← Back to browse

HotFX Pseudorandom

Show HN: HotFX Pseudorandom – value noise in a CSS variable via custom element

Added June 27, 2026 · Last analysed June 27, 2026 · via Hacker News

StackScope records what new websites are built with, the week they launch. Most we find ourselves, by watching public internet infrastructure for brand-new sites; the rest come from Product Hunt, Hacker News and PeerPush. We crawled this one for its tech stack and scored it for launch readiness: DNS, security headers, SEO basics. This page is what we saw on 27 June 2026; the live site may have changed since.

Every technology below links to its own page: which other new sites launched with it. Vendors and agencies watch those pages with Stackdar and hear about new adopters the week they ship, from £15 a month.

HotFX Pseudorandom is partway there, with clean crawl signals. Main gaps: missing several security headers, incomplete legal pages, and tracking cookies set before any opt-in.

Launched on Hacker News on June 27, 2026. The site is hosted on Amazon.com in the United States, with a domain registered in 2020. The crawl picked up 9 technologies on this site, covering analytics, javascript library, package cdn, and developer tools. The stack includes esm.sh, Hot Page, and HTTP/3.

If you own this site, refresh the snapshot and see the full fix list any time →

Vibe Score 3 · Few AI signals
How much the site looks AI-generated. Informational pattern-match signal, not a verdict. Does not feed the StackScope Score. See which fingerprints fired →

Tech Stack (9)

Infrastructure
Protocol HTTP/3
Build & Framework
Developer tools Vite
JavaScript library Lit
PrismJS
Package CDN esm.sh
jsDelivr
Site builder Hot Page (2)
Analytics & Marketing
Analytics Plausible
PostHog (5)

Infrastructure

Network
AS16509 · US
DNSSEC
Not enabled
DNS responses unsigned. Cache-poisoning vulnerable.
Green hosting
Not green hosted
No green-energy record. Data from The Green Web Foundation.
SSL Certificate
Let's Encrypt
Valid 28 May 2026 to 26 Aug 2026
Certificate as captured in this snapshot, not a live check.
Domain Age
5.7 years
Registered Dec 2020 · Porkbun LLC

Email Security

SPF ~all (via apex hot.page) Soft-fail (~all). Common and accepted.
?
DKIM Not detected at common selectors. Your provider may use a custom one.
DMARC Not published. Receivers fall back to permissive defaults.
?
MTA-STS Not deployed. Mail to your domain can be downgraded to plaintext en route.
?
TLS-RPT Not configured. You won't hear about silent SMTP TLS handshake failures.

Storage (6)

Cookies (2)
NameLifetimeDetected as
ph_phc_3iTkgDZ2zPsu8EfIEsQtkgalXNCTNeI63SbREURanBZ_posthog 1y PostHog
vi 10y -
Local storage (1)
KeySizeDetected as
ph_phc_3iTkgDZ2zPsu8EfIEsQtkgalXNCTNeI63SbREURanBZ_posthog 1.4 KB PostHog
Session storage (3)
KeySizeDetected as
ph_phc_3iTkgDZ2zPsu8EfIEsQtkgalXNCTNeI63SbREURanBZ_posthog 388 B PostHog
ph_phc_3iTkgDZ2zPsu8EfIEsQtkgalXNCTNeI63SbREURanBZ_primary_window_exists 4 B PostHog
ph_phc_3iTkgDZ2zPsu8EfIEsQtkgalXNCTNeI63SbREURanBZ_window_id 38 B PostHog

Readiness Breakdown How?

Custom title and meta description
Open Graph tags (title, image, description) (partial) missing og:description
Twitter card meta tags
Responsive viewport meta tag
Favicon present
- Canonical URL declared
- Semantic HTML (nav, main, article)

Performance How?

730 ms Server response
18% Faster than peers
1196 ms Largest contentful paint
0.22 Cumulative layout shift
529 KB Page weight
82 KB Image weight
4 Third-party domains
0 Console errors
0 Failed requests

3 images: 2 oversized, 3 missing alt text

Indicative grade from a single automated render, not a substitute for Lighthouse or field data, and not part of the StackScope score.

Vibe Score Breakdown How?

SignalPoints
AI writing signals +3

This score is based on structural patterns and is not definitive. Many legitimate sites may trigger signals, and AI-built sites may go undetected. It should be treated as an indicator, not a verdict.

AI Stance

No AI stance declared
llms.txt published
No AI bots blocked in robots.txt
? No directive declared
? None advertised

Well-Known Files

robots.txt
sitemap.xml (63 URLs)
security.txt
llms.txt
ads.txt
humans.txt
? Privacy Policy not detected
? Terms of Service not detected
? Consent manager not detected
Analytics set tracking cookies on our visit, with no opt-in step.
Detection works best on English language sites.

Security Headers (0/6)

Permissions-Policy experimental (check browser support)
X-XSS-Protection deprecated (use Content-Security-Policy)

Build

Code splitting
12 JS files
0 CSS files
4 Third-party domains

Brand Colours

Something not look right? If a technology shown here is wrong or out of date, email [email protected] and we'll review it.