Summary
A Concise Overview of the scan result of url https://freshburgers.co/
- Document
- HTML
- 1
- StyleSheets
- 6
- Scripts
- 19
- Font
- 1
- Images
- 11
- Links
- 7
- JavaScript Variables
- 44
- Console log messages
- 0
- Network
- Requests
- 63
- Bytes Transferred
- 4.73MB
- Bytes Total
- 11.3MB
- DNS Record
- A Record
- 1
- Technology
- PaaS
- 1
- Analytics
- 2
- Security
- 3
- Feature management
- 1
- RUM
- 1
- CDN
- 2
Document
Links
The outgoing links identified from the page.
| Link | Text |
|---|---|
| https://pos.toasttab.com/privacy | Privacy Statement |
| https://www.ethyca.com/janus?utm_source=fides_consent&utm_medium=referral&utm_campaign=cmp_backlinks&utm_term=janus | Consent powered by Ethyca |
| https://google.com/maps/place?q=HFC+Wings+and+Tenders%2C+1200+Brown+Street%2C+Dayton%2C+OH+45409 | Get directions to 1200 Brown Street1200 Brown Street, Dayton, OH 45409 |
| https://google.com/maps/place?q=HFC+Wings+and+Tenders%2C+280+Mount+Zion+Road%2C+Florence%2C+KY+41042 | Get directions to 280 Mount Zion Road280 Mount Zion Road, Florence, KY 41042 |
| https://google.com/maps/place?q=HFC+Wings+and+Tenders%2C+5568+Airway+Road%2C+Dayton%2C+OH+45431 | Get directions to 5568 Airway Road5568 Airway Road, Dayton, OH 45431 |
| https://toasttab.com/local | powered by toast (opens in a new tab) |
| https://pos.toasttab.com/terms-of-service/#diner-tos | Terms of Service |
JavaScript Variables
Global JavaScript variables are variables that are defined outside of any function or block scope in JavaScript.
Technology
The technologies identified are present on the scanned URL.
| Name | Description | Detected patterns |
|---|---|---|
| Analytics | ||
| Sift is a CA-based fraud prevention company. | Type: scriptSrc Regex: cdn\.sift(?:science)?\.com\/s\.js | |
Datadog | Datadog is a SaaS-based monitoring and analytics platform for large-scale applications and infrastructure. | Type: scriptSrc Regex: www\.datadoghq-browser-agent\.com |
| Security | ||
| Sift is a CA-based fraud prevention company. | Type: scriptSrc Regex: cdn\.sift(?:science)?\.com\/s\.js | |
reCAPTCHA | reCAPTCHA is a free service from Google that helps protect websites from spam and abuse. | Type: scriptSrc Regex: \/recaptcha\/(?:api|enterprise)\.js |
| HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS. | Type: headers Name: strict-transport-security Regex: (?:) | |
| CDN | ||
Cloudflare | Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services. | Type: headers Name: cf-ray Regex: ^cloudflare$ |
Amazon S3 | Amazon S3 or Amazon Simple Storage Service is a service offered by Amazon Web Services (AWS) that provides object storage through a web service interface. | Type: headers Name: server Regex: s3[^ ]{0,250}amazonaws\.com |
| PaaS | ||
Amazon Web Services | Amazon Web Services (AWS) is a comprehensive cloud services platform offering compute power, database storage, content delivery and other functionality. | Dependent on Amazon S3 |
| RUM | ||
Datadog | Datadog is a SaaS-based monitoring and analytics platform for large-scale applications and infrastructure. | Type: scriptSrc Regex: www\.datadoghq-browser-agent\.com |
| Feature management | ||
LaunchDarkly | LaunchDarkly is a continuous delivery and feature flags as a service platform that integrates into a company's current development cycle. | Type: scriptSrc Regex: (?:\.|\-)launchdarkly(?:\.com\/|\-sdk\.) |
Performance
The speed and efficiency of the scanned URL loads and displays its content.
