Skip to content

[Remove Request] - www.notion.com #1343

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
duncanplatt opened this issue Jan 17, 2025 · 11 comments
Open

[Remove Request] - www.notion.com #1343

duncanplatt opened this issue Jan 17, 2025 · 11 comments
Assignees

Comments

@duncanplatt
Copy link

URL you wish to be removed:
www.notion.com

Why you believe this to be a false positive:
Is now the primary domain for notion.so

List it is on:
malware
abuse

Other info you think we should know:

@spirillen
Copy link
Contributor

Search results

Lookup provided by My Privacy DNS

Hosts-Sources

External Hosts-Sources can be found here

blocklistproject.csv:www.notion.com
hosts-file.emd.csv:www.notion.com

Sorted result

www.notion.com

EasyList

easylist_cookie/easylist_cookie_specific_hide.txt:notion.com##.cookiePreferencesBanner_container__4I5LE

Matrix blacklist project

Matrix blacklist project, Filtered

Response Policy Zone - RPZ

Found these RPZ records in My Privacy DNS

Domain records Type content
notion.com CNAME .
www.notion.com CNAME .

Known Issues

DNS lookup

notion.com.     43200   IN      NS      dana.ns.cloudflare.com.
notion.com.     43200   IN      NS      woz.ns.cloudflare.com.

HTTP header

HTTP response, click to expand
HTTP/2 301 
date: Fri, 17 Jan 2025 21:46:00 GMT
content-type: text/html
content-length: 167
location: https://www.notion.com/
cache-control: max-age=3600
expires: Fri, 17 Jan 2025 22:46:00 GMT
set-cookie: __cf_bm=vZQp96bGu7YVXtYcz87wQDR3KK7bzwxQyyJkcIsvfWo-1737150360-1.0.1.1-Tnd4uNXq2wNlKfqiLCENUVa9XlbwAKRsmg8QxFvxDPY8SfYbCLIrgoyFMAywVDo3hRTUx5vjlQYYgO7o7eDjew; path=/; expires=Fri, 17-Jan-25 22:16:00 GMT; domain=.notion.com; HttpOnly; Secure; SameSite=None
strict-transport-security: max-age=31536000; includeSubDomains; preload
set-cookie: _cfuvid=0rZGFsKpyX6Uf7d.u4fLnKnqxt3YZJ1O1gjo0g2imsw-1737150360651-0.0.1.1-604800000; path=/; domain=.notion.com; HttpOnly; Secure; SameSite=None
server: cloudflare
cf-ray: 9039891a0f95ecd7-ARN
alt-svc: h3=":443"; ma=86400

