letsdiscover.app

.app crawl

First seen 2026-04-27 · Last seen 2026-05-17 · ok HTTP/1.1 200 9088 ms crawled 2026-05-04

US · 216.198.79.1 · AS16509 Amazon.com, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
London's Creator-Curated Restaurants, Bars & Hidden Gems
Description
Find the best London restaurants, bars, and hidden gems recommended by the creators you trust. Follow your favourite food and lifestyle creators, explore their picks on an interactive map, and book instantly.
Language
en
Canonical
https://letsdiscover.app

Open Graph

url
https://letsdiscover.app
title
London's Creator-Curated Restaurants, Bars & Hidden Gems
locale
en_GB
site name
Lets Discover
description
Follow your favourite London creators to instantly unlock their entire library of recommendations on one interactive map. Eat, drink, and experience the city like a local.

Technology

CDN
Vercel
CMS
Next.js
Analytics
  • Google Tag Manager

Third-party hosts loaded (3)

  • api.fontshare.com×3
  • cdn.fontshare.com×1
  • www.googletagmanager.com×1

Social

Contact

Email

DNS records live

NS
  • kate.ns.cloudflare.com
  • lee.ns.cloudflare.com
MX
  • 1 aspmx.l.google.com
  • 10 alt3.aspmx.l.google.com
  • 10 alt4.aspmx.l.google.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
TXT
Show 4 TXT records
  • v=spf1 include:_spf.google.com ~all
  • facebook-domain-verification=qa6oiof9licv1nn3kvdb61wu2gdzkf
  • google-site-verification=8HKcDzSQ2_nEyUU2GXozwaVlgobMKmWN6jPLWTUHb7s
  • google-site-verification=hVibS5evu-Btkla5ru_eX63Z3z7alPVwL287dl6H3LU

Certificate (current)

R13
from 2026-04-07 to 2026-07-06
Expires in 49 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.letsdiscover.app/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
DENY
permissions-policy
camera=(), microphone=(), geolocation=()
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' https://www.googletagmanager.com https://tally.so; style-src 'self' 'unsafe-inline' https://api.fontshare.com; font-src 'self' https://api.fontshare.com; img-src 'self' data: blob: https://images.unsplash.com https://*.supabase.co https://image.mux.com https://www.googletagmanager.com; connect-src 'self' https://*.supabase.co https://www.google-analytics.com https://analytics.google.com https://api.indexnow.org; frame-src https://tally.so; media-src 'self' https://*.supabase.co https://image.mux.com; worker-src blob:; object-src 'none'; base-uri 'self'
strict-transport-security
max-age=63072000; includeSubDomains; preload

Links to (5)

Linked from (1)