🦊StackFox
ghirardelli.com logo

ghirardelli.com

Detected Technologies

Visit Site
24 technologies5 categories

ghirardelli.com is built on Magento with Google Tag Manager and Fastly.

The frontend relies on Bootstrap. Analytics are handled by Google Tag Manager and Google Analytics. Infrastructure includes Fastly and Amazon S3.

Tech Stack Highlights

Core Platform1

magento.com logo
Magento
Ecommerce
100%
3 evidence signals
Cookiemage-cache-storage
Cookiemage-cache-storage-section-invalidation
Scripthttps://www.ghirardelli.com/static/version1773209336/frontend/Lsna/gcc/en_US/Magento_Translation/js/mage-translation-dictionary.min.js

Frameworks & Languages3

php.net logo
PHP
Programming languages
75%
1 evidence signal
CookiePHPSESSID
getbootstrap.com logo
Bootstrap
UI frameworks
75%
3 evidence signals
Scripthttps://www.ghirardelli.com/static/version1773209336/frontend/Lsna/gcc/en_US/mage/bootstrap.min.js
Scripthttps://www.ghirardelli.com/static/version1773209336/frontend/Lsna/gcc/en_US/Magento_Ui/js/lib/knockout/bootstrap.min.js
Scripthttps://www.ghirardelli.com/static/version1773209336/frontend/Lsna/gcc/en_US/Magento_Ui/js/lib/knockout/bindings/bootstrap.min.js
mysql.com logo
MySQL
Databases
75%
1 evidence signal
HTMLimplied by Magento

Analytics & Marketing8

tagmanager.google.com logo
Google Tag Manager
Tag managers
100%
3 evidence signals
HTMLgoogletagmanager.com/gtm.js
JS Globalgoogle_tag_manager → object
JS GlobaldataLayer → object
business.trustpilot.com logo
Trustpilot
Reviews
100%
2 evidence signals
Scripthttps://invitejs.trustpilot.com/tp.min.js
JS GlobalTrustpilot → object
www.klaviyo.com logo
Klaviyo
Marketing automation
100%
8 evidence signals
Scripthttps://static-tracking.klaviyo.com/onsite/js/build-preview/commit-b6a43b6f5ad94df59e389ed11ef30c6aa1d39e0a/fender_analytics.e5aba8b3a52dc623782c.js?cb=2
Scripthttps://static-tracking.klaviyo.com/onsite/js/build-preview/commit-b6a43b6f5ad94df59e389ed11ef30c6aa1d39e0a/static.05920b16793f2a456e22.js?cb=2
Scripthttps://static-tracking.klaviyo.com/onsite/js/build-preview/commit-b6a43b6f5ad94df59e389ed11ef30c6aa1d39e0a/vendors~static~in_app_forms~signup_forms~post_identification_sync~web_personalization~client_identity~reviews~telemetry~customerHubRoot~renderFavoritesButton~renderFavoritesIconButton~FavoritesButtonElement~renderFaqWidget~.2cc0e8eaac59e1064c76.js?cb=2
Scripthttps://static.klaviyo.com/onsite/js/build-preview/commit-b6a43b6f5ad94df59e389ed11ef30c6aa1d39e0a/runtime.bd63b5764798735dab37.js?cb=2
Scripthttps://static.klaviyo.com/onsite/js/build-preview/commit-b6a43b6f5ad94df59e389ed11ef30c6aa1d39e0a/sharedUtils.eeceedc257a749f4fba3.js?cb=2
JS Globalklaviyo → object
stylesheethttps://static.klaviyo.com/onsite/js/build-preview/commit-b6a43b6f5ad94df59e389ed11ef30c6aa1d39e0a/532.f5cf641d94bc70223e6f.css
dnsDKIM selector: kl
M
Microsoft 365
Email
100%
1 evidence signal
dnsMX: ghirardelli-com.mail.protection.outlook.com
S
SendGrid
Email
95%
1 evidence signal
dnsSPF includes sendgrid.net
analytics.google.com logo
Google Analytics
Analytics
75%
1 evidence signal
Scripthttps://www.googletagmanager.com/gtag/js?id=G-9H2SS7JZEP&cx=c&gtm=4e63j1h2
ads.microsoft.com logo
Microsoft Advertising
Advertising
75%
1 evidence signal
JS Globaluetq → object
newrelic.com logo
New Relic
RUM
75%
2 evidence signals
JS GlobalNREUM → object
JS Globalnewrelic → object

