Summary
A Concise Overview of the scan result of url https://www.zola.com/wedding/mabryandhill2027
- Document
- HTML
- 20
- StyleSheets
- 0
- Scripts
- 5
- Font
- 0
- Images
- 4
- Links
- 10
- JavaScript Variables
- 26
- Console log messages
- 0
- Network
- Requests
- 30
- Bytes Transferred
- 193.98KB
- Bytes Total
- 488.52KB
- DNS Record
- A Record
- 4
- Technology
- IaaS
- 1
- PaaS
- 1
- JavaScript frameworks
- 1
- Font scripts
- 1
- Security
- 1
- RUM
- 1
- Analytics
- 1
- CDN
- 1
- Miscellaneous
- 1
Document
Links
The outgoing links identified from the page.
| Link | Text |
|---|---|
| https://baby.zola.com | Zola Baby |
| https://baby.zola.com/search/baby-registry | Find a baby registry |
| https://itunes.apple.com/us/app/zola-wedding-registry-gifts/id852691916 | |
| https://www.facebook.com/zola | |
| https://www.pinterest.com/zola | |
| https://x.com/zola | X |
| https://www.instagram.com/zola | |
| https://www.tiktok.com/@zola | TikTok |
| https://privacy.zola.com | Your privacy choices |
| https://www.allyant.com |
JavaScript Variables
Global JavaScript variables are variables that are defined outside of any function or block scope in JavaScript.
Technology
The technologies identified are present on the scanned URL.
| Name | Description | Detected patterns |
|---|---|---|
| Analytics | ||
Datadog | Datadog is a SaaS-based monitoring and analytics platform for large-scale applications and infrastructure. | Type: scriptSrc Regex: www\.datadoghq-browser-agent\.com |
| JavaScript frameworks | ||
React | React is an open-source JavaScript library for building user interfaces or UI components. | Type: html Regex: <[^>]{1,250}data-react |
| Security | ||
| HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS. | Type: headers Name: strict-transport-security Regex: (?:) | |
| Font scripts | ||
Typekit | Typekit is an online service which offers a subscription library of fonts. | Type: html Regex: <link [^>]{0,250}href="[^"]{1,250}use\.typekit\.(?:net|com) |
| Miscellaneous | ||
Google Cloud Storage | Google Cloud Storage allows world-wide storage and retrieval of any amount of data at any time. | Type: headers Name: x-goog-storage-class Regex: ^\w{1,250}$ |
| CDN | ||
Amazon CloudFront | Amazon CloudFront is a fast content delivery network (CDN) service that securely delivers data, videos, applications, and APIs to customers globally with low latency, high transfer speeds. | Type: headers Name: x-amz-cf-id Regex: \(CloudFront\)$ |
| PaaS | ||
Amazon Web Services | Amazon Web Services (AWS) is a comprehensive cloud services platform offering compute power, database storage, content delivery and other functionality. | Dependent on Amazon CloudFront |
| IaaS | ||
Google Cloud | Google Cloud is a suite of cloud computing services. | Dependent on Google Cloud Storage |
| RUM | ||
Datadog | Datadog is a SaaS-based monitoring and analytics platform for large-scale applications and infrastructure. | Type: scriptSrc Regex: www\.datadoghq-browser-agent\.com |
Performance
The speed and efficiency of the scanned URL loads and displays its content.
- dns
- 1 msGood
- tcp
- 29 msGood
- requestTime
- 2 msGood
- dom
- 327 msGood
DNS Record
A DNS record maps a domain name to an IP address or other resource information.
| Type | Name | Content | DNSSEC |
|---|---|---|---|
| A | www.zola.com | 52.85.151.106 | no |
| A | www.zola.com | 52.85.151.44 | no |
| A | www.zola.com | 52.85.151.36 | no |
| A | www.zola.com | 52.85.151.96 | no |
SSL Certificate
An SSL certificate is a digital certificate that verifies the authenticity and encrypts the communication between a website and its visitors.
| Subject | Issue date | Expiry date | Valid |
|---|---|---|---|
www.zola.com | 9/19/2026 | 9/20/2027 | 1 year 1 day |
d1tntvpcrzvon2.cloudfront.net | 9/19/2026 | 9/20/2027 | 1 year 1 day |
privacy.zola.com | 9/19/2026 | 9/20/2027 | 1 year 1 day |
www.datadoghq-browser-agent.com | 9/19/2026 | 9/20/2027 | 1 year 1 day |
use.typekit.net | 9/19/2026 | 9/20/2027 | 1 year 1 day |
HTTP Headers
HTTP Header
An HTTP header is a component of an HTTP request or response that contains additional information about the message being sent or received.
