🌐

tiktok.com

DE
✓ HTTPS ✓ HTTP/2 ✓ Gzip 60.0% ⚡ 19635ms
tiktok.com Overview

Get a snapshot of tiktok.com's online performance, security posture, and technology profile.

tiktok.com Website Overview & Technology Report

84
Trust Score
Very Likely Safe
85
Security
Headers: 5/6
19635ms
Response
Slow
3
Technologies
Detected
🤖 AI Analysis

We performed a comprehensive analysis of tiktok.com on 2026-06-29. The website returned an HTTP 200 status code with a server response time of 19635ms. The page is served over HTTP/2 protocol with Gzip compression enabled, achieving approximately 60.0% size reduction. The total page weight is 355 KB. The website uses a secure HTTPS connection with a valid SSL certificate issued by DigiCert Inc (OV type). The connection is encrypted using TLS 1.3 with the TLS_AES_256_GCM_SHA384 cipher suite and ECDSA-SHA256 signature algorithm. The certificate covers 2 domain(s) (Subject Alternative Names) and expires on 2026-12-03, which is 157 days from now. The security headers analysis reveals a score of 85/100 (good). The following security headers are properly configured: Content-Security-Policy, Strict-Transport-Security (HSTS), X-Frame-Options, X-Content-Type-Options, and Referrer-Policy. However, the site is missing Permissions-Policy, which could expose the site and its users to cross-site scripting (XSS), clickjacking, and other web-based attacks. Our technology detection scan identified 3 technologies across 3 categories powering tiktok.com. The detected stack includes Remix, React, and Shop Pay. The site uses Remix as its primary framework. The UI is built with React. Based on our comprehensive analysis of domain age, SSL configuration, email authentication, security headers, and blacklist status, tiktok.com receives an overall trust score of 84/100, classified as "Very Likely Safe".

Status Code200 OK
HTTP VersionHTTP/2
Servernginx
Page Size355 KB
Total Requests105
3rd Party Domains1
SSL CertificateDigiCert Inc (OV) · 157 days left
TLS VersionTLS 1.3
IP Address2.18.64.21
tiktok.com Trust & Safety

Evaluate trustworthiness based on age, SSL, email authentication, security headers, and blacklist status across 8 threat databases.

tiktok.com Trust Score & Safety Analysis

84
Trust Score
85
Security
🤖 Trust Analysis

After conducting a thorough safety and legitimacy analysis, tiktok.com receives a trust score of 84/100, which places it in the "Very Likely Safe" category. This score is calculated by evaluating multiple factors including SSL certificate validity, domain registration history, email authentication protocols, security header configuration, and blacklist status across major threat intelligence databases. The analysis identified several positive trust signals: a valid HTTPS connection protecting data in transit, HSTS (HTTP Strict Transport Security) enforcement preventing protocol downgrade attacks, a valid SSL certificate issued by DigiCert Inc with 157 days until expiration, SPF (Sender Policy Framework) email authentication preventing email spoofing, DMARC email authentication with a reject policy — the strongest available setting, and DKIM (DomainKeys Identified Mail) providing cryptographic email verification. Areas of concern include: the domain's WHOIS information is hidden behind a privacy service, making it harder to verify the owner's identity and DNSSEC is not enabled, leaving DNS queries vulnerable to spoofing attacks. While these issues don't necessarily indicate malicious intent, they represent areas where the website's security posture could be improved. We checked tiktok.com against 8 major blacklist databases including Google Safe Browsing, Phishtank, Urlhaus, Openphish, Dnsfilter, Spamhaus Dbl, Surbl, and Virustotal. The domain passed all 8 checks with a clean status, meaning it has not been flagged for phishing, malware distribution, spam, or other malicious activities by any of the tested threat intelligence providers.

HTTPS + HSTS
+12
SPF + DMARC + DKIM
+8
SSL Certificate
+7
Security Headers
+8

Security Headers

Content-Security-Policy✓ Set
HSTS✓ Set
X-Frame-Options✓ Set
X-Content-Type-Options✓ Set
Referrer-Policy✓ Set
Permissions-Policy✗ Missing

Blacklist Checks 8/8 Clean ✓

Google Safe Browsing
Phishtank
Urlhaus
Openphish
Dnsfilter
Spamhaus Dbl
Surbl
Virustotal

Rankings & Estimates

Tranco Rank#60 worldwide

🔍 Analyze Your Own Website

Check your site's trust score, security headers, tech stack and 50+ metrics — completely free.