Infrastructure & Security8

www.fastly.com logo
Fastly
CDN
100%
1 evidence signal
dnsCNAME: prod.magentocloud.map.fastly.net
queue-it.com logo
Queue-it
Performance
100%
4 evidence signals
Scripthttps://static.queue-it.net/script/queueclient.min.js
Scripthttps://static.queue-it.net/script/queueconfigloader.min.js
Scripthttps://assets.queue-it.net/lindt/integrationconfig/javascript/queueclientConfig.js?versionTimestamp=20260322101002
JS Globalqueueit_clientside_config → object
www.onetrust.com logo
OneTrust
Cookie compliance
75%
1 evidence signal
Scripthttps://cookie-cdn.cookiepro.com/scripttemplates/otSDKStub.js?did=7be0a24b-be17-4f21-9fa5-f7f8721cabad&data-document-language=true
www.rfc-editor.org logo
HSTS
Security
75%
1 evidence signal
Headermax-age=31557600
aws.amazon.com logo
Amazon S3
CDN
75%
1 evidence signal
Headers3[^ ]*\.amazonaws\.com: font-src fonts.gstatic.com use.typekit.net cash-f.squarecdn.com https://*.gstatic.com data: *.sodatech.com *.sodatech.net *.gstatic.com *.typekit.net cdn.livechatinc.com mediacdn.espssl.com viewer.byondxr.com use.fontawesome.com 'self' data: https://fonts.gstatic.com data: 'self' 'unsafe-inline'; form-action pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com * *.adyen.com api.bazaarvoice.com stg.api.bazaarvoice.com pal-test.adyen.com www.facebook.com *.cardinalcommerce.com *.paypal.com 3ds-secure.cardcomplete.com www.clicksafe.lloydstsb.com pay.activa-card.com *.wirecard.com acs.sia.eu *.touchtechpayments.com www.securesuite.co.uk rsa3dsauth.com *.monzo.com *.arcot.com *.wlp-acs.com *.pinterest.com https://ghirardelli.slgnt.us 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src fast.amc.demdex.net *.adobe.com bid.g.doubleclick.net www.googletagmanager.com *.youtube.com *.youtube-nocookie.com www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com player.vimeo.com https://www.google.com/recaptcha/ * *.adyen.com *.sharethis.com display.ugc.bazaarvoice.com api.bazaarvoice.com stg.api.bazaarvoice.com *.ehappify.com www.xtento.com *.vimeo.com *.jsctool.com *.pinterest.com *.mmcagentur.at *.doubleclick.net *.facebook.com *.facebook.net *.google.com *.demdex.net *.authorize.net *.paypal.com *.googletagmanager.com *.xtento.com *.app-wallee.com *.waltpixel.com *.equitystory.com offer.slgnt.us vars.hotjar.com *.pepperjamnetwork.com services.listrak.com *.serverdata.net *.livechatinc.com *.lindtusa.com *.russellstover.com *.ghirardelli.com https://*.ordergroove.com *.weltpixel.com app-wallee.com www.jsctool.com static.ogmystyle.com static2.ogmystyle.com www.mystyleplatform.com c.paypal.com checkout.paypal.com assets.braintreegateway.com pay.google.com *.cardinalcommerce.com *.trustpilot.com geowidget.inpost.pl sandbox-easy-geowidget-sdk.easypack24.net widget.packeta.com https://ghirardelli.slgnt.us https://www.paypalobjects.com https://lindtusa.rlvs.co.uk https://optmize.google.com https://www.google.com/ https://ct.pinterest.com/ 'self' 'unsafe-inline'; img-src assets.adobedtm.com amcglobal.sc.omtrdc.net dpm.demdex.net cm.everesttech.net *.adobe.com widgets.magentocommerce.com data: googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net www.googleadservices.com www.google-analytics.com analytics.google.com www.googletagmanager.com p.typekit.net t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com i.ytimg.com *.youtube.com validator.swagger.io * https://*.gstatic.com *.adyen.com *.sharethis.com display.ugc.bazaarvoice.com network.bazaarvoice.com network-stg.bazaarvoice.com network-a.bazaarvoice.com network-stg-a.bazaarvoice.com photos-uat-us.bazaarvoice.com img.youtube.com *.cloudfront.net *.