X-UA-Compatible
This signal marks the presence of the X-UA-Compatible meta tag, a legacy directive that tells Internet Explorer which rendering mode to use. ScanMalware records it during the scan.
The tag is a relic of the IE era and has no effect in modern browsers. It is mostly an indicator that a page or its template is old, with no direct security meaning.
Commonly deployed alongside X-UA-Compatible
Of the 114,950 public scans where X-UA-Compatible was detected, these are the technologies most often present on the same site. The share is the percentage of X-UA-Compatible sites that also ran each one.
| Technology | Category | Share of X-UA-Compatible sites |
|---|---|---|
| Cloudflare | wappalyzer | 44.35% |
| Cloudflare Bot Management | wappalyzer | 39.23% |
| HSTS | wappalyzer | 32.69% |
| Open-Graph-Protocol | miscellaneous | 30.6% |
| jQuery | wappalyzer | 28.11% |
| HTTP/3 | wappalyzer | 23.96% |
| JQuery | miscellaneous | 19.98% |
| Google Analytics | wappalyzer | 19.56% |
| MetaGenerator | miscellaneous | 14.67% |
| Script | miscellaneous | 14.59% |
| Cloudflare Turnstile | wappalyzer | 14.09% |
| Google-Analytics | miscellaneous | 12.98% |
| PHP | wappalyzer | 12.09% |
| PasswordField | miscellaneous | 11.52% |
How ScanMalware detects X-UA-Compatible
X-UA-Compatible is detected by analysing the response headers, HTML markup, JavaScript runtime and asset URLs captured when ScanMalware loads the site in a real headless browser.
From any scan you can pivot into related signals — JARM TLS fingerprints, ASN ownership and BGP routing, certificate history, JavaScript analysis and the overall security verdict — to understand not just that X-UA-Compatible is present, but how it is being used. Open the full search interface for X-UA-Compatible →
Recent public scans featuring X-UA-Compatible
A rolling sample of recent public scans where X-UA-Compatible was detected. Listing a site here is not a safety judgement — open a scan to see its full verdict.
| Site | Scanned |
|---|---|
| Suspected Phishing | Cloudflare https://sp12ct-varmik-biz-zadsel-prensor.pages.dev/ | 2026-09-19 |
| Suspected Phishing | Cloudflare http://sp12ct-varmik-biz-zadsel-prensor.pages.dev/ | 2026-09-19 |
| Suspected Malware | Cloudflare https://sp12ct-varsik-biz-zemdok-kolmar.pages.dev/ | 2026-09-19 |
| Suspected Malware | Cloudflare http://sp12ct-varsik-biz-zemdok-kolmar.pages.dev/ | 2026-09-19 |
| Suspected Malware | Cloudflare http://sp12ct-varsok-biz-landik-zormel.pages.dev/ | 2026-09-19 |
| Suspected Malware | Cloudflare https://sp12ct-varsok-biz-landik-zormel.pages.dev/ | 2026-09-19 |
| Suspected Phishing | Cloudflare http://sp12ct-varsor-biz-kendik-zolmar.pages.dev/ | 2026-09-19 |
| Suspected Phishing | Cloudflare https://sp12ct-varsor-biz-kendik-zolmar.pages.dev/ | 2026-09-19 |
Frequently asked questions about X-UA-Compatible
- Does using X-UA-Compatible mean a website is unsafe?
- No. X-UA-Compatible is a stack component, not a verdict. ScanMalware scores the whole page — its scripts, redirects, certificates, threat-intelligence matches and behaviour — so a site using X-UA-Compatible can be perfectly safe or actively malicious.
- How many sites using X-UA-Compatible has ScanMalware scanned?
- X-UA-Compatible has been detected in 114,950 public scans on ScanMalware.com. Each scan is a real headless-browser visit, and the figure updates as new URLs are submitted.
- What technologies are commonly used with X-UA-Compatible?
- Across scanned sites, X-UA-Compatible is most often seen alongside Cloudflare, Cloudflare Bot Management and HSTS. The full co-occurrence breakdown is listed on this page.
Browse all profiled technologies on the technology index, or scan a URL to see its full stack.