The probe prevents server-side request forgery by routing every fetch through a custom safe_get utility that manually follows redirects up to a maximum of five hops while re-evaluating the destination IP at each step to block private, loopback, or metadata addresses.