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ www.xtento.com cdn.xtento.com blob: lindt.test *.lindt.test maps.googleapis.com *.pinterest.com *.postcodeanywhere.co.uk *.klarna.com *.invibes.com *.b26net.com https://www.google-analytics.com *.googletagmanager.com *.teads.tv *.videostep.com *.facebook.com *.google.com *.google.ad *.google.ae *.google.com.af *.google.com.ag *.google.com.ai *.google.al *.google.am *.google.co.ao *.google.com.ar *.google.as *.google.at *.google.com.au *.google.az *.google.ba *.google.com.bd *.google.be *.google.bf *.google.bg *.google.com.bh *.google.bi *.google.bj *.google.com.bn *.google.com.bo *.google.com.br *.google.bs *.google.bt *.google.co.bw *.google.by *.google.com.bz *.google.ca *.google.cd *.google.cf *.google.cg *.google.ch *.google.ci *.google.co.ck *.google.cl *.google.cm *.google.cn *.google.com.co *.google.co.cr *.google.com.cu *.google.cv *.google.com.cy *.google.cz *.google.de *.google.dj *.google.dk *.google.dm *.google.com.do *.google.dz *.google.com.ec *.google.ee *.google.com.eg *.google.es *.google.com.et *.google.fi *.google.com.fj *.google.fm *.google.fr *.google.ga *.google.ge *.google.gg *.google.com.gh *.google.com.gi *.google.gl *.google.gm *.google.gr *.google.com.gt *.google.gy *.google.com.hk *.google.hn *.google.hr *.google.ht *.google.hu *.google.co.id *.google.ie *.google.co.il *.google.im *.google.co.in *.google.iq *.google.is *.google.it *.google.je *.google.com.jm *.google.jo *.google.co.jp *.google.co.ke *.google.com.kh *.google.ki *.google.kg *.google.co.kr *.google.com.kw *.google.kz *.google.la *.google.com.lb *.google.li *.google.lk *.google.co.ls *.google.lt *.google.lu *.google.lv *.google.com.ly *.google.co.ma *.google.md *.google.me *.google.mg *.google.mk *.google.ml *.google.com.mm *.google.mn *.google.ms *.google.com.mt *.google.mu *.google.mv *.google.mw *.google.com.mx *.google.com.my *.google.co.mz *.google.com.na *.google.com.ng *.google.com.ni *.google.ne *.google.nl *.google.no *.google.com.np *.google.nr *.google.nu *.google.co.nz *.google.com.om *.google.com.pa *.google.com.pe *.google.com.pg *.google.com.ph *.google.com.pk *.google.pl *.google.pn *.google.com.pr *.google.ps *.google.pt *.google.com.py *.google.com.qa *.google.ro *.google.ru *.google.rw *.google.com.sa *.google.com.sb *.google.sc *.google.se *.google.com.sg *.google.sh *.google.si *.google.sk *.google.com.sl *.google.sn *.google.so *.google.sm *.google.sr *.google.st *.google.com.sv *.google.td *.google.tg *.google.co.th *.google.com.tj *.google.tl *.google.tm *.google.tn *.google.to *.google.com.tr *.google.tt *.google.com.tw *.google.co.tz *.google.com.ua *.google.co.ug *.google.co.uk *.google.com.uy *.google.co.uz *.google.com.vc *.google.co.ve *.google.vg *.google.co.vi *.google.com.vn *.google.vu *.google.ws *.google.rs *.google.co.za *.google.co.zm *.google.co.zw *.google.cat *.taboola.com *.doubleclick.net *.outbrain.com *.adobedtm.com *.omtrdc.net *.demdex.net *.everesttech.net *.magentocommerce.com *.sodatech.com *.sodatech.net api.official-deals.co.uk api.official-coupons.com *.adsymptotic.com cdn.livechat-files.com cp.official-coupons.com cookie-cdn.cookiepro.com cp.official-deals.co.uk site-azp.slgnt.us ct.pinterest.com *.ads.linkedin.com cdn.polyfill.io offer.slgnt.us *.blob.core.windows.net s.pinimg.com snap.licdn.com mediacdn.espssl.com *.clarity.ms *.bing.com *.serverdata.net lindtna.test *.lindtna.test *.livechatinc.com mageside.com app-wallee.com *.gstatic.com d.ratepay.com viewer.byondxr.com s3.us-west-2.amazonaws.com showroom-media.byondxr.com media-optimization-service.byondxr.com *.byondxr.com *.listrakbi.com www.mystyleplatform.com static.mystyleplatform.com static2.mystyleplatform.com static2.ogmystyle.com mystyleplatform.s3.us-west-2.amazonaws.com https://www.unifaunonline.se https://*.tile.openstreetmap.org/ www.sandbox.paypal.com b.stats.paypal.com dub.stats.paypal.com assets.braintreegateway.com c.paypal.com checkout.paypal.com *.paypal.com https://redchamps.com 'self' data: geowidget.inpost.pl sandbox-easy-geowidget-sdk.easypack24.net widget.packeta.com https://www.upsellit.com https://mediacdn.espssl.com/2824/Shared/Modal/chocolate.png https://www.linkedin.com https://*.linkedin.com/ https://px.ads.linkedin.com *.googleadservices.com *.russellstover.com https://www.google-anaytics.com https://www.googletagmanager.com https://optimize.google.com https://bam.nr-data.net *.bazaarvoice.com data: 'self' 'unsafe-inline'; script-src assets.adobedtm.com *.adobe.com googleads.g.doubleclick.net www.googleadservices.com www.google-analytics.com analytics.google.com www.googletagmanager.com unpkg.com/@adobe/ cdn.jsdelivr.net/npm/@adobe/ commerce.adobedtm.com js.magento-datasolutions.com *.newrelic.com *.nr-data.net amcglobal.sc.omtrdc.net *.adobe.io use.typekit.net www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com magento-recs-sdk.adobe.net s.ytimg.com www.googleapis.com vimeo.com www.vimeo.com *.vimeocdn.com *.youtube.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ *.magento-datasolutions.com *.magento-ds.com *.adyen.com pay.google.com *.payments-amazon.com *.paypal.com *.ratepay.com *.cash.app *.visa.com *.mastercard.com *.sharethis.com *.googleapis.com *.attn.tv events.attentivemobile.com apps.bazaarvoice.com apps.nexus.bazaarvoice.com apps-stg.nexus.bazaarvoice.com analytics-static.ugc.bazaarvoice.com network.bazaarvoice.com network-stg.bazaarvoice.com display.ugc.bazaarvoice.com api.bazaarvoice.com stg.api.bazaarvoice.com mpsnare.iesnare.com widget.freshworks.com m2epro.freshdesk.