| Name | Value |
|---|---|
| Cache-Control | private, no-store, no-cache, must-revalidate, proxy-revalidate |
| Connection | keep-alive |
| Content-Encoding | gzip |
| Content-Security-Policy | frame-ancestors 'self' https://app.contentful.com |
| Content-Security-Policy-Report-Only | default-src 'self' https: data: blob:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https:; style-src 'self' 'unsafe-inline' https:; img-src 'self' data: blob: https:; font-src 'self' data: https:; connect-src 'self' https: wss:; media-src 'self' https: blob:; frame-src 'self' https:; worker-src 'self' blob:; object-src 'none'; base-uri 'self'; frame-ancestors 'self' https://app.contentful.com; report-uri https://browser-intake-datadoghq.com/api/v2/logs?dd-api-key=pub10496798280ee2e238bf254bd3d8804d&dd-evp-origin=content-security-policy&ddsource=csp-report&ddtags=service:csp-report%2Cenv:production |
| Content-Type | text/html; charset=utf-8 |
| Date | Sun, 20 Sep 2026 21:41:19 GMT |
| ETag | "83rxztlu10zfr" |
| Expires | 0 |
| Permissions-Policy | camera=(), microphone=(), geolocation=() |
| Pragma | no-cache |
| Referrer-Policy | strict-origin-when-cross-origin |
| Reporting-Endpoints | csp="https://browser-intake-datadoghq.com/api/v2/logs?dd-api-key=pub10496798280ee2e238bf254bd3d8804d&dd-evp-origin=content-security-policy&ddsource=csp-report&ddtags=service:csp-report%2Cenv:production" |
| Strict-Transport-Security | max-age=31536000; includeSubDomains |
| Surrogate-Control | no-store |
| Transfer-Encoding | chunked |
| Vary | Accept-Encoding |
| Via | 1.1 854d26865576ec09b27bbf1990553426.cloudfront.net (CloudFront) |
| X-Amz-Cf-Id | e4ZHqRsKOvYFcLh51C7ZoxqidsdwhEZ_8YIKEWdcPqQ5-_-OP4LfXw== |
| X-Amz-Cf-Pop | SFO53-P12 |
| X-Cache | Error from cloudfront |
| X-Content-Type-Options | nosniff |
| X-DNS-Prefetch-Control | off |
| X-Download-Options | noopen |
| X-Frame-Options | SAMEORIGIN |
| X-XSS-Protection | 0 |
Content Security Policy
Content Security Policy (CSP) is a security mechanism that helps prevent cross-site scripting (XSS) and other code injection attacks by specifying which content sources are allowed to be loaded on a web page.
| Name | Value |
|---|
Cookies
Cookies are small pieces of data stored on a user's web browser to track and remember information about their browsing activity on a website.
| Name | Value | Domain/Path | Expires | Secure | HTTP Only |
|---|---|---|---|---|---|
| guid | NmFiMDUyZmU3Y2VjMzQwMzY4NTk1Nzc0|1789940478984|t|e0afb3c92bad4b6ca9e2e75b470b80b031c5130a | .zola.com/ | 12/19/2026, 9:41:19 PM | yes | yes |
| _csrf | wd6vt9ceae1gd31bFYmlIvUa | www.zola.com/ | 12/31/1969, 11:59:59 PM | yes | yes |
| CSRF-TOKEN | [CSRF-TOKEN redacted] | www.zola.com/ | 12/31/1969, 11:59:59 PM | yes | no |
| mp_7a536271a9739a74faec2d35adf1748f_mixpanel | %7B%22distinct_id%22%3A%22%24device%3Afd2a8a62-39cb-4089-8411-316ff2d241d1%22%2C%22%24device_id%22%3A%22fd2a8a62-39cb-4089-8411-316ff2d241d1%22%2C%22%24initial_referrer%22%3A%22%24direct%22%2C%22%24initial_referring_domain%22%3A%22%24direct%22%2C%22__mps%22%3A%7B%7D%2C%22__mpso%22%3A%7B%22%24initial_referrer%22%3A%22%24direct%22%2C%22%24initial_referring_domain%22%3A%22%24direct%22%7D%2C%22__mpus%22%3A%7B%7D%2C%22__mpa%22%3A%7B%7D%2C%22__mpu%22%3A%7B%7D%2C%22__mpr%22%3A%5B%5D%2C%22__mpap%22%3A%5B%5D%7D | .zola.com/ | 9/20/2027, 9:41:19 PM | no | no |
| _dd_s | aid=844fdf72-c1f0-4352-a68a-976036c3c6cc&logs=0&expire=1789941379459&rum=0 | .zola.com/ | 9/20/2027, 9:41:19 PM | yes | no |