echelonfit.com

.com crawl

First seen 2026-04-19 · Last seen 2026-05-16 · ok HTTP/1.1 200 1342 ms crawled 2026-05-13

CA · 23.227.38.32 · AS13335 Cloudflare, Inc.

Reputation 100/100

ecommerce

HTML metadata

Title
Home Exercise Equipment | Echelon – Echelon Fit US
Description
Echelon bikes, ellipticals, treadmills, climbers, and rowers bring immersive studio-quality workouts to the convenience of your home! Buy now, pay later with flexible payment options, and feel confident in your purchase with our 30 day no-hassle return policy.
Language
en
Canonical
https://echelonfit.com/

Open Graph

url
https://echelonfit.com/
title
Home Exercise Equipment | Echelon
site name
Echelon Fit US
description
Echelon bikes, ellipticals, treadmills, climbers, and rowers bring immersive studio-quality workouts to the convenience of your home! Buy now, pay later with flexible payment options, and feel confident in your purchase with our 30 day no-hassle return policy.

Technology

CDN
Cloudflare
CMS
Shopify
Analytics
  • Google Tag Manager
Ads
  • Amazon Ads
Cookie consent
  • OneTrust
Fonts
  • Adobe Fonts
  • Google Fonts
Third-party hosts loaded (29)
  • cdn.jsdelivr.net×6
  • cdnjs.cloudflare.com×6
  • cdn.shopify.com×5
  • fonts.googleapis.com×3
  • app.flash-speed.com×2
  • fonts.gstatic.com×2
  • shop.app×2
  • use.typekit.net×2
  • ajax.googleapis.com×1
  • api.config-security.com×1
  • assets.ai.happyfox.com×1
  • cdata.mpio.io×1
  • cdn-loyalty.yotpo.com×1
  • cdn-widgetsrepository.yotpo.com×1
  • cdn.cookielaw.org×1
  • cdn.intelligems.io×1
  • conf.config-security.com×1
  • fonts.shopifycdn.com×1
  • insight.adsrvr.org×1
  • js.adsrvr.org×1
  • lsdm.co×1
  • maps.googleapis.com×1
  • maps.gstatic.com×1
  • monorail-edge.shopifysvc.com×1
  • productreviews.shopifycdn.com×1
  • s.amazon-adsystem.com×1
  • static.klaviyo.com×1
  • strategicmedia-3-adswizz.attribution.adswizz.com×1
  • www.googletagmanager.com×1

Social

Contact

Phone

Registration

Registrar
GoDaddy.com, LLC
Created
2017-08-17
Expires
2026-08-17 89 days left
Updated
2025-08-18
Name servers
  • ns-1355.awsdns-41.org
  • ns-1638.awsdns-12.co.uk
  • ns-360.awsdns-45.com
  • ns-986.awsdns-59.net

DNS records live

NS
  • ns-1355.awsdns-41.org
  • ns-1638.awsdns-12.co.uk
  • ns-360.awsdns-45.com
  • ns-986.awsdns-59.net
MX
  • 1 aspmx.l.google.com
  • 10 alt3.aspmx.l.google.com
  • 10 alt4.aspmx.l.google.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
TXT
Show 5 TXT records
  • klaviyo-site-verification=WnptDb
  • mandrill._domainkey v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCrLHiExVd55zd/IQ/J/mRwSRMAocV/hMB3jXwaHH36d9NaVynQFYV8NaWi69c1veUtRzGt7yAioXqLj7Z4TeEUoOLgrKsn8YnckGs9i3B3tVFB+Ch/4mPhXWiNfNdynHWBcPcbJ8kjEQ2U8y78dHZj1YeRXXVvWob2OaKynO8/lQIDAQAB;
  • mandrill_verify.BdJkOd4EVBOokyyYFpoUFg
  • v=DMARC1; p=none; rua=mailto:606f2c9027dc1@ag.dmarcly.com; ruf=mailto:606f2c9027dc1@fo.dmarcly.com; sp=none; adkim=s; aspf=s; pct=100; fo=0;
  • klaviyo-site-verification=HRNMEN
Verified for
  • Apple
  • Google
  • Microsoft 365
  • Shopify

Email authentication strong

SPF
v=spf1 include:_spf.google.com include:sendgrid.net include:spf.reply.io include:_spf.centercode.com include:spf.happyfox.com -all
strict (-all)
DMARC
v=DMARC1; p=quarantine; rua=mailto:606f2c9027dc1@ag.dmarcly.com; ruf=mailto:606f2c9027dc1@fo.dmarcly.com; sp=none; pct=20; fo=0
policy: quarantine · pct=20 · sp=none
DKIM
  • google: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyB+2IRxxB/4aI7V7Qm8erynsHZd4rzzxgZcBzTqvo/aK0xWbPyVRfShdCP5FmorevHPXTyMW3aKZA5…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6B3IwhRDA9j74EsrAODQXwpfmNfGmJ6w+qWbdrLysg0gaIGPIDu4jsOqTBunVTVZk6Eu1k9EZnqlGvGWIu…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC3I6yp1tQIsOEWrYEe9G64+Pu2dUJ04CTcfl/FKolSvDfS0z3uVzuHIoBbLNC5d2DvJEprm4947SzF1idal+QCjW…
selectors probed

Certificate (current)

E8
from 2026-03-30 to 2026-06-28
Expires in 39 days

HTTP security headers

Header hygiene 70/100 Checked live page: https://echelonfit.com/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
findings
  • short HSTS max-age
  • CSP uses wildcard sources
  • missing frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-content-type-options
nosniff
content-security-policy
block-all-mixed-content; frame-ancestors *; upgrade-insecure-requests;
strict-transport-security
max-age=7889238

Links to (7)

Linked from (2)