🐻 Bear necessities for state management in React
expo.dev
Paid content
Categories: Development
Expo is the fastest way to build native apps for iOS, Android, and the web with React.
Website Overview
An established domain and managed infrastructure suggest continuity of operations and may support dependable delivery, although neither guarantees service quality. Page metadata, canonical configuration and social previews work together to provide more consistent search and sharing presentation.
Domain and Registration
Registered in 2019, this domain has about 7 years of history. That suggests continuity, although ownership and purpose may have changed. Transfer-protection status is present, helping reduce the risk of unauthorized domain transfers. The registrar is CloudFlare, Inc., a widely used domain service provider. The domain uses the common .dev extension, which is not an independent safety signal.
DNS and Email
Nameservers are provided by Cloudflare, indicating managed DNS hosting. MX records point to the Google Workspace email service. DNSSEC is enabled, allowing validating resolvers to authenticate signed DNS data. CAA records restrict which certificate authorities are authorized to issue certificates. No CNAME was found; the observed records resolve directly to addresses.
TLS and Certificates
The public key uses EC with 256 bits. The server supplied a complete certificate chain. No organization name is present in the certificate; the available fields are consistent with domain validation. The certificate was issued within the Google Trust Services cloud or CDN ecosystem. The certificate's total validity is about 90 days, consistent with a short renewal cycle.
HTTP and Browser Security
The response lacks these common security headers: Referrer-Policy, Permissions-Policy. No X-Powered-By header was found, reducing one common source of backend fingerprinting information. The cf-ray, via response header indicates a CDN or caching proxy in the delivery path. No obvious internal addresses or debug information were found in the headers. The Server header identifies cloudflare without an exact version.
Technology Stack Analysis
The public page identifies Next.js, Cloudflare without precise versions, leaving fewer clues for version-specific scanning.
Search and Social Sharing
Twitter Card metadata is configured. JSON-LD includes Organization data, helping describe the organization as an entity. The title has 35 characters, within a common display range. A meta description is present, with 86 characters. The observed directives allow indexing and link following.
Hosting and Email
Pages, Search and Sharing
| Meta description | Expo is the fastest way to build native apps for iOS, Android, and the web with React. |
|---|---|
| Canonical URL | https://expo.dev |
| Language | English (default) |
| Twitter Card | summary_large_image |
Social Sharing Preview
9 fieldsrobots.txt (opens in a new tab)
3 rulesAll bots 1 allowed · 2 disallowed
//expo-subscription-agreement/static/files/expo-subscription-agreement.pdf
No matching rules.
Sitemaps
1
Registration details RDAP / WHOIS
| Registrar | CloudFlare, Inc. |
|---|---|
| Registered | 2019-02-22 |
| Expires | 2034-02-22 |
| Domain status | client transfer prohibited |
| Nameservers | dale.ns.cloudflare.com、lucy.ns.cloudflare.com |
| DNSSEC | signed |
DNS records
| Type | Name | Value | TTL | Priority |
|---|---|---|---|---|
| A | expo.dev | 104.18.4.104 | 300 | — |
| A | expo.dev | 104.18.5.104 | 300 | — |
| AAAA | expo.dev | 2606:4700::6812:468 | 300 | — |
| AAAA | expo.dev | 2606:4700::6812:568 | 300 | — |
| MX | expo.dev | aspmx.l.google.com | 300 | 1 |
| MX | expo.dev | alt1.aspmx.l.google.com | 300 | 5 |
| MX | expo.dev | alt2.aspmx.l.google.com | 300 | 5 |
| MX | expo.dev | alt3.aspmx.l.google.com | 300 | 10 |
| MX | expo.dev | alt4.aspmx.l.google.com | 300 | 10 |
| NS | expo.dev | dale.ns.cloudflare.com | 86400 | — |
| NS | expo.dev | lucy.ns.cloudflare.com | 86400 | — |
| TXT | expo.dev | MS=ms34416275 | 300 | — |
| TXT | expo.dev | anthropic-domain-verification-kg78qv=zwGRA0hTm7PLuxuM8515HyCOz | 300 | — |
| TXT | expo.dev | google-site-verification=u0RXqZnT89wChVAEGxTyhjLHw8JXo4iDq4gin_JJbCY | 300 | — |
| TXT | expo.dev | linkedin-site-verification=f329028e-f5dd-48a3-8489-6cc607cc0edf | 300 | — |
| TXT | expo.dev | status-page-domain-verification=pkt5b56rksrq | 300 | — |
| TXT | expo.dev | stripe-verification=0884d254d82c4c3eb774d03ed72ed7f78688404426031101fb0a359c9b3ff30e | 300 | — |
| TXT | expo.dev | v=spf1 include:_spf.google.com include:sendgrid.net include:servers.mcsv.net include:stspg-customer.com include:22007177.spf04.hubspotemail.net -all | 300 | — |
| CAA | expo.dev | 0 issue "comodoca.com" | 3600 | — |
| CAA | expo.dev | 0 issue "digicert.com; cansignhttpexchanges=yes" | 3600 | — |