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ www.xtento.com cdn.xtento.com *.pcapredict.com lindt.slgnt.eu maps.googleapis.com *.pinterest.com *.postcodeanywhere.co.uk *.cloudflare.com *.teads.tv *.r66net.com *.facebook.net *.googleadservices.com *.doubleclick.net *.cookiepro.com *.cloudfront.net *.videostep.com *.mfgroup.ch *.taboola.com *.outbrain.com *.adobedtm.com *.authorize.net *.unpkg.com *.fontawesome.com *.sodatech.net *.sodatech.com www.clarity.ms bat.bing.com *.b2c.com bt.fraud0.com container.pepperjam.com www.googleoptimize.com *.hotjar.com *.pepperjamnetwork.com *.revlifter.io site-azp.slgnt.us ct.pinterest.com *.ads.linkedin.com cdn.polyfill.io offer.slgnt.us *.blob.core.windows.net s.pinimg.com snap.licdn.com acsbapp.com cdn.noibu.com www.youtube.com *.upsellit.com *.livechatinc.com *.serverdata.net *.tiktok.com *.ordergroove.com app-wallee.com https://www.googletagmanager.com tagmanager.google.com d.ratepay.com www.jsctool.com byondxr-viewer.byondxr.com web-apps.byondxr.com *.listrakbi.com *.listrak.com mystyleplatform.com www.mystyleplatform.com static.ogmystyle.com static2.ogmystyle.com d203yb14zlmxwn.cloudfront.net cdnjs.cloudflare.com cdn.jsdelivr.net use.fontawesome.com *.mczbf.com https://api.unifaun.com js.braintreegateway.com assets.braintreegateway.com c.paypal.com api.braintreegateway.com api.sandbox.braintreegateway.com client-analytics.braintreegateway.com client-analytics.sandbox.braintreegateway.com songbirdstag.cardinalcommerce.com songbird.cardinalcommerce.com *.google.com *.gstatic.com *.trustpilot.com geowidget.inpost.pl sandbox-easy-geowidget-sdk.easypack24.net widget.packeta.com https://www.youtube.com https://www.googleanalytics.com https://www.google-analytics.com https://www.googleoptimize.com 'unsafe-inline' https://optimize.google.com 'unsafe-inline' https://www.lindt-spruengli.com/* https://www.lindt-spruengli.com/media/target/VAPI.min.js https://www.lindt-spruengli.com/media/target/at.js https://click2cart.com https://ghirardelli.mycontactcenter.net/ https://pop1-apps.mycontactcenter.net/ https://form.jotform.com https://ghirardelli-pages.vercel.app https://form.jotform.com/jsform/250416509718156 https://form.jotform.com/250695600740152 https://api-js.datadome.co 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.magento-datasolutions.com *.magento-ds.com *.cash.app https://fonts.googleapis.com/ *.sharethis.com display.ugc.bazaarvoice.com *.amazonaws.com widget.freshworks.com m2epro.freshdesk.com https://static.klaviyo.com *.fonts.net *.postcodeanywhere.co.uk *.cloudfront.net *.cloudflare.com *.sodatech.com *.sodatech.net *.googleapis.com *.getfirebug.com cloud.typography.com *.serverdata.net *.myfonts.net *.russellstover.com tagmanager.google.com d.ratepay.com *.listrakbi.com *.listrak.com use.fontawesome.com www.mystyleplatform.com static.ogmystyle.com static2.ogmystyle.com unsafe-inline assets.braintreegateway.com *.gstatic.com *.trustpilot.com geowidget.inpost.pl widget.packeta.com https://cloud.typography.com 'unsafe-inline' https://optimize.google.com https://fonts.googleapis.com 'unsafe-inline' 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src *.adobe.com *.cloudfront.net *.serverdata.net *.livechatinc.com *.listrakbi.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net www.googleadservices.com www.google-analytics.com analytics.google.com www.googletagmanager.com *.snplow.net commerce.adobedc.net *.newrelic.com *.nr-data.net vimeo.com api.magento.com *.adobe.io performance.typekit.net www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com commerce.adobe.io *.magento-datasolutions.com *.magento-ds.com *.sentry.io * *.adyen.com *.sharethis.com *.googleapis.com *.attn.tv events.attentivemobile.com api.bazaarvoice.com stg.api.bazaarvoice.com apps.bazaarvoice.com network.bazaarvoice.com network-stg.bazaarvoice.com widget.freshworks.com m2epro.freshdesk.