← Back to browse

Villson

Villson is a local-first clipboard and screenshot history app for Mac.

Productivity

Added July 18, 2026 · Last analysed July 18, 2026 · via PeerPush

StackScope records what new websites are built with, the week they launch. Most we find ourselves, by watching public internet infrastructure for brand-new sites; the rest come from Product Hunt, Hacker News and PeerPush. We crawled this one for its tech stack and scored it for launch readiness: DNS, security headers, SEO basics. This page is what we saw on 18 July 2026; the live site may have changed since.

Every technology below links to its own page: which other new sites launched with it. Vendors and agencies watch those pages with Stackdar and hear about new adopters the week they ship, from £15 a month.

Villson is early-stage. Worth fixing first: missing several security headers, incomplete legal pages, and no robots.txt or sitemap.

Launched on PeerPush on July 18, 2026. The site is hosted on Vercel, with a domain registered 8 months before launch. We've detected 18 technologies on this site, covering directory, analytics, javascript library, and advertising. The stack includes Next.js, React, and Aura++.

It's running the same core stack as 3,480 other launches.

If you own this site, refresh the snapshot and see the full fix list any time →

Vibe Score 25 · Some AI signals
How much the site looks AI-generated. Informational pattern-match signal, not a verdict. Does not feed the StackScope Score. See which fingerprints fired →

Tech Stack (18)

Infrastructure
DNS GoDaddy DNS
Hosting Vercel
Security HSTS
Build & Framework
Framework React
JavaScript library Lenis
Three.js
Meta-framework Next.js (4)
Analytics & Marketing
Advertising Google Ads (3)
Analytics Datafast (2)
Google Analytics (2)
Tag management Google Tag Manager (2)

Infrastructure

Network
AS16509 · US
DNS
GoDaddy DNS
Authoritative nameserver
DNSSEC
Not enabled
DNS responses unsigned. Cache-poisoning vulnerable.
Green hosting
Not green hosted
No green-energy record. Data from The Green Web Foundation.
SSL Certificate
Let's Encrypt
Valid 19 Jun 2026 to 17 Sep 2026
Certificate as captured in this snapshot, not a live check.
Domain Age
10 months
Registered Oct 2025 · GoDaddy.com, LLC

Email Security

SPF Not published. Your domain can be spoofed in phishing emails.
?
DKIM Not detected at common selectors. Your provider may use a custom one.
DMARC p=quarantine Quarantine (moderate)
?
MTA-STS Not deployed. Mail to your domain can be downgraded to plaintext en route.
?
TLS-RPT Not configured. You won't hear about silent SMTP TLS handshake failures.

Storage (2)

Cookies (1)
NameLifetimeDetected as
_gcl_au 3mo Google Ads
Local storage (1)
KeySizeDetected as
_gcl_ls 277 B Google Ads

Readiness Breakdown How?

Custom title and meta description
Responsive viewport meta tag
Favicon present
Semantic HTML (nav, main, article)
- Open Graph tags (title, image, description)
- Canonical URL declared
- Twitter card meta tags

Performance How?

515 ms Server response
29% Faster than peers
716 ms Largest contentful paint
0.05 Cumulative layout shift
3.9 MB Page weight
2.1 MB Image weight
10 Third-party domains
0 Console errors
0 Failed requests

32 images: 27 oversized, 28 without width/height, 25 missing alt text

Indicative grade from a single automated render, not a substitute for Lighthouse or field data, and not part of the StackScope score.

Vibe Score Breakdown How?

SignalPoints
AI CSS signals +10
AI palette signals +5
AI writing signals +5
AI layout signals +5

This score is based on structural patterns and is not definitive. Many legitimate sites may trigger signals, and AI-built sites may go undetected. It should be treated as an indicator, not a verdict.

AI Stance

No AI stance declared
llms.txt published
No AI bots blocked in robots.txt
? No directive declared
? None advertised

Well-Known Files

robots.txt
sitemap.xml
security.txt
llms.txt
ads.txt
humans.txt
? Privacy Policy not detected
? Terms of Service not detected
? Analytics present, but it set no tracking cookies on our visit (it may be opt-in-gated).
Detection works best on English language sites.

Security Headers (1/6)

Permissions-Policy experimental (check browser support)
X-XSS-Protection deprecated (use Content-Security-Policy)

Build

Code splitting
10 JS files
1 CSS files
10 Third-party domains

Brand Colours

Something not look right? If a technology shown here is wrong or out of date, email [email protected] and we'll review it.