← Back to browse

hiFred

Turn discovery into clear action.

Added June 30, 2026 · Last analysed June 30, 2026 · via PeerPush · 57% unique tagline

StackScope is a free public catalogue of indie launches. We find launches on Product Hunt, Hacker News and similar feeds, then crawl each site to detect its tech stack and score it for launch readiness: DNS, security headers, SEO basics. This page is what we saw on 30 June 2026; the live site may have changed since.

hiFred still has work before launch. Visible gaps: missing several security headers, no robots.txt or sitemap, and tracking cookies set before any opt-in.

Launched on PeerPush on June 30, 2026. The site is hosted on Render and served through Cloudflare, with a domain registered 6 months before launch. The crawl picked up 14 technologies on this site, covering analytics, javascript library, auth, and CDN. The stack includes Google Sign-In, Tailwind CSS, and Chatwoot.

For context, it's on one of the most common stacks we track, shared by 378 launches.

If you own this site, refresh the snapshot and see the full fix list any time →

3.8
StackScope Score
Poor
41/100 Launch Readiness
Partially ready
3/3* Legal
Complete*
0/2 Crawl files
Missing
Vibe Score 15 · Few AI signals
How much the site looks AI-generated. Informational pattern-match signal, not a verdict. Does not feed the StackScope Score. See which fingerprints fired →

Tech Stack (14)

Infrastructure
CDN Cloudflare
Hosting Render
Protocol HTTP/3
Build & Framework
Auth Google Sign-In
CSS framework Tailwind CSS
Developer tools Vite
Font Google Fonts
JavaScript library React Router
Yjs
UI library shadcn/ui
Analytics & Marketing
Analytics FullStory (5)
Mixpanel (4)
Tag management Google Tag Manager (4)
Business Tools
Chat Chatwoot (4)

Infrastructure

Network
AS397273 · US
DNSSEC
Enabled
DNSKEY records published. DNS responses signed.
Green hosting
Not green hosted
No green-energy record. Data from The Green Web Foundation.
SSL Certificate
Google Trust Services
Valid 26 Jun 2026 to 24 Sep 2026
Certificate as captured in this snapshot, not a live check.
Domain Age
6 months
Registered Dec 2025 · GoDaddy.com, LLC

Email Security

SPF ~all (via apex hifred.ai) Soft-fail (~all). Common and accepted.
DKIM (via apex hifred.ai) Detected on apex hifred.ai
DMARC p=quarantine (via apex hifred.ai) Quarantine (moderate)
?
MTA-STS Not deployed. Mail to your domain can be downgraded to plaintext en route.
?
TLS-RPT Not configured. You won't hear about silent SMTP TLS handshake failures.

Storage (14)

Cookies (4)
NameLifetimeDetected as
cw_conversation 12mo Chatwoot
fs_lua < 1h FullStory
fs_uid 12mo FullStory
mp_b4f4941b787a4b08f78a5bfa3aac8921_mixpanel 12mo Mixpanel
Local storage (5)
KeySizeDetected as
liveprd_locale 2 B -
_authRedirectDetect 30 B -
_fs_lua 15 B FullStory
_fs_uid 119 B FullStory
_loginLoopDetect 30 B -
Session storage (3)
KeySizeDetected as
mp_gen_new_tab_id_mixpanel_b4f4941b787a4b08f78a5bfa3aac8921 1 B Mixpanel
mp_tab_id_mixpanel_b4f4941b787a4b08f78a5bfa3aac8921 41 B Mixpanel
_fs_tab_id 14 B FullStory
IndexedDB (2)
DatabaseVersionDetected as
mixpanelBrowserDb 1 Mixpanel
mixpanelFlagsDb 1 Mixpanel

Readiness Breakdown How?

Custom title and meta description (partial) missing meta description
Responsive viewport meta tag
Favicon present
- Open Graph tags (title, image, description)
- Canonical URL declared
- Twitter card meta tags
- Semantic HTML (nav, main, article)

Performance How?

284 ms Server response
58% Faster than peers
1764 ms Largest contentful paint
0.00 Cumulative layout shift
2.5 MB Page weight
1 KB Image weight
8 Third-party domains
1 Console errors
1 Failed requests
Broken first-party requests (1), worth fixing
  • 404 /config.json

Indicative grade from a single automated render, not a substitute for Lighthouse or field data, and not part of the StackScope score.

Vibe Score Breakdown How?

SignalPoints
AI CSS signals +10
AI palette signals +5

This score is based on structural patterns and is not definitive. Many legitimate sites may trigger signals, and AI-built sites may go undetected. It should be treated as an indicator, not a verdict.

AI Stance

No AI stance declared
llms.txt published
No AI bots blocked in robots.txt
? No directive declared
? None advertised

Well-Known Files

robots.txt
sitemap.xml
security.txt
llms.txt
ads.txt
humans.txt
Privacy Policy
/legal/privacy-policy.html
Terms of Service
/legal/terms.html
? Consent manager not detected
Analytics set tracking cookies on our visit, with no opt-in step.
94% unique

Security Headers (1/6)

Permissions-Policy experimental (check browser support)
X-XSS-Protection deprecated (use Content-Security-Policy)

Build

Code splitting
7 JS files
3 CSS files
8 Third-party domains

Brand Colours

Something not look right? If a technology shown here is wrong or out of date, email [email protected] and we'll review it.