Summary
A Concise Overview of the scan result of url https://replit.com/silent-auth?privateDeployment=true&goto=%2F__replshield%3Fredirect%3Dhttps%253A%252F%252Fcoachiq-avaidun.replit.app%252F
- Document
- HTML
- 122
- StyleSheets
- 0
- Scripts
- 0
- Font
- 0
- Images
- 0
- Links
- 0
- JavaScript Variables
- 14
- Console log messages
- 0
- Network
- Requests
- 122
- Bytes Transferred
- 45.89KB
- Bytes Total
- 142.41KB
- DNS Record
- A Record
- 2
- AAAA Record
- 2
- Technology
- Webmail
- 1
- Programming languages
- 1
- Reverse proxies
- 1
- JavaScript frameworks
- 2
- Web frameworks
- 2
- Web servers
- 1
- Documentation
- 1
- Issue trackers
- 1
- Live chat
- 1
- Marketing automation
- 1
- Security
- 1
- CDN
- 1
- Miscellaneous
- 2
Document
Links
The outgoing links identified from the page.
| Link | Text |
|---|
JavaScript Variables
Global JavaScript variables are variables that are defined outside of any function or block scope in JavaScript.
Technology
The technologies identified are present on the scanned URL.
| Name | Description | Detected patterns |
|---|---|---|
| Documentation | ||
Zendesk | Zendesk is a cloud-based help desk management solution offering customizable tools to build customer service portal, knowledge base and online communities. | Type: dns Regex: mail\.zendesk\.com |
| JavaScript frameworks | ||
React | React is an open-source JavaScript library for building user interfaces or UI components. | Dependent on Next.js |
Next.js | Next.js is a React framework for developing single page Javascript applications. | Type: headers Name: x-powered-by Regex: ^Next\.js ?([0-9.]{1,250})? |
| Issue trackers | ||
Zendesk | Zendesk is a cloud-based help desk management solution offering customizable tools to build customer service portal, knowledge base and online communities. | Type: dns Regex: mail\.zendesk\.com |
| Security | ||
| HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS. | Type: headers Name: strict-transport-security Regex: (?:) | |
| Web frameworks | ||
Next.js | Next.js is a React framework for developing single page Javascript applications. | Type: headers Name: x-powered-by Regex: ^Next\.js ?([0-9.]{1,250})? |
Express | Express is a web application framework for Node.js, released as free and open-source software under the MIT License. It is designed for building web applications and APIs. | Type: headers Name: x-powered-by Regex: ^Express(?:$|,) |
| Miscellaneous | ||
Webpack | Webpack is an open-source JavaScript module bundler. | Dependent on Next.js |
HTTP/3 | HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web. | Type: headers Name: alt-svc Regex: h3 |
| Web servers | ||
Express | Express is a web application framework for Node.js, released as free and open-source software under the MIT License. It is designed for building web applications and APIs. | Type: headers Name: x-powered-by Regex: ^Express(?:$|,) |
| Programming languages | ||
Node.js | Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser. | Dependent on Express,Next.js |
| Webmail | ||
Apple iCloud Mail | Apple iCloud Mail is a webmail service provided by Apple, Inc. | Type: dns Regex: apple-domain |
| CDN | ||
Cloudflare | Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services. | Type: headers Name: cf-ray Regex: ^cloudflare$ |
| Marketing automation | ||
HubSpot | HubSpot is a marketing and sales software that helps companies attract visitors, convert leads, and close customers. | Type: dns Regex: hubspot-developer-verification |
| Live chat | ||
Zendesk | Zendesk is a cloud-based help desk management solution offering customizable tools to build customer service portal, knowledge base and online communities. | Type: dns Regex: mail\.zendesk\.com |
| Reverse proxies | ||
| Envoy is an open-source edge and service proxy, designed for cloud-native applications. | Type: headers Name: x-envoy-upstream-service-time Regex: (?:) | |
Performance
The speed and efficiency of the scanned URL loads and displays its content.
