salinarooftop.com

.com crawl

First seen 2026-04-30 · Last seen 2026-05-19 · ok HTTP/1.1 200 618 ms crawled 2026-05-07

US · 151.101.1.75 · AS54113 Fastly, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Home | Salina Rooftop | The Piccolo at Paso Robles Inn
Description
Paso's only rooftop bar. Perched atop The Piccolo at Paso Robles Inn above the Paso Robles town square, Salina is where wild roots meet high vibes. Summer 2026.
Language
en-US
Canonical
https://www.salinarooftop.com/

Open Graph

url
https://www.salinarooftop.com/
title
Home | Salina Rooftop | The Piccolo at Paso Robles Inn
site name
Salina Rooftop | American Restaurant in Paso Robles, CA
description
Paso's only rooftop bar. Perched atop The Piccolo at Paso Robles Inn above the Paso Robles town square, Salina is where wild roots meet high vibes. Summer 2026.

Technology

Analytics
  • Google Tag Manager
Fonts
  • Google Fonts
Third-party hosts loaded (14)
  • images.getbento.com×7
  • theme-assets.getbento.com×4
  • app-assets.getbento.com×3
  • assets-cdn-refresh.getbento.com×1
  • cdnjs.cloudflare.com×1
  • d23vrjykee3j4x.cloudfront.net×1
  • fonts.googleapis.com×1
  • fonts.gstatic.com×1
  • media-cdn.getbento.com×1
  • widgets.resy.com×1
  • wsv3cdn.audioeye.com×1
  • www.google.com×1
  • www.googletagmanager.com×1
  • www.gstatic.com×1

Social

Contact

Phone

Registration

Registrar
GoDaddy.com, LLC
Created
2025-05-19
Expires
2028-05-19 729 days left
Updated
2025-05-19
Name servers
  • ns25.domaincontrol.com
  • ns26.domaincontrol.com

DNS records live

NS
  • ns25.domaincontrol.com
  • ns26.domaincontrol.com

Email authentication no MX

SPF
not published
DMARC
v=DMARC1; p=reject; adkim=r; aspf=r; rua=mailto:dmarc_rua@onsecureserver.net;
policy: reject (enforced)
DKIM
no key found at common selectors

Certificate (current)

R13
from 2026-04-21 to 2026-07-20
Expires in 60 days

HTTP security headers

Header hygiene 65/100 Checked live page: https://www.salinarooftop.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • cross-origin-opener-policy
findings
  • short HSTS max-age
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
content-security-policy
default-src * blob: data: 'unsafe-inline' 'unsafe-eval'; script-src 'self' * https://cdn.us.heap-api.com https://heapanalytics.com https://viewer.threshold360.com 'unsafe-inline' 'unsafe-eval'; script-src-elem * https://viewer.threshold360.com 'unsafe-inline' 'unsafe-eval'; img-src 'self' * https://heapanalytics.com https://viewer.threshold360.com blob: data:; style-src 'self' * https://heapanalytics.com https://viewer.threshold360.com 'unsafe-inline' 'unsafe-eval' blob:; connect-src 'self' * https://c.us.heap-api.com https://heapanalytics.com https://viewer.threshold360.com wss://viewer.threshold360.com blob:; font-src 'self' * https://heapanalytics.com https://viewer.threshold360.com data:; frame-src 'self' * https://viewer.threshold360.com; worker-src * blob:; media-src * blob: data:; frame-ancestors 'self';
strict-transport-security
max-age=2592000; includeSubDomains
cross-origin-opener-policy
same-origin

Links to (3)

Linked from (1)