compoundplanning.com

.com crawl

First seen 2026-04-14 · Last seen 2026-05-08 · ok HTTP/1.1 200 438 ms crawled 2026-05-08

US · 104.26.1.238 · AS13335 Cloudflare, Inc.

Reputation 100/100

sector finance type homepage

HTML metadata

Title
Compound Planning | Modern Wealth & Investment Management
Description
Compound offers a personalized wealth management experience for entrepreneurs, professionals, and retirees powered by a world-class team and modern technology.
Canonical
https://compoundplanning.com/

Open Graph

url
https://compoundplanning.com/
title
Compound Planning | Modern Wealth & Investment Management
locale
en_US
site name
Compound
description
Deliver a magical planning experience to your clients powered by our world-class team and wealth management platform.

Technology

CDN
Cloudflare
CMS
Next.js
Analytics
  • Cloudflare Insights
  • Google Tag Manager

Third-party hosts loaded (3)

  • forms.default.com×1
  • static.cloudflareinsights.com×1
  • www.googletagmanager.com×1

Contact

Address
st Growing RIAs” (awarded 7/11/25). Rankings are based on 2024

Registration

Registrar
Amazon Registrar, Inc.
Created
2023-08-23
Expires
2026-08-23 95 days left
Updated
2025-07-19
Name servers
  • isla.ns.cloudflare.com
  • norm.ns.cloudflare.com

DNS records live

NS
  • isla.ns.cloudflare.com
  • norm.ns.cloudflare.com
MX
  • 1 aspmx.l.google.com
  • 10 alt3.aspmx.l.google.com
  • 10 alt4.aspmx.l.google.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
TXT
Show 8 TXT records
  • rippling-domain-verification=adcd75c66236686a
  • slack-domain-verification=S637X9iuQLuZ6r0XvPj9iycMFe1OcFmm33Lb0lxS
  • MS=ms57107655
  • SFMC-gbn8Gi59bizl1J7Yluz4uMO0EakNxsE1dJooJv0I
  • apple-domain-verification=ekdvZ33PY55GJUSC
  • docusign=24493db3-c386-4767-a0a1-49e640294447
  • google-site-verification=_mE29kwJo80kGVtsdt7ObOa66AaRFK9EsXBw4lwGBCw
  • google-site-verification=or5NDV8CbtcBNPbvq1LKxRNbRjYGxCBfScjYtpLDV9A

Email authentication strong

SPF
v=spf1 include:_spf.google.com include:_spf.salesforce.com include:amazonses.com include:21724310.spf02.hubspotemail.net ~all
softfail (~all)
DMARC
v=DMARC1; p=quarantine; pct=100; rua=mailto:dmarc-reports@compoundplanning.com; sp=none; aspf=r;
policy: quarantine · sp=none
DKIM
Show 4 DKIM selectors
  • google: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnuJj2oR7AMlP44K+0HWqtZUTMyydFwbdhBPwQ46TvgOhzbz2b6irItgMtIdi/pe+BtmBUvDjo0eAqP…
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsiAmYJ/FJD9UmVnLoQS4uiT1wL8MS4QeDpCDvIq5mZEUJfVgH1pKZX6CdE530lAr61OO1iNX+wmxorsPB3…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC6yrM/0E3NkRXJZH60mcmaDveCY+t1CK/abcTLuzctNcLermRqa9ZNyTi/4YUHIBkdmJTTgBXb+DIG0U0jt3bdfa…
selectors probed

Certificate (current)

WE1
from 2026-04-18 to 2026-07-17
Expires in 59 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://compoundplanning.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
origin-when-cross-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self' blob: https://*.compoundplanning.com; connect-src 'self' https://*.compoundplanning.com https://api.hubapi.com https://browser-intake-datadoghq.com https://cta-service-cms2.hubspot.com https://data.sequel.io https://distillery.wistia.com https://embed-cloudfront.wistia.com https://fast.wistia.com https://fast.wistia.net https://nucleus.default.com https://o1180762.ingest.us.sentry.io https://pipedream.wistia.com https://sr-client-cfg.amplitude.com https://us-assets.i.posthog.com https://us.i.posthog.com https://v8zt8kni.apicdn.sanity.io https://www.google.com https://*.google-analytics.com https://px.ads.linkedin.com https://*.googletagmanager.com https://*.googleadservices.com https://static.hsappstatic.net https://browser.sentry-cdn.com https://api.introvoke.com; script-src * 'self' 'unsafe-eval' 'unsafe-inline' blob:; style-src 'self' 'unsafe-inline' https://*.compoundplanning.com https://assets.calendly.com https://fast.wistia.com https://pixel-cdn.default.com; i
strict-transport-security
max-age=63072000; includeSubDomains; preload

Links to (3)

Linked from (1)