- dns
- 1 msGood
- tcp
- 1 msGood
- requestTime
- 4 msGood
- dom
- 1000 msPoor
DNS Record
A DNS record maps a domain name to an IP address or other resource information.
| Type | Name | Content | DNSSEC |
|---|---|---|---|
| A | replit.com | 172.64.152.210 | no |
| A | replit.com | 104.18.35.46 | no |
| AAAA | replit.com | 2a06:98c1:3104::6812:232e | no |
| AAAA | replit.com | 2606:4700:4401::ac40:98d2 | no |
SSL Certificate
An SSL certificate is a digital certificate that verifies the authenticity and encrypts the communication between a website and its visitors.
| Subject | Issue date | Expiry date | Valid |
|---|---|---|---|
replit.com | 8/15/2026 | 8/16/2027 | 1 year 1 day |
cdn.replit.com | 8/15/2026 | 8/16/2027 | 1 year 1 day |
HTTP Headers
HTTP Header
An HTTP header is a component of an HTTP request or response that contains additional information about the message being sent or received.
| Name | Value |
|---|---|
| CF-RAY | a2c2f4685c3727f2-SEA |
| Connection | keep-alive |
| Content-Type | text/html; charset=utf-8 |
| Date | Sun, 16 Aug 2026 19:48:07 GMT |
| Strict-Transport-Security | max-age=31536000; preload |
| Transfer-Encoding | chunked |
| alt-svc | h3=":443"; ma=86400 |
| cache-control | public, stale-while-revalidate=60, max-age=0 |
| cf-cache-status | DYNAMIC |
| content-encoding | br |
| content-security-policy-report-only | default-src * 'self' 'unsafe-eval' 'unsafe-inline' data: blob: ws: wss:; script-src 'self' 'unsafe-eval' 'unsafe-inline' https://accounts.google.com https://apis.google.com https://cdn.goentri.com https://cdn.razorpay.com https://cdn.replit.com https://cdn.segment.com https://checkout.razorpay.com https://connect.facebook.net https://cross-border-cdn.razorpay.com https://elements.stytch.com https://fast.wistia.net https://googleads.g.doubleclick.net https://hcaptcha.com https://*.hcaptcha.com https://js.stripe.com https://sp.replit.com https://www.google-analytics.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com; worker-src 'self' blob:; report-uri https://o1151714.ingest.us.sentry.io/api/4509669501698048/security/?sentry_key=7eb3d90eb4660416caf507087367e67e&sentry_environment=production&sentry_release=fd6cf3bb; report-to csp-endpoint; |
| report-to | {"group":"csp-endpoint","max_age":10886400,"endpoints":[{"url":"https://o1151714.ingest.us.sentry.io/api/4509669501698048/security/?sentry_key=7eb3d90eb4660416caf507087367e67e&sentry_environment=production&sentry_release=fd6cf3bb"}],"include_subdomains":true} |
| reporting-endpoints | csp-endpoint="https://o1151714.ingest.us.sentry.io/api/4509669501698048/security/?sentry_key=7eb3d90eb4660416caf507087367e67e&sentry_environment=production&sentry_release=fd6cf3bb" |
| server | cloudflare |
| vary | Accept-Encoding |
| x-content-type-options | nosniff |
| x-edge-backend | istio-prod |
| x-envoy-upstream-service-time | 46 |
| x-frame-options | DENY |
| x-powered-by | Next.js |
Content Security Policy
Content Security Policy (CSP) is a security mechanism that helps prevent cross-site scripting (XSS) and other code injection attacks by specifying which content sources are allowed to be loaded on a web page.
| Name | Value |
|---|
Cookies
Cookies are small pieces of data stored on a user's web browser to track and remember information about their browsing activity on a website.
| Name | Value | Domain/Path | Expires | Secure | HTTP Only |
|---|---|---|---|---|---|
| replit_statsig_stable_id | 0d5c4590-5703-431b-a54a-2d129e6fef84 | replit.com/ | 8/16/2027, 7:48:07 PM | yes | no |
| __cf_bm | ReCZdtg81g2WYhUB4FizzO3bUFPcSfvHEjOKrtGLddA-1786909686.989442-1.0.1.1-82yiWkekWNlaO7RuDXXcQDc8BaAX2nZ2emqw.PXWf7BzauS5zQm3PBNIbjW6fx31DnHDLBo8lkPhXP5VbSWWb0Uuh8sLMQjADOgZ7tXSPeQM06b8qwHRuTiL7I7p0WHl | .replit.com/ | 8/16/2026, 8:18:07 PM | yes | yes |