fonts.com

.com crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 1095 ms crawled 2026-05-18

US · 104.19.229.57 · AS13335 Cloudflare, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Fonts.com | Find, Buy & Download Best Fonts
Description
Browse and find the best selection of high-quality desktop and web fonts. Try, buy and download classics, new releases, and best selling fonts.
Language
en
Canonical
https://www.fonts.com

Open Graph

url
https://www.fonts.com
title
Fonts.com | Find, Buy & Download Best Fonts
locale
en_US
site name
Fonts.com
description
Browse and find the best selection of high-quality desktop and web fonts. Try, buy and download classics, new releases, and best selling fonts.
locale:alternate
ja_JP

Technology

CDN
Cloudflare
CMS
Gatsby

Third-party hosts loaded (1)

  • fast.fonts.net×14

Registration

Registrar
GoDaddy.com, LLC
Created
2000-12-10
Expires
2026-12-10 205 days left
Updated
2025-12-11
Name servers
  • peyton.ns.cloudflare.com
  • tina.ns.cloudflare.com

DNS records live

NS
  • peyton.ns.cloudflare.com
  • tina.ns.cloudflare.com
MX
  • 0 fonts-com.mail.protection.outlook.com
TXT
  • openai-domain-verification=dv-2moBBtHsnyvgIGwrNeU3c6GO
  • v4ntbg821cryjw0f9g5l47syq45rk3wl
  • apple-domain-verification=mCFO8l9TAy33nb3Q

Email authentication strong

SPF
v=spf1 ip4:192.5.106.0/24 ip4:167.89.14.37 ip4:66.77.30.183 ip4:131.226.233.134 include:spf.protection.outlook.com include:_spf.salesforce.com include:cust-spf.exacttarget.com include:_spf.createsend.com ~all
softfail (~all)
DMARC
v=DMARC1; p=quarantine;
policy: quarantine
DKIM
  • smtpapi: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed

Certificate (current)

WE1
from 2026-05-09 to 2026-08-07
Expires in 80 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.fonts.com

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
frame-ancestors 'self';media-src 'self' js.intercomcdn.com; connect-src 'self' https://cdn.cookielaw.org api-iam.intercom.io nexus-websocket-a.intercom.io api-iam.intercom.io nexus-websocket-a.intercom.io wss://nexus-websocket-a.intercom.io cdn.cookielaw.org geolocation.onetrust.com www.google-analytics.com *.clarity.ms stats.g.doubleclick.net;default-src 'self';frame-src 'self' intercom-sheets.com; script-src 'self' *.intercomcdn.com *.heapanalytics.com www.googletagmanager.com cdn.cookielaw.org platform.twitter.com www.clarity.ms www.google-analytics.com static.ads-twitter.com widget.intercom.io 'unsafe-inline';style-src 'self' 'unsafe-inline' www.googletagmanager.com fonts.googleapis.com;font-src 'self' fonts.googleapis.com fonts.gstatic.com fonts.intercomcdn.com;img-src 'self' *.intercomcdn.com fonts.gstatic.com fast.fonts.net heapanalytics.com cdn.cookielaw.org c.clarity.ms t.co analytics.twitter.com c.bing.com www.google.com www.google.com.np https://www.googletagmanager.com stat
strict-transport-security
max-age=31536000; includeSubDomains

Links to (3)

Linked from (11)