HTTP/2 200 
date: Fri, 17 Jan 2025 21:46:01 GMT
content-type: text/html; charset=utf-8
age: 5607
cache-control: public, max-age=0, must-revalidate
content-security-policy: script-src 'self' 'unsafe-inline' 'unsafe-eval' https://gist.github.com https://apis.google.com https://cdn.amplitude.com https://api.amplitude.com https://dev-embed.notion.co https://embed.notion.co https://static.zdassets.com https://api.smooch.io       https://solve-widget.forethought.ai https://decagon.ai https://logs-01.loggly.com https://http-inputs-notion.splunkcloud.com https://*.sentry.io https://checkout.stripe.com https://js.stripe.com https://embed.typeform.com https://admin.typeform.com https://public.profitwell.com https://static.profitwell.com https://js.sentry-cdn.com https://js.chilipiper.com https://platform.twitter.com https://cdn.syndication.twimg.com https://accounts.google.com https://vimeo.com https://player.vimeo.com https://youtube.com https://www.youtube.com https://www.googletagmanager.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://cdn.metadata.io https://platformapi.metadata.io https://api-gw.metadata.io https://d2hrivdxn8ekm8.cloudfront.net https://d1lu3pmaz2ilpx.cloudfront.net https://dvqigh9b7wa32.cloudfront.net https://d330aiyvva2oww.cloudfront.net https://transcend-cdn.com https://cdn01.boxcdn.net https://cdn.sprig.com https://assets.customer.io https://track.customer.io https://code.gist.build https://www.google.com https://www.gstatic.com https://challenges.cloudflare.com https://pagead2.googlesyndication.com https://x.clearbitjs.com https://connect.facebook.net https://snap.licdn.com/ https://px.ads.linkedin.com/ https://munchkin.marketo.net https://info.notion.com https://bat.bing.com https://s.yimg.jp https://www.youtube-nocookie.com https://www.youtube.com/iframe_api https://js.partnerstack.com https://partnerlinks.io https://analytics.tiktok.com/ https://vitals.vercel-insights.com https://va.vercel-scripts.com https://vercel.live https://www.redditstatic.com https://static.ads-twitter.com https://insights.metadata.io https://acdn.adnxs.com/dmp/up/pixie.js https://a.usbrowserspeed.com https://static.hotjar.com https://script.hotjar.com https://cloud.memsource.com https://editor.memsource.com; connect-src 'self' data: blob: https://img.notionusercontent.com https://cdn.amplitude.com https://api.amplitude.com https://www.notion.com https://api.embed.ly https://dev-embed.notion.co https://embed.notion.co https://ekr.zdassets.com https://ekr.zendesk.com      https://makenotion.zendesk.com  https://api.smooch.io       wss://api.smooch.io     https://api.forethought.ai https://logs-01.loggly.com https://http-inputs-notion.splunkcloud.com https://*.sentry.io https://checkout.stripe.com https://js.stripe.com https://cdn.contentful.com https://preview.contentful.com https://images.ctfassets.net https://www2.profitwell.com https://tracking.chilipiper.com https://api.chilipiper.com https://api.unsplash.com https://api.giphy.com/ https://giphy-analytics.giphy.com/ https://media0.giphy.com/ https://media1.giphy.com/ https://media2.giphy.com/ https://media3.giphy.com/ https://media4.giphy.com/ https://media5.giphy.com/ https://media6.giphy.com/ https://media7.giphy.com/ https://media8.giphy.com/ https://media9.giphy.com/ https://media10.giphy.com/ https://boards-api.greenhouse.io https://accounts.google.com https://oauth2.googleapis.com https://vimeo.com https://player.vimeo.com https://youtube.com https://www.youtube.com https://www.googletagmanager.com https://analytics.google.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://region1.google-analytics.com https://region1.analytics.google.com https://www.google-analytics.com https://cdn.metadata.io https://platformapi.metadata.io https://api-gw.metadata.io https://d2hrivdxn8ekm8.cloudfront.net https://d1lu3pmaz2ilpx.cloudfront.net https://dvqigh9b7wa32.cloudfront.net https://d330aiyvva2oww.cloudfront.net https://transcend-cdn.com https://telemetry.transcend.io https://api.statuspage.io https://pgncd.notion.so https://api.statsig.com https://statsigapi.net https://exp.notion.so https://api.box.com https://*.mux.com https://api.sprig.com https://storage.googleapis.com https://cdn.sprig.com https://cdn.userleap.com https://assets.customer.io https://track.customer.io https://*.api.gist.build https://*.cloud.gist.build https://api.palette.dev https://www.notion.so https://pagead2.googlesyndication.com https://google.com https://x.clearbitjs.com https://app.clearbitjs.com https://connect.facebook.net https://snap.licdn.com/ https://px.ads.linkedin.com/ https://munchkin.marketo.net https://info.notion.com https://bat.bing.com https://s.yimg.jp https://www.youtube-nocookie.com https://www.youtube.com/iframe_api https://js.partnerstack.com https://grsm.io https://partnerlinks.io https://analytics.tiktok.com/ https://vitals.vercel-insights.com https://va.vercel-scripts.com https://vercel.live https://www.redditstatic.com https://static.ads-twitter.com https://insights.metadata.io https://acdn.adnxs.com/dmp/up/pixie.js https://a.usbrowserspeed.com https://api.mail.dev.notion.so/graphql https://api.mail.notion.so/graphql https://*.hotjar.com https://*.hotjar.io wss://*.hotjar.com https://cloud.memsource.com https://editor.memsource.com; font-src 'self' data: https://cdnjs.cloudflare.com https://cdn01.boxcdn.net https://fonts.gstatic.com; img-src 'self' data: blob: https: https://img.notionusercontent.com https://images.ctfassets.net https://platform.twitter.com https://syndication.twitter.com https://pbs.twimg.com https://ton.twimg.com https://region1.google-analytics.com https://region1.analytics.google.com https://*.mux.com https://track.customer.io; style-src 'self' 'unsafe-inline' https://cdnjs.cloudflare.com https://github.githubassets.com https://js.chilipiper.com https://platform.twitter.com https://ton.twimg.com https://accounts.google.com https://transcend-cdn.com https://cdn01.boxcdn.net https://code.gist.build https://fonts.googleapis.com; frame-ancestors 'self' notion://www.notion.so https://www.notion.so; worker-src 'self' blob:; child-src 'self' blob:; media-src blob: https: http: https://*.mux.com; frame-src https: http: https://accounts.google.com https://renderer.gist.build https://code.gist.build https://challenges.cloudflare.com https://notion.notion.site https://notion-templates.notion.site
referrer-policy: strict-origin-when-cross-origin
set-cookie: notion_browser_id=bb9c0d4b-c35c-47b3-b060-fc6dacae48f5; Path=/; Expires=Sat, 17 Jan 2026 21:46:01 GMT; Domain=.www.notion.com
strict-transport-security: max-age=31536000; includeSubDomains; preload
x-matched-path: /en-us/product/experiments/[...g-exp]
x-powered-by: Next.js
x-vercel-cache: HIT
x-vercel-id: arn1::pdx1::vkwxf-1737150361143-aa4de83b45fa
cf-cache-status: DYNAMIC
set-cookie: notion_check_cookie_consent=true; Path=/; Expires=Sat, 17 Jan 2026 21:46:01 GMT; Domain=.www.notion.com
set-cookie: __cf_bm=xa55629nvv4ycJF0xeZGbsGLUJgpKzKrZbdxsYah5TE-1737150361-1.0.1.1-V.uWslKDph93hm_Ex_tVL9LcJNFOJAauLz4oS5ZQintEJR0e8vCSmCaR_la44LGZAekYO5PtZuj4MkdtB331sg; path=/; expires=Fri, 17-Jan-25 22:16:01 GMT; domain=.notion.com; HttpOnly; Secure; SameSite=None
server: cloudflare
cf-ray: 9039891d09662df5-ARN
alt-svc: h3=":443"; ma=86400