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.paypal.com *.postcodeanywhere.co.uk *.ratepay.com *.luckyorange.net *.cookiepro.com *.mfgroup.ch *.doubleclick.net *.visitors.live wss://in.visitors.live wss://visitors.live wss://in.visitors.live/ wss://visitors.live/ visitors.live *.taboola.com *.demdex.net *.omtrdc.net *.magento.com *.adobe.net *.adobedtm.com *.adobedc.net *.typekit.net *.magedevteam.com *.sodatech.com *.sodatech.net *.teads.tv www.sjwoe.com input.noibu.com wss://input.noibu.com/pv_part in.hotjar.com www.facebook.com *.b2c.com bt.fraud0.com *.revlifter.com *.pepperjamnetwork.com *.revlifter.io site-azp.slgnt.us ct.pinterest.com *.ads.linkedin.com cdn.polyfill.io offer.slgnt.us s.pinimg.com snap.licdn.com *.acsbapp.com cdn.noibu.com https://maps.googleapis.com *.clarity.ms *.facebook.com *.serverdata.net *.livechatinc.com api.addressy.com *.listrakbi.com *.mczbf.com *.tiktok.com *.ordergroove.com https://www.google-analytics.com d.ratepay.com www.jsctool.com *.byondxr.com api.byondxr.com s3.us-west-2.amazonaws.com api.braintreegateway.com api.sandbox.braintreegateway.com client-analytics.braintreegateway.com client-analytics.sandbox.braintreegateway.com *.braintree-api.com *.cardinalcommerce.com *.google.com google.com t.elasticsuite.io *.google-analytics.com https://cdn.linkedin.oribi.io https://vc.hotjar.io *.ghirardelli.com *.hotjar.io *.bing.com ws.hotjar.com wss://ws.hotjar.com sc-api.click2cart.com https://geolocation.onetrust.com https://bat.bing.com ghirardelli-pages.vercel.app https://ghirardelli-pages.vercel.app/api/synup https://ghirardelli-pages.vercel.app 'self' 'unsafe-inline'; child-src assets.braintreegateway.com c.paypal.com *.paypal.com http: https: blob: 'self' 'unsafe-inline'; default-src *.byondxr.com *.googleapis.com 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
unpkg.com logo
Unpkg
CDN
75%
1 evidence signal
Scripthttps://unpkg.com/@adobe/magento-storefront-events-sdk@%5E1/dist/index.js
platform.sh logo
Platform.sh
PaaS
75%
1 evidence signal
Headeri-0d0b5a4980d714906 i-0d0b5a4980d714906
aws.amazon.com logo
Amazon Web Services
PaaS
50%
1 evidence signal
HTMLimplied by Amazon S3

Libraries & Utilities4

underscorejs.org logo
Underscore.js
JavaScript libraries
75%
1 evidence signal
Scripthttps://www.ghirardelli.com/static/version1773209336/frontend/Lsna/gcc/en_US/underscore.min.js
github.com logo
core-js
JavaScript libraries
75%
1 evidence signal
JS Global__core-js_shared__ → object
momentjs.com logo
Moment.js
JavaScript libraries
75%
1 evidence signal
Scripthttps://www.ghirardelli.com/static/version1773209336/frontend/Lsna/gcc/en_US/moment.min.js
github.com logo
LazySizes
JavaScript libraries
75%
2 evidence signals
JS GloballazySizes → object
JS GloballazySizesConfig → object

Want to see AI crawler policies?

Check which AI bots can access this site.

View AI Policy →