- dns
- 1 msGood
- tcp
- 1 msGood
- requestTime
- 6 msGood
- dom
- 1770 msPoor
DNS Record
A DNS record maps a domain name to an IP address or other resource information.
| Type | Name | Content | DNSSEC |
|---|---|---|---|
| A | freshburgers.co | 162.120.94.90 | no |
SSL Certificate
An SSL certificate is a digital certificate that verifies the authenticity and encrypts the communication between a website and its visitors.
| Subject | Issue date | Expiry date | Valid |
|---|---|---|---|
freshburgers.co | 7/24/2026 | 7/25/2027 | 1 year 1 day |
fonts.googleapis.com | 7/24/2026 | 7/25/2027 | 1 year 1 day |
d28f3w0x9i80nq.cloudfront.net | 7/24/2026 | 7/25/2027 | 1 year 1 day |
d1w7312wesee68.cloudfront.net | 7/24/2026 | 7/25/2027 | 1 year 1 day |
www.google.com | 7/24/2026 | 7/25/2027 | 1 year 1 day |
use.typekit.net | 7/24/2026 | 7/25/2027 | 1 year 1 day |
toast.fides-cdn.ethyca.com | 7/24/2026 | 7/25/2027 | 1 year 1 day |
p.typekit.net | 7/24/2026 | 7/25/2027 | 1 year 1 day |
www.gstatic.com | 7/24/2026 | 7/25/2027 | 1 year 1 day |
www.datadoghq-browser-agent.com | 7/24/2026 | 7/25/2027 | 1 year 1 day |
fonts.gstatic.com | 7/24/2026 | 7/25/2027 | 1 year 1 day |
o37442.ingest.sentry.io | 7/24/2026 | 7/25/2027 | 1 year 1 day |
app.launchdarkly.com | 7/24/2026 | 7/25/2027 | 1 year 1 day |
events.launchdarkly.com | 7/24/2026 | 7/25/2027 | 1 year 1 day |
cdn.sift.com | 7/24/2026 | 7/25/2027 | 1 year 1 day |
clientstream.launchdarkly.com | 7/24/2026 | 7/25/2027 | 1 year 1 day |
ws-api.toasttab.com | 7/24/2026 | 7/25/2027 | 1 year 1 day |
browser-intake-datadoghq.com | 7/24/2026 | 7/25/2027 | 1 year 1 day |
hexagon-analytics.com | 7/24/2026 | 7/25/2027 | 1 year 1 day |
api2.amplitude.com | 7/24/2026 | 7/25/2027 | 1 year 1 day |
HTTP Headers
HTTP Header
An HTTP header is a component of an HTTP request or response that contains additional information about the message being sent or received.
| Name | Value |
|---|---|
| CF-Cache-Status | DYNAMIC |
| CF-Ray | a20d7553f80a95e1-SEA |
| Cache-Control | public, s-maxage=60, max-age=120, must-revalidate, stale-while-revalidate=60 |
| Connection | keep-alive |
| Content-Encoding | br |
| Content-Type | text/html; charset=utf-8 |
| Date | Sat, 25 Jul 2026 19:09:20 GMT |
| ETag | W/"1519a-m6SCLBPnVhfE/nsxAt7KXjaTO/g" |
| Expires | Sat, 25 Jul 2026 19:11:19 GMT |
| Server | cloudflare |
| Strict-Transport-Security | max-age=31536000; includeSubDomains |
| Transfer-Encoding | chunked |
| content-security-policy | worker-src 'self' blob:; child-src 'self' blob:; connect-src https://d28f3w0x9i80nq.cloudfront.net/ https://ws-api.toasttab.com https://ws-preprod-api.eng.toasttab.com https://ws-sandbox-api.eng.toasttab.com wss://wss.toasttab.com o37442.ingest.sentry.io https://browser-intake-datadoghq.com www.datadoghq-browser-agent.com http://localhost:36867/do-federated-gateway/v1/internal/graphql https://*.adyen.com https://www.google.com https://maps.googleapis.com https://*.google-analytics.com https://*.analytics.google.com https://*.googletagmanager.com https://graph.facebook.com/ https://www.facebook.com/tr/ https://events.launchdarkly.com https://app.launchdarkly.com https://clientstream.launchdarkly.com https://api2.amplitude.com/2/httpapi https://cdn.userway.org/ https://api.userway.org/ https://privacy-toast.us.fides.ethyca.com/ https://toast.fides-cdn.ethyca.com https://book.toasttab.com https://toast.app https://s3.amazonaws.com/toast-sites-restricted-prod www.toasttab.com https://www.google-analytics.com analytics.google.com www.googleadservices.com *.doubleclick.net *.facebook.net *.hotjar.com wss://*.hotjar.com https://www.facebook.com/privacy_sandbox/topics/registration/ https://www.facebook.com/signals/iwl.js https://payments.toasttab.com https://payments.sandbox.eng.toasttab.com https://www.google.com https://www.googletagmanager.com https://pagead2.googlesyndication.com https://google.com https://google.com/ https://pay.google.com/ https://payments.toasttab.com/assets/loader.js https://www.google.com https://www.google.com.au https://www.google.ca https://www.google.ie