mealthinker.com

.com crawl

First seen 2026-04-30 · Last seen 2026-04-30 · ok HTTP/1.1 200 3621 ms crawled 2026-05-08

US · 104.21.66.23 · AS13335 Cloudflare, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
MealThinker - AI Meal Planning That Remembers You
Description
AI meal planning that remembers your kitchen, preferences, and nutrition goals. Plan personalized meals in seconds. Free 7-day trial.
Language
en
Canonical
https://mealthinker.com

Open Graph

url
https://mealthinker.com
title
MealThinker - AI Meal Planning That Remembers You
locale
en_US
site name
MealThinker
description
MealThinker is an AI meal planner that remembers your kitchen, dietary preferences, and nutrition goals. Plan personalized meals in seconds, track macros automatically, and reduce food waste. 7-day free trial.

Technology

CDN
Cloudflare
CMS
Next.js
Analytics
  • Google Tag Manager

Third-party hosts loaded (2)

  • toolbox.marketingtools.apple.com×2
  • www.googletagmanager.com×1

Registration

Registrar
NameCheap, Inc.
Created
2026-01-04
Expires
2027-01-04 228 days left
Updated
2026-01-05
Name servers
  • gordon.ns.cloudflare.com
  • summer.ns.cloudflare.com

DNS records live

NS
  • gordon.ns.cloudflare.com
  • summer.ns.cloudflare.com
MX
  • 24 route1.mx.cloudflare.net
  • 56 route2.mx.cloudflare.net
  • 6 route3.mx.cloudflare.net
Verified for
  • Google

Email authentication strong

SPF
v=spf1 include:amazonses.com include:_spf.mx.cloudflare.net include:_spf.mlsend.com ~all
softfail (~all)
DMARC
v=DMARC1; p=quarantine;
policy: quarantine
DKIM
no key found at common selectors

Certificate (current)

WE1
from 2026-05-04 to 2026-08-02
Expires in 73 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://mealthinker.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-opener-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
DENY
permissions-policy
camera=(), microphone=(), geolocation=()
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' https://js.stripe.com https://static.cloudflareinsights.com https://www.googletagmanager.com https://www.google-analytics.com https://googleads.g.doubleclick.net https://challenges.cloudflare.com https://us-assets.i.posthog.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https: blob: https://www.googletagmanager.com https://www.google-analytics.com https://www.google.com https://googleads.g.doubleclick.net; connect-src 'self' https://api.stripe.com https://*.supabase.co https://generativelanguage.googleapis.com https://accounts.google.com https://*.sentry.io https://cloudflareinsights.com https://www.google-analytics.com https://googleads.g.doubleclick.net https://www.googletagmanager.com https://www.googleadservices.com https://www.google.com https://challenges.cloudflare.com https://us.i.posthog.com https://us-assets.i.posthog.com; frame-src https:
strict-transport-security
max-age=31536000; includeSubDomains; preload
cross-origin-opener-policy
same-origin-allow-popups

Links to (2)

Linked from (1)