For AI agents: a documentation index is available at /llms.txt. Markdown versions of these pages are available by appending `.md` to the URL or by sending `Accept: text/markdown`.

Rules / og-image-forbidden · ruleset 2026-07

Image URL requires auth or returns 403

errorog-image-forbidden

Name

Image URL requires auth or returns 403 og-image-forbidden

Crawlers are logged-out anonymous clients. A 401/403 image means a blank card for every share.

How to fix

Host the share image on a public CDN/path with no cookies, signing, or IP allowlists required for GET.

No single template snippet applies; use the measured and expected values in an OGKit finding.

Copy or download

Copyable Markdown for a teammate or an agent chat.

# og-image-forbidden — Image URL requires auth or returns 403

- **Name:** Image URL requires auth or returns 403

## Description

Crawlers are logged-out anonymous clients. A 401/403 image means a blank card for every share.

## How to fix

Host the share image on a public CDN/path with no cookies, signing, or IP allowlists required for GET.

## Rule docs

https://ogkit.akr.moe/rules/og-image-forbidden

Download an Agent Skill package for this rule.

Download og-image-forbidden.skill

The file is a ZIP of skill-name/SKILL.md (Agent Skills spec). The .skill extension is that ZIP; rename to .zip if a client asks for one.

Rule idog-image-forbidden
Severityerror
CategoryImages
Platformsall platforms
Needs humanno

What this is

Image URL requires auth or returns 403. OGKit rule og-image-forbidden (error). The id is a public API for the docs URL and CI --disable key; do not rename it.

Search phrases that should land on this page:

  • Provided og:image could not be downloaded
  • The crawler accepts deflate and gzip content encodings
  • Invalid Image. This image cannot be fetched.
  • Image URL requires auth or returns 403
  • og:image 403
  • og:image forbidden
  • cannot fetch og:image

Why it matters

Crawlers are logged-out anonymous clients. A 401/403 image means a blank card for every share.

Which platforms are affected

All OGKit platform profiles, including major social, chat, and search crawlers that consume these tags.

Platform-specific crawler budgets and field priority live in the platform behaviour reference.

How to reproduce

  1. Request the og:image URL without cookies/auth. A 401/403 means crawlers cannot fetch it.
  2. CDN signed URLs that expire also fail social scrapes.
OGKit