mostlymusic.com

.com crawl

First seen 2026-05-08 · Last seen 2026-05-08 · ok HTTP/1.1 200 3425 ms crawled 2026-05-15

CA · 23.227.38.32 · AS13335 Cloudflare, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
The Heartbeat of Jewish Music
Description
Stream and rent Jewish films, shows, and concerts with Mostly Music — the trusted platform for exclusive video and timeless Jewish music.
Language
en
Canonical
https://mostlymusic.com/
Translations
  • en ×3
  • he

Open Graph

url
https://mostlymusic.com/
title
The Heartbeat of Jewish Music
site name
Mostly Music
description
Stream and rent Jewish films, shows, and concerts with Mostly Music — the trusted platform for exclusive video and timeless Jewish music.

Technology

CDN
Cloudflare
CMS
Shopify
Third-party hosts loaded (16)
  • cdn.shopify.com×26
  • cdn.jsdelivr.net×3
  • shop.app×2
  • www.setubridgeapps.com×2
  • bundle.5gtb.com×1
  • cdn.chaty.app×1
  • cdn1.stamped.io×1
  • config.gorgias.chat×1
  • config.gorgias.help×1
  • content.9gtb.com×1
  • fonts.shopifycdn.com×1
  • mm-uxrv.com×1
  • monorail-edge.shopifysvc.com×1
  • productreviews.shopifycdn.com×1
  • static.klaviyo.com×1
  • www.shopperapproved.com×1

Contact

Phone

Registration

Registrar
Network Solutions, LLC
Created
1996-05-16
Expires
2029-05-17 1092 days left
Updated
2024-03-19
Name servers
  • ns71.worldnic.com
  • ns72.worldnic.com

DNS records live

NS
  • ns71.worldnic.com
  • ns72.worldnic.com
MX
  • 10 aspmx.l.google.com
  • 20 alt1.aspmx.l.google.com
  • 30 alt2.aspmx.l.google.com
  • 40 aspmx2.googlemail.com
  • 50 aspmx3.googlemail.com
TXT
  • klaviyo-site-verification=QSQMcM

Email authentication partial

SPF
v=spf1 include:mailgun.org ~all
softfail (~all)
DMARC
v=DMARC1; p=none
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

E8
from 2026-03-30 to 2026-06-28
Expires in 38 days

HTTP security headers

Header hygiene 70/100 Checked live page: https://mostlymusic.com/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
findings
  • short HSTS max-age
  • CSP uses wildcard sources
  • missing frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-content-type-options
nosniff
content-security-policy
block-all-mixed-content; frame-ancestors *; upgrade-insecure-requests;
strict-transport-security
max-age=7889238

Links to (4)

Linked from (1)