← Back to browse

Gondola

Search and compare hotel suites across Marriott, Hilton, Hyatt, IHG, and more. See points and cash rates side by side. Earn 3-7% cash back when you book direct.

62% unique tagline

www.gondola.ai · Added April 12, 2026 · Last analysed April 12, 2026· via Hacker News

This analysis is a snapshot taken on 12 April 2026. The site may have changed since then and results may not reflect its current state.
9.2
StackScope Score
Excellent
25/100 Vibe Score
Some AI signals
100/100 Launch Readiness
Launch ready
blocking
AI Stance
Blocks AI crawlers

Tech Stack (24)

Infrastructure
HSTS Security http_header_name
Namecheap DNS DNS ns_host
Vercel Hosting csp_allowed_host http_header_name script_src
Very Good Security Security csp_allowed_host
Email
Amazon SES Transactional email spf_include
Google Workspace Business email mx_host spf_include
Resend Transactional email dkim_selector
Build & Framework
Auth.js Auth cookie_name
Google Maps Maps csp_allowed_host script_src
MX MoneyDesktop Api csp_allowed_host
Next.js Meta-framework http_header_name http_header_value meta_name
React Framework structural_signal
shadcn/ui Ui library structural_signal
Tailwind CSS CSS framework structural_signal
Analytics & Marketing
Coframe Analytics cookie_name
Facebook Domain Verification Marketing txt_prefix
Google Search Console Seo txt_prefix
PostHog Analytics cookie_name csp_allowed_host
Vercel Analytics Analytics script_src
X (Twitter) Social csp_allowed_host
Commerce & Payments
Stripe Payments csp_allowed_host
Business Tools
Vercel Live Collaboration csp_allowed_host
Other
Apple App Store Mobile meta_name
Expedia EAN Travel csp_allowed_host

Infrastructure

Hosting
AS16509 · US
SSL Certificate
Let's Encrypt
Expires 31 May 2026
Domain Age
6.8 years
Registered Jul 2019 · NameCheap, Inc.

Readiness Breakdown How?

Favicon present
Open Graph tags (title, image, description)
Canonical URL declared
Responsive viewport meta tag
Custom title and meta description
Twitter card meta tags
Semantic HTML (nav, main, article)
Privacy policy page present
- Source maps not exposed in production
- Error tracking service installed

Vibe Score Breakdown How?

SignalPoints
Distinctive CSS conventions +10
Conventional landing-page palette +5
Conventional AI tooling combination +10

This score is based on structural patterns and is not definitive. Many legitimate sites may trigger signals, and AI-built sites may go undetected. It should be treated as an indicator, not a verdict.

Well-Known Files

llms.txt
security.txt
ads.txt
humans.txt

Legal

82% unique
Mentions:
Cookies Updated: July 1, 2024

Security Headers (6/6)

Referrer-Policy
X-Frame-Options
Permissions-Policy
X-Content-Type-Options
Content-Security-Policy
Strict-Transport-Security
X-XSS-Protection (legacy)

DMARC

p=reject Reject (strict)

Performance

605ms response time
Faster than 25% of sites
4 third-party domains loaded

Build

HTML minified
32 JS files
4 Third-party domains
Is this your site? 1 tip to improve your score
- Add a /.well-known/security.txt so security researchers can reach you. Learn more
Embed this score on your site
StackScope Score
<a href="https://stackscope.dev/launch/ma3ofgoj/gondola"><img src="https://stackscope.dev/badge/ma3ofgoj.svg" alt="StackScope Score" height="28" /></a>