resy.com

.com crawl

First seen 2026-04-11 · Last seen 2026-05-19 · ok HTTP/1.1 200 1001 ms crawled 2026-05-18

US · 45.60.196.128 · AS19551 Incapsula Inc

Reputation 100/100

Classifying

HTML metadata

Title
Resy | Right This Way
Description
Discover restaurants to love in your city and beyond. Get the latest restaurant intel and explore Resy’s curated guides to find the right spot for any occasion. Book your table now through the Resy iOS app or Resy.com.

Open Graph

title
Resy | Right This Way
site name
Resy
description
Discover restaurants to love in your city and beyond. Get the latest restaurant intel and explore Resy’s curated guides to find the right spot for any occasion. Book your table now through the Resy iOS app or Resy.com.

Technology

Server
nginx

Third-party hosts loaded (2)

  • js.stripe.com×1
  • www.google.com×1

Registration

Registrar
CSC Corporate Domains, Inc.
Created
2001-11-14
Expires
2026-11-14 178 days left
Updated
2025-11-10
Name servers
  • ns-1305.awsdns-35.org
  • ns-1623.awsdns-10.co.uk
  • ns-188.awsdns-23.com
  • ns-992.awsdns-60.net

DNS records live

NS
  • ns-1305.awsdns-35.org
  • ns-1623.awsdns-10.co.uk
  • ns-188.awsdns-23.com
  • ns-992.awsdns-60.net
MX
  • 10 mx0a-0023b801.pphosted.com
  • 10 mx0b-0023b801.pphosted.com
TXT
Show 12 TXT records
  • stripe-verification=3b57a009b3932b56d859d0636dd3658fe51bd4b8b237c60fddcff066091c8783
  • mongodb-site-verification=xzjH9EuTmelR5qq3YYqFNiFWxf7SeAoN
  • apple-domain-verification=ma146C9KsxGLvJ5_2Lq8fl1FhfxawDHTURa7-wBW7kw
  • applause-verification:dc0bbb73-89fb-4280-96a7-d621b86df2e1
  • docusign=1fbd3bf5-2ce6-414a-a29a-f3704f6316dc
  • openai-domain-verification=dv-xjLkW1GctZKaSAHlfDsAi2jT
  • adobe-idp-site-verification=9018ee4f118d4fc1e75c5c2df0a11f8e38548b82eeb542fca1c1d14f5d790453
  • stripe-verification=ab446969e63ef2ffadc98cf236a8464703b8795ed7f6e350694e0cae7c082fe5
  • globalsign-domain-verification=860A3A5C15A51DB5681B03B15D4C74CB
  • cisco-ci-domain-verification=7c4c5d72e21e7ca07794c4b3aad7fc9216a21ebd24d19e04ddee48b9dfdee0a7
  • mixpanel-domain-verify=abbd437a-ac4c-4274-98b0-0de4e18e1f36
  • atlassian-domain-verification=olpcnEwZIB2SYPJZE8x12kWM90/R0Nv198d9lC1vwyVV1jKCllLxDvZNpaU3A9Kj

Email authentication strong

SPF
v=spf1 mx exists:%{ir}.spf.americanexpress.com include:amazonses.com include:spf.braintreegateway.com include:spf.mandrillapp.com include:_spf.salesforce.com include:_spf.qemailserver.com a:zgateway.zuora.com -all
strict (-all)
DMARC
v=DMARC1; p=reject; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.com
policy: reject (enforced)
DKIM
  • smtpapi: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed

Certificate (current)

DigiCert EV RSA CA G2
from 2025-08-26 to 2026-08-26
Expires in 98 days

HTTP security headers

Header hygiene 70/100 Checked live page: https://resy.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
DENY
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' widgets.demo.resy.com widgets.dev.resy.com widgets.sandbox.resy.com widgets.staging.resy.com widgets.resy.com cdaas-dev.americanexpress.com cdaas-dev.aexp.com qwww.aexp-static.com www.aexp-static.com assets.adobedtm.com cdn.amplitude.com d2zah9y47r7bi2.cloudfront.net www.datadoghq-browser-agent.com connect.facebook.net www.google.com maps.googleapis.com www.googletagmanager.com maps.gstatic.com www.gstatic.com cdn4.mxpnl.com static.simonsignal.com tr.snapchat.com tr6.snapchat.com *.js.stripe.com js.stripe.com js.adsrvr.org sc-static.net cdn.trackjs.com api.chilipiper.com apps.chilipiper.com fire.chilipiper.com js.chilipiper.com static.cloudflareinsights.com js.hsforms.net js.hs-scripts.com js.hubspot.com amex-sandbox.chilipiper.com *.hs-analytics.net *.hs-banner.com *.hs-scripts.com *.hsadspixel.net *.hscollectedforms.net snap.licdn.com googleads.g.doubleclick.net resy.chilipiper.com; connect-src 'self' annotation.demo.resy.com anno
strict-transport-security
max-age=31536000; includeSubDomains

Linked from (50)