@r1cebank
Copy link

Can we get an update on when this can be unblocked?

@spirillen
Copy link
Contributor

spirillen commented Mar 28, 2025

There is an older post from 2024 that I simply couldn't locate (time spent).. So why projects like @opnsense keeps using this project as source for their @Unbound blacklist is incomprehensive to me.

Image

Ping @dharrigan, @fraenki, @slackadelic . As mentioned, I'm puzzled as to why you continue to use this "Source" for the blacklists with Unbound, when there are far better options available, such as @ShadowWhisperer and @mypdns (Matrix, requires your own whitelist).

Image

Related topic to OPNSense and unbound

@rcmcdonald91
Copy link

Did you mean to tag pfSense developers? The screenshot you provide is from OPNsense.

@spirillen

This comment has been minimized.

@dharrigan
Copy link

@spirillen And I'm puzzled as to why you are pinging me, as I haven't been involved with OPNsense for a long long time (I wrote a plugin once, but I'm not on the core team). Please check before pinging people.

@fraenki
Copy link

fraenki commented Mar 28, 2025

@spirillen I’m not involved in this matter. Unsubscribed.

@spirillen

This comment has been minimized.

@AdSchellevis
Copy link

@spirillen please stop spamming people from other projects and pointing to unrelated tickets. Either open a ticket or a PR at the proper place when seeking change for whatever reason. Unsubscribed

@spirillen

This comment has been minimized.

@fraenki
Copy link

fraenki commented Mar 30, 2025

where I do not have access

https://github.com/opnsense/plugins/issues

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

8 participants