Security Analysis Results

thetoffee.com

Comprehensive domain security and infrastructure analysis

Live Website Preview

website screenshot of https://toffeecandles.com/

No Security Risks Detected

This domain appears to be safe and secure

100%
Score

Disclaimer: This assessment is based on automated analysis of publicly available information. Results are for informational purposes only. For critical applications, consult security professionals.

Scan Information

Last checked:August 14, 2025 12:59:19
Scan Complete

Refresh page after 10 minutes
for updated results

Page Information

Target URL
https://toffeecandles.com/
Page Title
Buy Best Scented - Fragrance Candles Online | Aromatherapy | Soy – Toffee
thetoffee.com faviconSite Favicon
Status
Active

Host Information

Domain
thetoffee.com
Server
cloudflare
Country
Canada
IP Address
23.227.38.32
ASN Information
13335
CLOUDFLARENET

Technologies

Shopify logo
Shopify
Ecommerce
HSTS logo
HSTS
Security
Google Tag Manager logo
Google Tag Manager
Tag managers
Google Analytics logo
Google Analytics
Analytics
Facebook Pixel logo
Facebook Pixel
Analytics
Cloudflare logo
Cloudflare
CDN
+1 more technologies detected

SSL Certificate

HTTPS Enabled
Secure
Certificate Issuer
N/A
Valid From
2025-08-13 12:59:25
Valid Until
2026-08-14 12:59:25
Subject Name
thetoffee.com

Performance Statistics

156
Total Requests
17
Domains
15
IP Addresses
2.17 MB
Transfer Size
Content Size3.62 MB

HTTP Headers

Alt-Svc
h3=":443"; ma=86400
CF-RAY
96f0a11f38b2dc07-QRO
Connection
keep-alive
Content-Type
text/html; charset=utf-8
Date
Thu, 14 Aug 2025 12:59:26 GMT
NEL
{"success_fraction":0.01,"report_to":"cf-nel","max_age":604800}
Report-To
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=tWAC%2BU3LycpXLWZXMtzHBCKIQ7pKyiZNfgLprRtwnZq6ExaKUBXynyxUlNopzXBe34MaD02J2R7NW3xjPBwXKgeFhgwnDeknfz6kt01QumU%2BE52wPVzb7aFzuVHeq%2Fw%3D"}],"group":"cf-nel","max_age":604800}
Server
cloudflare
Server-Timing
cfRequestDuration;dur=535.000086
Shopify-Edge-Ip
23.227.38.32
Transfer-Encoding
chunked
X-Content-Type-Options
nosniff
X-Download-Options
noopen
X-Permitted-Cross-Domain-Policies
none
X-XSS-Protection
1; mode=block
cf-cache-status
DYNAMIC
content-encoding
br
content-language
en-US
content-security-policy
block-all-mixed-content; frame-ancestors 'none'; upgrade-insecure-requests;
etag
"cacheable:a1dc70ce74f2961dd574943f03c39065"
link
<https://cdn.shopify.com>; rel="preconnect", <https://cdn.shopify.com>; rel="preconnect"; crossorigin
powered-by
Shopify
server-timing
processing;dur=310;desc="gc:9", db;dur=160, db_async;dur=19.99, render;dur=71, asn;desc="13335", edge;desc="QRO", country;desc="MX", theme;desc="134601965634", pageType;desc="index", servedBy;desc="zfq8", requestID;desc="c75f3326-4845-4678-b43d-6ecac099aeef-1755176366", _y;desc="567f69ba-4c9b-460d-b35c-844f73eeb0df", _s;desc="d2ce94c5-4f90-4114-8460-3d557de43510"
shopify-complexity-score
3060
speculation-rules
"/cdn/shopifycloud/storefront/assets/storefront/storefronts.specrules-dd5621a1.json"
strict-transport-security
max-age=7889238
vary
Accept accept-encoding
x-dc
gcp-us-central1,gcp-us-central1,gcp-us-central1
x-frame-options
DENY
x-request-id
c75f3326-4845-4678-b43d-6ecac099aeef-1755176366
x-shardid
65
x-shopid
61861691458
x-sorting-hat-podid
65
x-sorting-hat-shopid
61861691458
x-storefront-renderer-rendered
1
35 headers detected

Technology Stack Analysis

Shopify

Shopify

EcommerceCMS

Shopify is a subscription-based software that allows anyone to set up an online store and sell their products. Shopify store owners can also sell in physical locations using Shopify POS, a point-of-sale app and accompanying hardware.

HSTS

HSTS

Security

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

Google Tag Manager

Google Tag Manager

Tag managers

Google Tag Manager is a tag management system (TMS) that allows you to quickly and easily update measurement codes and related code fragments collectively known as tags on your website or mobile app.

Google Analytics

Google Analytics

Analytics

Google Analytics is a free web analytics service that tracks and reports website traffic.

Facebook Pixel

Facebook Pixel

Analytics

Facebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.

