Components, icons, and colors for building high‑quality, accessible UI. Free and open-source.
ghost.org
Paid content
Categories: Productivity
Beautiful, modern publishing with email newsletters and paid subscriptions built-in. Used by Platformer, 404Media, Lever News, Tangle, The Browser, and thousands more.
Website Overview
Identifiable technologies and additional version or configuration signals make the service easier to fingerprint, which may help targeted scanners narrow their checks. An established domain and managed infrastructure suggest continuity of operations and may support dependable delivery, although neither guarantees service quality.
Domain and Registration
Registered in 2005, this domain has about 21 years of history. That suggests continuity, although ownership and purpose may have changed. Transfer-protection status is present, helping reduce the risk of unauthorized domain transfers. The domain uses the common .org extension, which is not an independent safety signal.
DNS and Email
Nameservers are provided by Cloudflare, indicating managed DNS hosting. MX records point to the Google Workspace email service. No CNAME was found; the observed records resolve directly to addresses. SPF and DMARC are configured. DKIM status is unknown. TXT records include verification markers for Google, Apple. Such markers may also remain after a service stops being used.
TLS and Certificates
The public key uses EC with 256 bits. The server supplied a complete certificate chain. No organization name is present in the certificate; the available fields are consistent with domain validation. The certificate was issued by Let's Encrypt, commonly associated with automated certificate services. The certificate's total validity is about 89 days, consistent with a short renewal cycle.
HTTP and Browser Security
No X-Powered-By header was found, reducing one common source of backend fingerprinting information. All six checked browser-security headers are present. Their effectiveness still depends on the policy values and application behavior. No obvious internal addresses or debug information were found in the headers. The Server header contains the custom value Netlify. No explicit CDN or WAF marker was found in the response headers.
Technology Stack Analysis
The public page identifies Hugo 0.119.0, Netlify, with exact versions exposed for 1 technologies. These details can narrow vulnerability checks, although exposure alone is not a vulnerability.
Search and Social Sharing
The meta description has 167 characters and may be shortened in search results. The Generator tag identifies Hugo 0.119.0, making the publishing system easier to fingerprint. Twitter Card metadata is configured. The title has 54 characters, within a common display range. The observed directives allow indexing and link following.
Hosting and Email
Pages, Search and Sharing
| Meta description | Beautiful, modern publishing with email newsletters and paid subscriptions built-in. Used by Platformer, 404Media, Lever News, Tangle, The Browser, and thousands more. |
|---|---|
| Canonical URL | https://ghost.org/ |
| Language | English (default) |
| Twitter Card | summary_large_image |
Social Sharing Preview
11 fieldsrobots.txt (opens in a new tab)
7 rulesAll bots 1 allowed · 6 disallowed
//explore/?*sortBy/explore/?*lang/explore/?*query/explore?*sortBy/explore?*lang/explore?*query
No matching rules.
Sitemaps
1
Registration details RDAP / WHOIS
| Registrar | 1API GmbH |
|---|---|
| Registered | 2005-06-25 |
| Expires | 2029-06-25 |
| Domain status | client transfer prohibited |
| Nameservers | sara.ns.cloudflare.com、woz.ns.cloudflare.com |
| DNSSEC | unsigned |
DNS records
| Type | Name | Value | TTL | Priority |
|---|---|---|---|---|
| A | ghost.org | 13.52.188.95 | 92 | — |
| A | ghost.org | 52.52.192.191 | 92 | — |
