scratchfullcasino.com

.com crawl

First seen 2026-05-13 · Last seen 2026-05-13 · ok HTTP/1.1 200 1137 ms crawled 2026-05-19

US · 45.55.107.199 · AS14061 DigitalOcean, LLC

Reputation 100/100

Classifying

HTML metadata

Title
Scratchful Casino Won’t Leave You Scratching Your Head
Description
What do we know about Scratchful Casino? Just about everything it is possible to know prior to playing games there. If you are keen to find out how this alternative site works, we have all the news in our detailed casino review.
Language
en
Canonical
https://scratchfullcasino.com/

Technology

Server
nginx
CMS
Nuxt

Third-party hosts loaded (1)

  • service.nyc3.cdn.digitaloceanspaces.com×19

Registration

Registrar
GoDaddy.com, LLC
Created
2025-01-31
Expires
2027-01-31 255 days left
Updated
2026-01-07
Name servers
  • ns01.webpropertiesmanagment.com
  • ns02.webpropertiesmanagment.com

DNS records live

NS
  • ns01.webpropertiesmanagment.com
  • ns02.webpropertiesmanagment.com

Email authentication no MX

SPF
not published
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

R13
from 2026-03-27 to 2026-06-25
Expires in 35 days

HTTP security headers

Header hygiene 95/100 Checked live page: https://scratchfullcasino.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-opener-policy
  • cross-origin-embedder-policy
  • cross-origin-resource-policy
findings
  • CSP allows unsafe inline scripts/styles
Header values
referrer-policy
no-referrer
x-frame-options
SAMEORIGIN
permissions-policy
camera=(), display-capture=(), fullscreen=(), geolocation=(), microphone=()
x-content-type-options
nosniff
content-security-policy
base-uri 'none'; font-src 'self' https: data:; form-action 'self'; frame-ancestors 'self'; img-src 'self' data: https://service.nyc3.cdn.digitaloceanspaces.com; object-src 'none'; script-src-attr 'none'; style-src 'self' https: 'unsafe-inline'; script-src 'self' https: 'unsafe-inline'; upgrade-insecure-requests;
strict-transport-security
max-age=15552000; includeSubDomains
cross-origin-opener-policy
same-origin
cross-origin-embedder-policy
credentialless
cross-origin-resource-policy
same-origin

Linked from (1)