tonethreads.com

.com crawl

First seen 2026-05-15 · Last seen 2026-05-15 · ok HTTP/1.1 200 1973 ms crawled 2026-05-20

US · 172.66.40.65 · AS13335 Cloudflare, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
ToneThreads
Description
ToneThreads | INDIE MUSIC MERCH HUB | Platform for musicians, bands and record labels to create and sell merch direct to fans on Bandcamp, Spotify and more.

Technology

CDN
Cloudflare
Analytics
  • Cloudflare Insights
Fonts
  • Google Fonts
Third-party hosts loaded (11)
  • res.cloudinary.com×18
  • res-4.cloudinary.com×7
  • res-5.cloudinary.com×4
  • cdn.snipcart.com×2
  • app.snipcart.com×1
  • apps.elfsight.com×1
  • cdnjs.cloudflare.com×1
  • fonts.googleapis.com×1
  • maxcdn.bootstrapcdn.com×1
  • static.cloudflareinsights.com×1
  • www.facebook.com×1

Social

Registration

Registrar
1API GmbH
Created
2014-10-29
Expires
2027-10-29 526 days left
Updated
2025-11-23
Name servers
  • alec.ns.cloudflare.com
  • naomi.ns.cloudflare.com

DNS records live

NS
  • alec.ns.cloudflare.com
  • naomi.ns.cloudflare.com
MX
Show 7 MX records
  • 10 aspmx.l.google.com
  • 20 alt1.aspmx.l.google.com
  • 20 alt2.aspmx.l.google.com
  • 30 aspmx2.googlemail.com
  • 30 aspmx3.googlemail.com
  • 30 aspmx4.googlemail.com
  • 30 aspmx5.googlemail.com
Verified for
  • Google

Email authentication weak

SPF
not published
DMARC
v=DMARC1; p=none;
policy: none (monitoring only)
DKIM
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqstiXWSbkeDLcWAcfxt5Ct0K0VhpEuSC9ibUckzWjO+Aw/bMm+HQAGH/Y6/FGgtydXprzXdcW6zQpzxc+U…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDLiMBrUEc8Eg0DU1WSAoYfXlgpKrZ+7v2E6d6+ARzDAnunL8m02mmYII4Q6ieTsgGrhdDx11wStm4eTb8gVJwK7D…
selectors probed

Certificate (current)

WE1
from 2026-04-04 to 2026-07-03
Expires in 44 days

HTTP security headers

Header hygiene 55/100 Checked live page: https://tonethreads.com/

present
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • missing HSTS
  • missing Content Security Policy
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff

Links to (1)

Linked from (1)