screenshotbot.io

.io crawl

First seen 2026-04-14 · Last seen 2026-05-08 · ok HTTP/1.1 200 2227 ms crawled 2026-05-08

US · 32.193.155.146 · AS14618 Amazon.com, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Screenshotbot
Description
Build Pixel Perfect Apps with Screenshot Tests
Language
en

Open Graph

title
Scale up your screenshot tests, without the friction
description
Automated screenshot testing for Android, iOS, and web apps. Catch UI regressions in CI/CD with GitHub, GitLab integration. Better than Git LFS for screenshot storage.

Technology

Server
nginx
Analytics
  • Google Tag Manager
  • Plausible
Third-party hosts loaded (7)
  • cdn.jsdelivr.net×3
  • embed-v2.testimonial.to×1
  • js.hs-scripts.com×1
  • plausible.io×1
  • testimonial.to×1
  • unpkg.com×1
  • www.googletagmanager.com×1

Social

Contact

Email
Address
st and Securitypage.© 2018

DNS records live

NS
  • ns-1386.awsdns-45.org
  • ns-1652.awsdns-14.co.uk
  • ns-251.awsdns-31.com
  • ns-570.awsdns-07.net
MX
  • 1 aspmx.l.google.com
  • 10 alt3.aspmx.l.google.com
  • 10 alt4.aspmx.l.google.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
TXT
  • stripe-verification=C488ACF95410A1BC5C0BF4DAF0BE53CAE568D477EDA98EDE6851042D44121826
  • gradle-verification=FIIRBDS2AJAD0GAE0DOS08LN8CHCV
  • stripe-verification=062b985768779694cc5ae574d20c5af821b8fedc106ae606c247d453ec210b7d

Email authentication strong

SPF
v=spf1 include:amazonses.com include:_spf.google.com include:servers.mcsv.net a -all
strict (-all)
DMARC
v=DMARC1; p=quarantine; pct=10; rua=mailto:arnold@screenshotbot.io
policy: quarantine · pct=10
DKIM
  • google: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAkJqRCxboGXpa7a6AIcx7wAhNe0cTTkpmiHuPBtaNKX4x1BF5tNJ4ZuWo5QV+IX/Pmx3sTUbhHSzqDx…
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed

Certificate (current)

Amazon RSA 2048 M04
from 2026-05-04 to 2026-11-18
Expires in 182 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://screenshotbot.io/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
DENY
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' https://js.stripe.com https://cdnjs.cloudflare.com https://cdn.jsdelivr.net https://unpkg.com https://assets.calendly.com https://code.jquery.com https://js.hs-scripts.com https://js.hs-banner.com https://js.hs-analytics.net https://js.hscollectedforms.net https://js.usemessages.com https://www.googletagmanager.com https://googleads.g.doubleclick.net https://www.googleadservices.com https://testimonial.to https://cdn.gdprlocal.com https://*.hotjar.com https://*.cookiebot.com https://static.hsappstatic.net https://www.google.com https://www.gstatic.com https://plausible.io https://js.hsforms.net https://cdn.screenshotbot.io; style-src 'self' 'unsafe-inline' https://cdnjs.cloudflare.com https://cdn.jsdelivr.net https://stackpath.bootstrapcdn.com https://assets.calendly.com https://fonts.googleapis.com https://cdn.screenshotbot.io; font-src 'self' data: https://fonts.gstatic.com https://cdn.jsdelivr.net https://cdn.screenshotbot.io; im
strict-transport-security
max-age=31536000; includeSubDomains

Links to (6)

Linked from (2)