed: 2026-07-17
01

How to use it

  1. 1

    Enter a public HTTPS URL.

  2. 2

    Run the mixed-content scan.

  3. 3

    Review active and passive HTTP subresources.

02

What the tool can do

  • Checks script, iframe, object, embed, and stylesheet.
  • Checks img, audio, video, source, poster, and srcset.
  • Separates active and passive mixed content.
03

Common use cases

  • Find HTTP resources before HTTPS migration.
  • Check a template after changing CDN/assets host.
  • Remove active mixed content from production pages.
04

How it works inside

The result is based on bounded static HTML parsing.

Browser-level mixed-content blocking belongs to a later crawler/browser gate.

05

Questions and answers

Why is CSS background-image not detected?

This batch does not fetch CSS or execute runtime DOM; that is an explicit static HTML scan limit.

Are HTTP menu links mixed content?

Regular navigation links are not subresources; the tool finds page-loaded resources.