https://www.google.co.nz https://www.google.co.uk; frame-src 'self' https://www.toasttab.com/ https://ws-api.toasttab.com https://ws-api.toasttab.com https://ws-api.toasttab.com:8443 https://toasttab.com/ https://ws-api.toasttab.com https://ws-preprod-api.eng.toasttab.com https://ws-sandbox-api.eng.toasttab.com https://d28f3w0x9i80nq.cloudfront.net/ https://docs.google.com https://www.google.com www.toasttab.com https://www.google-analytics.com analytics.google.com www.googleadservices.com *.doubleclick.net *.facebook.net *.hotjar.com wss://*.hotjar.com https://www.facebook.com/privacy_sandbox/topics/registration/ https://www.facebook.com/signals/iwl.js https://payments.toasttab.com https://payments.sandbox.eng.toasttab.com https://www.google.com https://www.googletagmanager.com https://pagead2.googlesyndication.com https://google.com https://www.googletagmanager.com https://cdn.userway.org/ https://business.untappd.com https://book.toasttab.com https://toast.app https://*.adyen.com https://pay.google.com/ https://google.com/; script-src-elem 'unsafe-inline' https://ws-api.toasttab.com:8443 https://d28f3w0x9i80nq.cloudfront.net/ https://browser-intake-datadoghq.com www.datadoghq-browser-agent.com https://www.toasttab.com/ https://browser.sentry-cdn.com https://fonts.googleapis.com https://fonts.gstatic.com https://maps.googleapis.com https://*.googletagmanager.com https://ajax.cloudflare.com https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://cdn.userway.org/ https://api.userway.org/ https://cdnjs.cloudflare.com/ajax/libs/pdf.js/ https://cdn.sift.com/s.js https://toast.fides-cdn.ethyca.com https://book.toasttab.com https://toast.app www.toasttab.com https://www.google-analytics.com analytics.google.com www.googleadservices.com *.doubleclick.net *.facebook.net *.hotjar.com wss://*.hotjar.com https://www.facebook.com/privacy_sandbox/topics/registration/ https://www.facebook.com/signals/iwl.js https://payments.toasttab.com https://payments.sandbox.eng.toasttab.com https://www.google.com https://www.googletagmanager.com https://pagead2.googlesyndication.com https://google.com https://unpkg.com/[email protected]/legacy/build/pdf.worker.min.js https://google.com/ https://pay.google.com/ https://payments.toasttab.com/assets/loader.js; script-src nonce-fc94b223d6011617da0da8ffc88f4c23 'unsafe-inline' https://d28f3w0x9i80nq.cloudfront.net/ https://www.toasttab.com/ https://browser.sentry-cdn.com https://fonts.googleapis.com https://fonts.gstatic.com https://maps.googleapis.com https://*.googletagmanager.com https://ajax.cloudflare.com https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://cdn.userway.org/ https://api.userway.org/ https://cdnjs.cloudflare.com/ajax/libs/pdf.js/ https://cdn.sift.com/s.js https://toast.fides-cdn.ethyca.com https://book.toasttab.com https://toast.app https://unpkg.com/[email protected]/legacy/build/pdf.worker.min.js; style-src-elem 'unsafe-inline' https://d28f3w0x9i80nq.cloudfront.net/ https://unpkg.com https://fonts.googleapis.com https://use.typekit.net https://p.typekit.net https://cdn.userway.org/ https://api.userway.org/; style-src 'unsafe-inline' https://d28f3w0x9i80nq.cloudfront.net/ https://unpkg.com https://fonts.googleapis.com https://use.typekit.net https://p.typekit.net https://cdn.userway.org/ https://api.userway.org/; media-src https://d28f3w0x9i80nq.cloudfront.net/ https://d1w7312wesee68.cloudfront.net/; img-src * data:; font-src * data:; default-src nonce-fc94b223d6011617da0da8ffc88f4c23 self https://d28f3w0x9i80nq.cloudfront.net/; report-to csp-endpoint |
| reporting-endpoints | csp-endpoint="https://o37442.ingest.sentry.io/api/6180756/security/?sentry_key=6d67e6de629842998b120b40164bd25b&sentry_environment=production" |
| sites-cache-status | miss |
| x-content-type-options | nosniff |
| x-frame-options | SAMEORIGIN |
| x-xss-protection | 1 |
Content Security Policy
Content Security Policy (CSP) is a security mechanism that helps prevent cross-site scripting (XSS) and other code injection attacks by specifying which content sources are allowed to be loaded on a web page.
