partylootapp.com

.com crawl

First seen 2026-04-28 · Last seen 2026-05-18 · ok HTTP/1.1 200 1973 ms crawled 2026-05-06

US · 18.233.130.67 · AS14618 Amazon.com, Inc.

Reputation 95/100 weak security headers

sector gaming type homepage

HTML metadata

Title
Party Loot - The Ultimate D&D Loot Tracker
Description
Party Loot - The ultimate D&D loot tracker for tabletop RPG campaigns. Track your party's funds, items, and magic treasures with ease.
Language
en

Technology

Server
nginx
Fonts
  • Google Fonts

Third-party hosts loaded (4)

  • cdn.jsdelivr.net×3
  • cdnjs.cloudflare.com×2
  • fonts.googleapis.com×2
  • fonts.gstatic.com×1

Social

Registration

Registrar
Amazon Registrar, Inc.
Created
2025-02-21
Expires
2027-02-21 276 days left
Updated
2025-02-21
Name servers
  • ns-1527.awsdns-62.org
  • ns-1578.awsdns-05.co.uk
  • ns-518.awsdns-00.net
  • ns-88.awsdns-11.com

DNS records live

NS
  • ns-1527.awsdns-62.org
  • ns-1578.awsdns-05.co.uk
  • ns-518.awsdns-00.net
  • ns-88.awsdns-11.com
Verified for
  • Google

Certificate (current)

E8
from 2026-02-16 to 2026-05-17
Expired 4 days ago

HTTP security headers

Header hygiene 45/100 Checked live page: https://partylootapp.com/home

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' https://cdn.jsdelivr.net https://cdnjs.cloudflare.com; style-src 'self' 'unsafe-inline' https://cdn.jsdelivr.net https://cdnjs.cloudflare.com https://fonts.googleapis.com; font-src 'self' https://fonts.gstatic.com https://cdnjs.cloudflare.com; img-src 'self' data: https://www.dndbeyond.com https://character-service.dndbeyond.com; connect-src 'self' https://www.dnd5eapi.co https://partylootapp.com

Links to (3)

Linked from (2)