festapp.io

.io crawl

First seen 2026-04-14 · Last seen 2026-05-14 · ok HTTP/1.1 200 1227 ms crawled 2026-05-11

US · 216.150.1.1 · AS16509 Amazon.com, Inc.

Reputation 100/100

sector entertainment type homepage

HTML metadata

Title
Discover Festivals, Artists & Lineups Worldwide | FEST App
Description
Discover music festivals worldwide. Find festival dates, lineups, schedules, tickets and track your favorite artists. Explore upcoming festivals, view detailed schedules, and never miss a live music experience.
Language
en
Canonical
https://festapp.io/
Translations
  • en
  • es
  • fr

Open Graph

url
https://festapp.io/
title
Discover Festivals, Artists & Lineups Worldwide
locale
en
site name
FEST App
description
Discover music festivals worldwide. Find festival dates, lineups, schedules, tickets and track your favorite artists. Explore upcoming festivals, view detailed schedules, and never miss a live music experience.

Technology

CDN
Vercel
CMS
Next.js

Social

DNS records live

NS
  • kobe.ns.cloudflare.com
  • marissa.ns.cloudflare.com
MX
Show 6 MX records
  • 1 aspmx.l.google.com
  • 10 alt3.aspmx.l.google.com
  • 10 alt4.aspmx.l.google.com
  • 15 5dvcmkzg63gaeqxforrk4xmhc62nktyz7dwufec6rrgpiffxkz7a.mx-verification.google.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
TXT
  • firebase=fest-e6e8f

Email authentication strong

SPF
v=spf1 include:_spf.google.com include:amazonses.com ~all
softfail (~all)
DMARC
v=DMARC1; p=quarantine; pct=100
policy: quarantine
DKIM
  • google: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsmADe5CMthiKFjjDW2I0XTtmL5dx2wuv9DvQMIuRse6/f244EUTF5NvhBuIMPpV5zF/fR62EvrnFqP…
  • mail: k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed

Certificate (current)

R13
from 2026-05-05 to 2026-08-03
Expires in 74 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://festapp.io/

present
  • strict-transport-security
  • content-security-policy-report-only
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • missing Content Security Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
camera=(), microphone=(), geolocation=(), browsing-topics=(), interest-cohort=()
x-content-type-options
nosniff
strict-transport-security
max-age=63072000; includeSubDomains; preload
content-security-policy-report-only
default-src 'self'; base-uri 'self'; object-src 'none'; frame-ancestors 'self'; form-action 'self'; upgrade-insecure-requests; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://alcatrazed.festapp.io; style-src 'self' 'unsafe-inline'; font-src 'self' data:; img-src 'self' data: blob: https://cdn.partita.io https://fest-images-na.s3.ca-central-1.amazonaws.com https://gg.festapp.io https://pub-bdaa0cd39f5e44ca8d82c767d97293b6.r2.dev https://prod-files-secure.s3.us-west-2.amazonaws.com https://cdn.magicui.design; connect-src 'self' https://*.convex.cloud wss://*.convex.cloud https://*.convex.site https://api.htmlpix.com https://alcatrazed.festapp.io; frame-src 'self' https://cal.com https://*.cal.com https://www.youtube.com https://www.youtube-nocookie.com https://player.vimeo.com; worker-src 'self' blob:

Links to (5)

Linked from (3)