| Name | Value |
|---|---|
| worker-src | 'self'blob: |
| child-src | 'self'blob: |
| connect-src | https://d28f3w0x9i80nq.cloudfront.net/https://ws-api.toasttab.comhttps://ws-preprod-api.eng.toasttab.comhttps://ws-sandbox-api.eng.toasttab.comwss://wss.toasttab.como37442.ingest.sentry.iohttps://browser-intake-datadoghq.comwww.datadoghq-browser-agent.comhttp://localhost:36867/do-federated-gateway/v1/internal/graphqlhttps://*.adyen.comhttps://www.google.comhttps://maps.googleapis.comhttps://*.google-analytics.comhttps://*.analytics.google.comhttps://*.googletagmanager.comhttps://graph.facebook.com/https://www.facebook.com/tr/https://events.launchdarkly.comhttps://app.launchdarkly.comhttps://clientstream.launchdarkly.comhttps://api2.amplitude.com/2/httpapihttps://cdn.userway.org/https://api.userway.org/https://privacy-toast.us.fides.ethyca.com/https://toast.fides-cdn.ethyca.comhttps://book.toasttab.comhttps://toast.apphttps://s3.amazonaws.com/toast-sites-restricted-prodwww.toasttab.comhttps://www.google-analytics.comanalytics.google.comwww.googleadservices.com*.doubleclick.net*.facebook.net*.hotjar.comwss://*.hotjar.comhttps://www.facebook.com/privacy_sandbox/topics/registration/https://www.facebook.com/signals/iwl.jshttps://payments.toasttab.comhttps://payments.sandbox.eng.toasttab.comhttps://www.google.comhttps://www.googletagmanager.comhttps://pagead2.googlesyndication.comhttps://google.comhttps://google.com/https://pay.google.com/https://payments.toasttab.com/assets/loader.jshttps://www.google.comhttps://www.google.com.auhttps://www.google.cahttps://www.google.iehttps://www.google.co.nzhttps://www.google.co.uk |
| frame-src | 'self'https://www.toasttab.com/https://ws-api.toasttab.comhttps://ws-api.toasttab.comhttps://ws-api.toasttab.com:8443https://toasttab.com/https://ws-api.toasttab.comhttps://ws-preprod-api.eng.toasttab.comhttps://ws-sandbox-api.eng.toasttab.comhttps://d28f3w0x9i80nq.cloudfront.net/https://docs.google.comhttps://www.google.comwww.toasttab.comhttps://www.google-analytics.comanalytics.google.comwww.googleadservices.com*.doubleclick.net*.facebook.net*.hotjar.comwss://*.hotjar.comhttps://www.facebook.com/privacy_sandbox/topics/registration/https://www.facebook.com/signals/iwl.jshttps://payments.toasttab.comhttps://payments.sandbox.eng.toasttab.comhttps://www.google.comhttps://www.googletagmanager.comhttps://pagead2.googlesyndication.comhttps://google.comhttps://www.googletagmanager.comhttps://cdn.userway.org/https://business.untappd.comhttps://book.toasttab.comhttps://toast.apphttps://*.adyen.comhttps://pay.google.com/https://google.com/ |
