New: The State of Indie Launches: July 2026. The framework layer is the same everywhere. The payment layer is not. Read

← Back to browse

Wix Hotel Booking App

Hotel management on your site, commission free

Added August 11, 2026 · Last analysed August 11, 2026 · via

StackScope is a free public catalogue of indie launches. We find launches on Product Hunt, Hacker News and similar feeds, then crawl each site to detect its tech stack and score it for launch readiness: DNS, security headers, SEO basics. This page is what we saw on 11 August 2026; the live site may have changed since.

Wix Hotel Booking App has the basics covered well, with complete legal pages, a thorough launch checklist, and well-configured email security. What needs work: missing several security headers and tracking cookies set before any opt-in.

Launched on Product Hunt on August 11, 2026. The site is served through Cloudflare, with a domain registered in 1995. Our crawler found 46 technologies on this site, covering transactional email, security, business email, and analytics. The stack includes Astro, React, and Anodot.

It's also a rare Vali Email sighting, just 26 in our data.

If you own this site, refresh the snapshot and see the full fix list any time →

Vibe Score 100 · Strong AI signals
How much the site looks AI-generated. Informational pattern-match signal, not a verdict. Does not feed the StackScope Score. See which fingerprints fired →

Tech Stack (46)

Email
Business email Google Workspace (2)
Microsoft 365
Migadu
Email marketing HubSpot
Mailchimp
Email security Valimail
Transactional email Mailgun
Mandrill
SendGrid
Vali Email
Build & Framework
Design Canva
Framework React (2)
JavaScript library DOMPurify
React Router
Meta-framework Astro
Site builder Wix (5)
Commerce & Payments
Payments Stripe
Business Tools
Collaboration Miro
Communication Twilio
CRM Attio
Error tracking Sentry
Monitoring Anodot
Dynatrace
Productivity DocuSign
Zapier
SaaS Atlassian
Jamf
AI & Emerging
AI API Anthropic
AI builder Cursor
AI service OpenAI

Infrastructure

Network
AS58182 · US
DNS
NS1
Authoritative nameserver
DNSSEC
Not enabled
DNS responses unsigned. Cache-poisoning vulnerable.
Green hosting
Not green hosted
No green-energy record. Data from The Green Web Foundation.
SSL Certificate
Let's Encrypt
Valid 8 Aug 2026 to 6 Nov 2026
Certificate as captured in this snapshot, not a live check.
Domain Age
31.3 years
Registered May 1995 · GoDaddy.com, LLC

Email Security

SPF ~all Soft-fail (~all). Common and accepted.
DKIM Detected via known email provider
DMARC p=quarantine Quarantine (moderate)
?
MTA-STS Not deployed. Mail to your domain can be downgraded to plaintext en route.
?
TLS-RPT Not configured. You won't hear about silent SMTP TLS handshake failures.

Storage (6)

Cookies (6)
NameLifetimeDetected as
consent-policy 27d -
XSRF-TOKEN 6mo -
_ga 1y Google Analytics
_ga_0K3DKMG1EP 1y Google Analytics
_wixAB3 6mo Wix
_wixCIDX 5mo Wix

Readiness Breakdown How?

Custom title and meta description
Open Graph tags (title, image, description) (partial) missing og:image
Canonical URL declared
Responsive viewport meta tag
Favicon present
Semantic HTML (nav, main, article)
- Twitter card meta tags

Performance How?

1216 ms Server response
8% Faster than peers
1528 ms Largest contentful paint
0.00 Cumulative layout shift
21.1 MB Page weight
19.8 MB Image weight
22 Third-party domains
1 Console errors
1 Failed requests

24 images: 12 oversized, 12 without width/height, 20 missing alt text

Broken first-party requests (1), worth fixing
  • 404 /_api/marketplace-api/v1/container?platformName=stand_alone_platform&containerName=menu&lang=en

Indicative grade from a single automated render, not a substitute for Lighthouse or field data, and not part of the StackScope score.

Vibe Score Breakdown How?

SignalPoints
Recognised AI builder signature +100

This score is based on structural patterns and is not definitive. Many legitimate sites may trigger signals, and AI-built sites may go undetected. It should be treated as an indicator, not a verdict.

AI Stance

Welcomes AI crawlers
llms.txt published
No AI bots blocked in robots.txt
? No directive declared
? None advertised

Well-Known Files

robots.txt
sitemap.xml (10243 URLs)
security.txt
llms.txt
ads.txt
humans.txt
Privacy Policy
/app-market/category/design-elements/privacy--security?referral=menu_navigation&subCat=privacy--security
Terms of Service
/about/terms-accessibility
? Consent manager not detected
Analytics set tracking cookies on our visit, with no opt-in step.
96% unique

Security Headers (2/6)

Permissions-Policy experimental (check browser support)
X-XSS-Protection deprecated (use Content-Security-Policy)

Build

Code splitting
10 JS files
4 CSS files
22 Third-party domains

Brand Colours

Something not look right? If a technology shown here is wrong or out of date, email [email protected] and we'll review it.