| CAA | expo.dev | 0 issue "letsencrypt.org" | 3600 | — |
| CAA | expo.dev | 0 issue "pki.goog; cansignhttpexchanges=yes" | 3600 | — |
| CAA | expo.dev | 0 issue "ssl.com" | 3600 | — |
| CAA | expo.dev | 0 issuewild "comodoca.com" | 3600 | — |
| CAA | expo.dev | 0 issuewild "digicert.com; cansignhttpexchanges=yes" | 3600 | — |
| CAA | expo.dev | 0 issuewild "letsencrypt.org" | 3600 | — |
| CAA | expo.dev | 0 issuewild "pki.goog; cansignhttpexchanges=yes" | 3600 | — |
| CAA | expo.dev | 0 issuewild "ssl.com" | 3600 | — |
| DS | expo.dev | 2371 13 2 3bbeccf585ca2b03600b20df5756b7d034058ecfd3abc9e331b261737fb6c709 | 1800 | — |
| DMARC | _dmarc.expo.dev | v=DMARC1; p=quarantine; aspf=s; adkim=s | 300 | — |
TLS and certificates
| Assessment | Normal configuration |
|---|---|
| Supported protocols | TLSv1.2、TLSv1.3 |
| Negotiated protocol | TLSv1.3 |
| Certificate subject | expo.dev |
| Issuer | Google Trust Services |
| Valid until | 2026-10-20T14:19 · Remaining when checked: 46 days |
| Verification details | Certificate trust: Passed · Hostname match: Passed |
HTTP response headers
| Header | Value |
|---|---|
| content-type | text/html; charset=utf-8 |
| cache-control | private, no-cache, no-store, max-age=0, must-revalidate |
| server | cloudflare |
| strict-transport-security | max-age=31536000; includeSubDomains |
| content-security-policy | default-src 'self' https://static.expo.dev; connect-src 'self' https://api.expo.dev wss://logs.expo.dev https://static.expo.dev https://job-artifacts.eascdn.net https://job-logs.eascdn.net https://storage.googleapis.com https://staging-wf-artifacts.eascdn.net https://wf-artifacts.eascdn.net https://*.eas-simulator.ngrok.dev https://staging-assets.eascdn.net https://assets.eascdn.net https://eas.expo.app https://cdp.expo.dev https://cdn.rudderlabs.com http://127.0.0.1:* https://qr.expo.dev https://status.expo.dev https://8tdse0ohgq-dsn.algolia.net https://qex7pb7d46-dsn.algolia.net https://sessions.bugsnag.com https://*.doubleclick.net https://api.github.com https://google.com https://*.google.com https://*.analytics.google.com https://*.google-analytics.com https://www.googleadservices.com https://*.googleapis.com https://pagead2.googlesyndication.com https://*.googletagmanager.com https://react-tweet.vercel.app https://reactnative.directory https://api.rudderstack.com https://9r24npb8.api.sanity.io https://9r24npb8.apicdn.sanity.io https://faro-collector-prod-us-east-3.grafana.net https://sentry.io https://o30871.ingest.sentry.io https://api.stripe.com https://api.logrocket.com https://*.typeform.com https://*.hubapi.com https://*.hubspot.com https://*.hsappstatic.net https://*.hs-banner.com https://*.hscollectedforms.net https://*.hsforms.com https://px.ads.linkedin.com https://www.redditstatic.com https://pixel-config.reddit.com https://alb.reddit.com https://*.openai.com https://comet-serve.com https://*.comet-serve.com https://*.crazyegg.com https://*.kapa.ai https://www.recaptcha.net https://*.vexo.co; manifest-src 'self'; font-src 'self' data: https://static.expo.dev https://cdnjs.cloudflare.com https://fonts.gstatic.com; frame-src expo-orbit: https://*.datadoghq.com https://td.doubleclick.net https://www.google.com https://www.googletagmanager.com https://www.recaptcha.net https://*.js.stripe.com https://js.stripe.com https://hooks.stripe.com https://*.youtube.com https://embed.bsky.app https://*.logrocket.com https://*.typeform.com https://*.hubspot.com https://*.hs-sites.com https://*.hubspot.net https://*.hsforms.net https://*.hsforms.com https://*.vexo.co https://*.mediadelivery.net; img-src 'self' https: data: blob:; media-src 'self' https: data: blob:; script-src 'self' 'unsafe-inline' https://static.expo.dev https://d2wy8f7a9ursnm.cloudfront.net https://googleads.g.doubleclick.net https://tagmanager.google.com https://www.google.com https://www.googleadservices.com https://www.recaptcha.net https://maps.googleapis.com https://pagead2.googlesyndication.com https://*.googletagmanager.com https://www.gstatic.cn https://www.gstatic.com https://cdn.rudderlabs.com https://js.stripe.com https://*.js.stripe.com https://www.youtube.com https://embed.bsky.app https://*.typeform.com https://*.hs-scripts.com https://*.hsadspixel.net https://*.hscollectedforms.net https://*.hs-analytics.net https://*.hs-banner.com https://*.hsforms.net https://*.hsforms.com https://*.hsleadflows.net https://snap.licdn.com https://www.redditstatic.com https://pixel-config.reddit.com https://*.openai.com https://*.comet-serve.com https://*.crazyegg.com https://*.kapa.ai; style-src 'self' 'unsafe-inline' https:; frame-ancestors 'self'; report-to expo |
| x-frame-options | SAMEORIGIN |
| x-content-type-options | nosniff |
Identified technologies
Recent Updates
- Screenshots
- Website images
Related questions
More questions →No related questions yet.
User reviews (0)