🐻 Bear necessities for state management in React
orm.drizzle.team
Paid content
Categories: Development
Drizzle ORM is a lightweight and performant TypeScript ORM with developer experience in mind.
Website Overview
An advisory match combined with missing browser safeguards may increase exposure if the affected component is active. Deployment-specific verification and remediation deserve priority. Identifiable technologies and additional version or configuration signals make the service easier to fingerprint, which may help targeted scanners narrow their checks.
Domain and Registration
Transfer-protection status is present, helping reduce the risk of unauthorized domain transfers. The domain has about 5 years of registration history; its current configuration provides more context than age alone. The registrar is NameCheap, Inc., a widely used domain service provider. The domain uses the common .team extension, which is not an independent safety signal.
DNS and Email
The observed email authentication setup is incomplete: DMARC is missing. Nameservers are provided by Cloudflare, indicating managed DNS hosting. MX records point to the Google Workspace email service. No CNAME was found; the observed records resolve directly to addresses. TXT records include verification markers for Google. Such markers may also remain after a service stops being used.
TLS and Certificates
The public key uses EC with 256 bits. The server supplied a complete certificate chain. No organization name is present in the certificate; the available fields are consistent with domain validation. The certificate was issued within the Google Trust Services cloud or CDN ecosystem. The certificate's total validity is about 90 days, consistent with a short renewal cycle.
HTTP and Browser Security
The response lacks these common security headers: HSTS, CSP, Permissions-Policy, clickjacking protection. CORS permits any origin to read this response. This is common for public resources; sensitive responses need narrower handling. No X-Powered-By header was found, reducing one common source of backend fingerprinting information. The cf-ray response header indicates a CDN or caching proxy in the delivery path. No obvious internal addresses or debug information were found in the headers.
Technology Stack Analysis
The public page identifies Astro 4.16.18, Cloudflare, with exact versions exposed for 1 technologies. These details can narrow vulnerability checks, although exposure alone is not a vulnerability. The advisory source OSV places Astro 4.16.18 in the affected range of GHSA-2pvr-wf23-7pc7, GHSA-4g3v-8h47-v7g6, GHSA-5ff5-9fcw-vg88, GHSA-7pw4-f3q4-r2p2, GHSA-8hv8-536x-4wqp 等 10 项. Verify the deployed version and relevant configuration before drawing conclusions about exploitability. Updating affected components should be a priority.
Search and Social Sharing
The Generator tag identifies Astro v4.16.18, making the publishing system easier to fingerprint. No homepage canonical URL was detected. If duplicate URLs exist, consolidation may be less explicit. Open Graph is partially configured; og:image is missing. Twitter Card metadata is configured. The title has 38 characters, within a common display range.
Hosting and Email
Pages, Search and Sharing
| Meta description | Drizzle ORM is a lightweight and performant TypeScript ORM with developer experience in mind. |
|---|---|
| Canonical URL | Not detected |
| Language | English (default) |
| Twitter Card | summary |
Social Sharing Preview
8 fieldsrobots.txt (opens in a new tab)
1 rulesAll bots 1 allowed · 0 disallowed
/
No matching rules.
Sitemaps
1
Registration details RDAP / WHOIS
| Registrar | NameCheap, Inc. |
|---|---|
| Registered | 2021-09-08 |
| Expires | 2027-09-08 |
| Domain status | client transfer prohibited |
| Nameservers | cloe.ns.cloudflare.com、west.ns.cloudflare.com |
| DNSSEC | unsigned |
DNS records
| Type | Name | Value | TTL | Priority |
|---|---|---|---|---|
| A | orm.drizzle.team | 104.21.27.102 | 300 | — |
| A | orm.drizzle.team | 172.67.142.64 | 300 | — |
| AAAA | orm.drizzle.team | 2606:4700:3030::ac43:8e40 | 300 | — |
| AAAA | orm.drizzle.team | 2606:4700:3033::6815:1b66 | 300 | — |
| MX | drizzle.team | aspmx.l.google.com | 3600 | 1 |
| MX | drizzle.team | alt1.aspmx.l.google.com | 3600 | 5 |
| MX | drizzle.team | alt2.aspmx.l.google.com | 3600 | 5 |
| MX | drizzle.team | alt3.aspmx.l.google.com | 3600 | 10 |
| MX | drizzle.team | alt4.aspmx.l.google.com | 3600 | 10 |
| NS | drizzle.team | cloe.ns.cloudflare.com | 86400 | — |
| NS | drizzle.team | west.ns.cloudflare.com | 86400 | — |
| TXT | drizzle.team | google-site-verification=Gwr7sbqKFL8jR7zBiE2cYz2eTWjEZ2o0eLnl6Hvg7xo | 3600 | — |
| TXT | drizzle.team | google-site-verification=cFKHUVsIQacYx5kXMuY9ew2aoZjWUGaSMZHYgD0jDAs | 3600 | — |
| TXT | drizzle.team | v=spf1 include:_spf.mx.cloudflare.net include:_spf.google.com ~all | 3600 | — |
TLS and certificates
| Assessment | Normal configuration |
|---|---|
| Supported protocols | TLSv1.2、TLSv1.3 |
| Negotiated protocol | TLSv1.3 |
| Certificate subject | orm.drizzle.team |
| Issuer | Google Trust Services |
| Valid until | 2026-10-08T12:47 · Remaining when checked: 34 days |
| Verification details | Certificate trust: Passed · Hostname match: Passed |
HTTP response headers
| Header | Value |
|---|---|
| content-type | text/html; charset=utf-8 |
| cache-control | public, max-age=0, must-revalidate |
| server | cloudflare |
| x-content-type-options | nosniff |
| referrer-policy | strict-origin-when-cross-origin |
| access-control-allow-origin | * |
Identified technologies
Recent Updates
- Website images
- Screenshots
Related questions
More questions →No related questions yet.
User reviews (0)