Cloudflare

Cloudflare

CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

HTTP/3

HTTP/3

Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

Website Cookies 18

ttcsid

.thetoffee.com

Value
1755176368133::YeCalS4FhsXlfBZVn3Kq.1.1755176368133
Expires:9/8/2026

_fbp

.thetoffee.com

Lax
Value
fb.1.1755176367877.565952831813208825
Expires:11/12/2025

_ga_5WP6G5C6P8

.thetoffee.com

Value
GS2.1.s1755176367$o1$g0$t1755176367$j60$l0$h0
Expires:9/18/2026

ttcsid_D14PUU3C77U5HVPDJCGG

.thetoffee.com

Value
1755176368120::0zcjtbrWFEPapq6J2bCI.1.1755176368120
Expires:9/8/2026

_shopify_s

.thetoffee.com

Lax
Value
d2ce94c5-4f90-4114-8460-3d557de43510
Expires:8/14/2025

shopify_pay_redirect

thetoffee.com

Value
pending
Expires:8/14/2025

_ttp

.thetoffee.com

Value
01K2MAKXZMTE0ZNVSHG2YWE8HV_.tt.0
Expires:9/8/2026

keep_alive

thetoffee.com

Secure Strict
Value
eyJ2IjoyLCJ0cyI6MTc1NTE3NjM2NzI4OSwiZW52Ijp7IndkIjoxLCJ1YSI6MSwiY3YiOjEsImJyIjoxfSwiYmh2Ijp7Im1hIjowLCJjYSI6MCwia2EiOjAsInNhIjowLCJ0YSI6MCwia2JhIjowLCJ0IjowLCJubSI6MCwibXMiOjAsIm1qIjowLCJtc3AiOjAsInZjIjowLCJjcCI6MCwicmMiOjAsImtqIjowLCJraSI6MCwic3MiOjAsInNqIjowLCJzc20iOjAsInNwIjowLCJ0cyI6MCwidGoiOjAsInRwIjowLCJ0c20iOjB9LCJzZXMiOnsicCI6MSwicyI6MTc1NTE3NjM2NzI3MSwiZCI6MH19
Expires:Session

cart_currency

thetoffee.com

Lax
Value
USD
Expires:8/28/2025

_shopify_essential

thetoffee.com

HttpOnly Secure Lax
Value
:AZioqfBUAAEAJYoVN6LcSkMTXcrXIORuUYAiZIRKb6ixOxGxwbwxNzg_euEptXQExz6T9rL_knDfMtJ9Fi07NlAMfqn09jRSxJZiNmJZ:
Expires:8/14/2026

_ga_JMGYJTSJC2

.thetoffee.com

Value
GS2.1.s1755176367$o1$g1$t1755176367$j60$l0$h0
Expires:9/18/2026

_tracking_consent

.thetoffee.com

Lax
Value
3.AMPS_MXOAX_f_f_nMve0gtvT5azaHVV2oOOGQ
Expires:8/14/2026

_gcl_au

.thetoffee.com

Value
1.1.719076673.1755176367
Expires:11/12/2025

localization

thetoffee.com

Lax
Value
US
Expires:8/14/2026

_orig_referrer

.thetoffee.com

HttpOnly Lax
Value
Expires:8/28/2025

_ga

.thetoffee.com

Value
GA1.1.1109748331.1755176367
Expires:9/18/2026

_landing_page

.thetoffee.com

HttpOnly Lax
Value
%2F
Expires:8/28/2025

_shopify_y

.thetoffee.com

Lax
Value
567f69ba-4c9b-460d-b35c-844f73eeb0df
Expires:8/14/2026

External Links 5

Facebook

www.facebook.com

Analyze
Target URL
https://www.facebook.com/profile.php?id=61579259964055

Instagram

www.instagram.com

Analyze
Target URL
https://www.instagram.com/toffeebrand/

TikTok

www.tiktok.com

Analyze
Target URL
https://www.tiktok.com/@toffee2923

YouTube

www.youtube.com

Analyze
Target URL
https://www.youtube.com/@ToffeeBrand

Powered by Shopify

www.shopify.com

Analyze
Target URL
https://www.shopify.com?utm_campaign=poweredby&utm_medium=shopify&utm_source=onlinestore

Requested Domains 17

cdn.shopify.com

Unknown Type
No category information available

connect.facebook.net

Unknown Type
No category information available

error-analytics-sessions-production.shopifysvc.com

Unknown Type
No category information available

forms.shopifyapps.com

Unknown Type
No category information available

googleads.g.doubleclick.net

Unknown Type
No category information available

monorail-edge.shopifysvc.com

Unknown Type
No category information available

shop.app

Unknown Type
No category information available

td.doubleclick.net

Unknown Type
No category information available

thetoffee.com

Apex domain
No category information available

toffeecandles.com

Unknown Type
No category information available

www.facebook.com

Unknown Type
No category information available

www.google-analytics.com

Unknown Type
No category information available

www.google.com

Unknown Type
No category information available

www.google.com.mx

Unknown Type
No category information available

www.googleadservices.com

Unknown Type
No category information available

www.googletagmanager.com

Unknown Type
No category information available

www.merchant-center-analytics.goog

Unknown Type
No category information available
LinkCheck

© 2025 LinkCheck. Secure domain analysis you can trust.