← Back to browse

BumpSafe

AI-powered pregnancy safety checker for skincare ingredients

Health

Added April 10, 2026 · Last analysed April 10, 2026 · via

StackScope records what new websites are built with, the week they launch. Most we find ourselves, by watching public internet infrastructure for brand-new sites; the rest come from Product Hunt, Hacker News and PeerPush. We crawled this one for its tech stack and scored it for launch readiness: DNS, security headers, SEO basics. This page is what we saw on 10 April 2026; the live site may have changed since.

Every technology below links to its own page: which other new sites launched with it. Vendors and agencies watch those pages with Stackdar and hear about new adopters the week they ship, from £15 a month.

BumpSafe is early-stage. Visible gaps: missing several security headers, incomplete legal pages, and no robots.txt or sitemap.

Launched on Product Hunt on April 10, 2026. The site is hosted on Vercel. We've detected 6 technologies on this site, covering analytics, frameworks, hosting, and meta-frameworks. The stack includes Next.js, React, and HSTS.

If you own this site, refresh the snapshot and see the full fix list any time →

Vibe Score 0 ยท No AI signals
How much the site looks AI-generated. Informational pattern-match signal, not a verdict. Does not feed the StackScope Score. See which fingerprints fired →

Tech Stack (6)

Infrastructure
Hosting Vercel (2)
Security HSTS (2)
Build & Framework
Framework React
Meta-framework Next.js (4)
Analytics & Marketing
Analytics Vercel Analytics
Commerce & Payments
Payments Stripe (3)

Infrastructure

Network
AS16509 · US
DNSSEC
Not enabled
DNS responses unsigned. Cache-poisoning vulnerable.
Green hosting
Not green hosted
No green-energy record. Data from The Green Web Foundation.
SSL Certificate
Google Trust Services
Valid 26 Feb 2026 to 27 May 2026
Certificate as captured in this snapshot, not a live check.

Email Security

SPF Not published. Your domain can be spoofed in phishing emails.
?
DKIM Not detected at common selectors. Your provider may use a custom one.
DMARC Not published. Receivers fall back to permissive defaults.
?
MTA-STS Not deployed. Mail to your domain can be downgraded to plaintext en route.
?
TLS-RPT Not configured. You won't hear about silent SMTP TLS handshake failures.

Readiness Breakdown How?

โœ“ Responsive viewport meta tag
โœ“ Semantic HTML (nav, main, article)
- Custom title and meta description
- Open Graph tags (title, image, description)
- Canonical URL declared
- Twitter card meta tags
- Favicon present

AI Stance

No AI stance declared
llms.txt published
No AI bots blocked in robots.txt
? No directive declared
? None advertised

Well-Known Files

robots.txt
sitemap.xml
security.txt
llms.txt
ads.txt
humans.txt
? Privacy Policy not detected
? Terms of Service not detected
? Analytics present, but it set no tracking cookies on our visit (it may be opt-in-gated).
Detection works best on English language sites.

Security Headers (1/6)

Permissions-Policy experimental (check browser support)
X-XSS-Protection deprecated (use Content-Security-Policy)

Performance

97ms response time
Faster than 94% of sites
1 third-party domains loaded

Build

โœ“ Code splitting
10 JS files
0 CSS files
1 Third-party domains

Brand Colours

Something not look right? If a technology shown here is wrong or out of date, email [email protected] and we'll review it.