| script-src-elem | 'unsafe-inline'https://ws-api.toasttab.com:8443https://d28f3w0x9i80nq.cloudfront.net/https://browser-intake-datadoghq.comwww.datadoghq-browser-agent.comhttps://www.toasttab.com/https://browser.sentry-cdn.comhttps://fonts.googleapis.comhttps://fonts.gstatic.comhttps://maps.googleapis.comhttps://*.googletagmanager.comhttps://ajax.cloudflare.comhttps://www.google.com/recaptcha/https://www.gstatic.com/recaptcha/https://cdn.userway.org/https://api.userway.org/https://cdnjs.cloudflare.com/ajax/libs/pdf.js/https://cdn.sift.com/s.jshttps://toast.fides-cdn.ethyca.comhttps://book.toasttab.comhttps://toast.appwww.toasttab.comhttps://www.google-analytics.comanalytics.google.comwww.googleadservices.com*.doubleclick.net*.facebook.net*.hotjar.comwss://*.hotjar.comhttps://www.facebook.com/privacy_sandbox/topics/registration/https://www.facebook.com/signals/iwl.jshttps://payments.toasttab.comhttps://payments.sandbox.eng.toasttab.comhttps://www.google.comhttps://www.googletagmanager.comhttps://pagead2.googlesyndication.comhttps://google.comhttps://unpkg.com/[email protected]/legacy/build/pdf.worker.min.jshttps://google.com/https://pay.google.com/https://payments.toasttab.com/assets/loader.js |
| script-src | nonce-fc94b223d6011617da0da8ffc88f4c23'unsafe-inline'https://d28f3w0x9i80nq.cloudfront.net/https://www.toasttab.com/https://browser.sentry-cdn.comhttps://fonts.googleapis.comhttps://fonts.gstatic.comhttps://maps.googleapis.comhttps://*.googletagmanager.comhttps://ajax.cloudflare.comhttps://www.google.com/recaptcha/https://www.gstatic.com/recaptcha/https://cdn.userway.org/https://api.userway.org/https://cdnjs.cloudflare.com/ajax/libs/pdf.js/https://cdn.sift.com/s.jshttps://toast.fides-cdn.ethyca.comhttps://book.toasttab.comhttps://toast.apphttps://unpkg.com/[email protected]/legacy/build/pdf.worker.min.js |
| style-src-elem | 'unsafe-inline'https://d28f3w0x9i80nq.cloudfront.net/https://unpkg.comhttps://fonts.googleapis.comhttps://use.typekit.nethttps://p.typekit.nethttps://cdn.userway.org/https://api.userway.org/ |
| style-src | 'unsafe-inline'https://d28f3w0x9i80nq.cloudfront.net/https://unpkg.comhttps://fonts.googleapis.comhttps://use.typekit.nethttps://p.typekit.nethttps://cdn.userway.org/https://api.userway.org/ |
| media-src | https://d28f3w0x9i80nq.cloudfront.net/https://d1w7312wesee68.cloudfront.net/ |
| img-src | *data: |
| font-src | *data: |
| default-src | nonce-fc94b223d6011617da0da8ffc88f4c23selfhttps://d28f3w0x9i80nq.cloudfront.net/ |
| report-to | csp-endpoin |
Cookies
Cookies are small pieces of data stored on a user's web browser to track and remember information about their browsing activity on a website.
| Name | Value | Domain/Path | Expires | Secure | HTTP Only |
|---|---|---|---|---|---|
| toast-sites-experiment-id | e2ec963c-0804-470c-b8b3-cf7f1489106e | freshburgers.co/ | 7/25/2027, 7:09:19 PM | no | no |
| __cf_bm | jjOtrbwguGN8NQJdoSj06Hjdc6TMUMMG83ljFEKvpGI-1785006559.3590689-1.0.1.1-QB1fiSi9qwU8rVaTaQaapbXWAGd4wkTiQ_UvFmsF91h1XROuqhK2lGbG.cjDwaYyRfkZL7dexDGmjFiLrralbM.z2e4ThxuFQakbp1fdyD75NljelKREaHRU8M_DtRYx | .freshburgers.co/ | 7/25/2026, 7:39:20 PM | yes | yes |
| toast_ga_session | [toast_ga_session redacted] | .freshburgers.co/ | 7/25/2026, 7:39:22 PM | no | no |
| __ssid | 3ebd1090-97a4-4b4c-8411-69709c314f42 | .freshburgers.co/ | 8/29/2027, 7:09:23 PM | no | no |
| _dd_s | rum=2&id=e689beab-a9db-4e88-86dc-b7b8a0da3c4a&created=1785006562993&expire=1785007462993 | freshburgers.co/ | 7/25/2026, 7:24:23 PM | no | no |