| AAAA | ghost.org | 2600:1f1c:446:4900::258 | 94 | — |
| AAAA | ghost.org | 2600:1f1c:446:4900::259 | 94 | — |
| MX | ghost.org | aspmx.l.google.com | 300 | 1 |
| MX | ghost.org | alt1.aspmx.l.google.com | 300 | 5 |
| MX | ghost.org | alt2.aspmx.l.google.com | 300 | 5 |
| MX | ghost.org | aspmx2.googlemail.com | 300 | 10 |
| MX | ghost.org | aspmx3.googlemail.com | 300 | 10 |
| NS | ghost.org | sara.ns.cloudflare.com | 86400 | — |
| NS | ghost.org | woz.ns.cloudflare.com | 86400 | — |
| TXT | ghost.org | 1password-site-verification=5346HQKPM5HZBGBGWUZ5ZKFUOI | 300 | — |
| TXT | ghost.org | adn_verification=ghost | 300 | — |
| TXT | ghost.org | ahrefs-site-verification_d51316db926b7f8ab3f81f2080d57be72c9d635e9a8888dcbefcb4d6d7c7c5b0 | 300 | — |
| TXT | ghost.org | apple-domain-verification=jiNntnl7jd5HxJ2W | 300 | — |
| TXT | ghost.org | cloudflare_dashboard_sso=01514b4f7cf8ccfb2c6731aba449193c | 300 | — |
| TXT | ghost.org | cursor-domain-verification-zhnept=Si0arsYVCTEZDCkpV1cMy0Aom | 300 | — |
| TXT | ghost.org | google-site-verification=5Ate8bq8VfHBYziHQlc1d2tkv_SFwQJseqXkX6hg2D4 | 300 | — |
| TXT | ghost.org | google-site-verification=CZRMn6O1gf0kzHSuR90yLccVJCc7oTAMWISpNKt9zEg | 300 | — |
| TXT | ghost.org | google-site-verification=GIBr_OFEplZnFkkvpsy8qck5wbC3EKnCjpsjcbn72SA | 300 | — |
| TXT | ghost.org | status-page-domain-verification=vvyvvt0yn5z4 | 300 | — |
| TXT | ghost.org | v=spf1 include:_spf.google.com include:cmail1.com include:spf.mandrillapp.com include:helpscoutemail.com -all | 300 | — |
| DMARC | _dmarc.ghost.org | v=DMARC1; p=quarantine; rua=mailto:[email protected]; adkim=r; aspf=r; fo=1; | 300 | — |
TLS and certificates
| Assessment | Normal configuration |
|---|---|
| Supported protocols | TLSv1.2 |
| Negotiated protocol | TLSv1.3 |
| Certificate subject | ghost.org |
| Issuer | Let's Encrypt |
| Valid until | 2026-11-22T20:33 · Remaining when checked: 84 days |
| Verification details | Certificate trust: Passed · Hostname match: Passed |
HTTP response headers
| Header | Value |
|---|---|
| content-type | text/html; charset=UTF-8 |
| cache-control | public, max-age=0, must-revalidate |
| server | Netlify |
| strict-transport-security | max-age=31536000 |
| content-security-policy | default-src 'self' customer-cubrih08bflu3z2b.cloudflarestream.com pages.churnbuster.io ghbtns.com help.ghost.io resources.ghost.io tutorials.ghost.io changelog.ghost.io t.firstpromoter.com; script-src 'self' 'unsafe-eval' 'unsafe-inline' blob: cdn.jsdelivr.net https://cdn.firstpromoter.com proxy-assets.churnbuster.io https://static.ads-twitter.com embed.ghoststatus.org https://www.dubcdn.com/analytics/script.js ingest.promptwatch.com https://esm.sh https://vjs.zencdn.net https://analytics.ahrefs.com; style-src 'self' 'unsafe-inline' proxy-assets.churnbuster.io https://vjs.zencdn.net; font-src 'self' data: rsms.me/inter/font-files/; img-src 'self' 'unsafe-inline' data: supapjpiqdfzuaordcdx.supabase.co/storage/ analytics.twitter.com https://t.co https://dubassets.com https://*.cloudflarestream.com https://*.laravel.cloud; media-src 'self' blob: https://*.cloudflarestream.com; connect-src 'self' analytics.twitter.com https://ads-api.twitter.com/ t.firstpromoter.com https://api.dub.co/track/click ingest.promptwatch.com https://ingesteer.services-prod.nsvcs.net https://*.cloudflarestream.com https://analytics.ahrefs.com; worker-src 'self' blob:; frame-src 'self' https://app.netlify.com https://ghbtns.com https://pages.churnbuster.io; |
| x-frame-options | SAMEORIGIN |
| x-content-type-options | nosniff |
| referrer-policy | no-referrer-when-downgrade |
| permissions-policy | accelerometer=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=() |
Identified technologies
Recent Updates
- Website images
Related questions
More questions →No related questions yet.
User reviews (0)