Analyze Now →
tiktok.com Technology Stack 3 detected

Discover every technology powering this website — from CMS and frameworks to analytics, payments, and marketing tools.

tiktok.com Technology Stack & Detected Technologies

🤖 Stack Analysis

Our technology detection engine scanned tiktok.com and identified 3 distinct technologies across 3 categories. This analysis is performed by examining HTTP response headers, HTML source code patterns, JavaScript library fingerprints, CSS framework signatures, and DNS records. Framework: Remix — provides the application framework and routing for tiktok.com. UI Library: React — handles the user interface rendering and component management for tiktok.com. Payments: Shop Pay — processes payment transactions for tiktok.com.

⚛️ Framework
Remix 95%
⚛️ UI Library
React 95%
💳 Payments
Shop Pay 95%
tiktok.com Performance & Web Vitals

Response time, compression, CDN usage, Core Web Vitals, and environmental impact metrics for tiktok.com.

tiktok.com Performance & Web Vitals Report

🤖 Performance Analysis

tiktok.com delivers its homepage in 19635ms (server response time), which is considered slow by industry standards. The total page weight is 355 KB, and we detected 105 resource requests loading assets from 1 third-party domains. A high number of third-party domains can significantly impact page load time due to additional DNS lookups and TLS handshakes required for each domain. The website uses Gzip compression for text-based assets, achieving an estimated 60.0% reduction in transfer size. This reduces bandwidth usage and improves page load times, especially for visitors on slower connections. Asset minification status: 0 out of 0 CSS files and 0 out of 52 JavaScript files are minified. Minifying the remaining 52 unminified file(s) could further reduce page weight by 10-30% for those assets. Minification is a best practice that reduces download sizes without affecting functionality. From an environmental perspective, each page view of tiktok.com produces approximately 0.17g of CO₂, earning a carbon rating of B. This places the website among the cleanest on the web, demonstrating efficient use of server resources and optimized content delivery. For reference, the average web page produces about 0.5g of CO₂ per page view. The page weight of 355 KB is the primary factor in this calculation. Core Web Vitals data from the Chrome User Experience Report (CrUX) is not available for tiktok.com. This typically means the site doesn't have enough real-world Chrome user traffic to generate statistically significant field data, or the domain is not included in the CrUX dataset. Core Web Vitals (LCP, INP, CLS) are important Google ranking factors that measure real user experience.

Response Time19635ms Slow
Page Size355 KB
CompressionGzip 60.0% savings
CDNNot detected
Carbon / Page View0.17g · Rating B
tiktok.com DNS & Domain Info

Complete DNS record analysis including email authentication (SPF, DMARC, DKIM), registrar details, and subdomain discovery.

tiktok.com DNS Records, Email Authentication & Domain Registration

🤖 DNS Analysis

tiktok.com resolves to the IPv4 address 2.18.64.21, but does not support IPv6. IPv6 adoption is increasingly important as IPv4 address space becomes exhausted, and some ISPs and regions are transitioning to IPv6-only connectivity. The domain has 2 A record(s) configured. The domain name system is managed by 6 name servers: a1-97.akam.net, a12-66.akam.net, a13-67.akam.net, a18-64.akam.net, a6-65.akam.net, and a9-66.akam.net. Having 6 name servers provides good redundancy — if one fails, the others can continue serving DNS queries. The choice of name servers often indicates the DNS hosting provider or CDN service being used. Email for tiktok.com is handled by tiktok.com with 3 MX records configured: mx1.tiktok.com, mx2.tiktok.com, and mx3.tiktok.com. Multiple MX records provide failover redundancy — if the primary mail server is unavailable, email will be routed to the next available server. SPF (Sender Policy Framework) is configured, which specifies which mail servers are authorized to send email on behalf of this domain. This helps prevent email spoofing and improves email deliverability. DMARC (Domain-based Message Authentication, Reporting and Conformance) is configured with a reject policy — the strongest setting, instructing receiving servers to reject unauthorized emails entirely. DKIM (DomainKeys Identified Mail) is configured, adding a cryptographic signature to outgoing emails that receiving servers can verify to confirm the email hasn't been tampered with in transit. DNSSEC is not enabled for tiktok.com. While not critical for most websites, DNSSEC adds an important security layer by ensuring DNS responses haven't been tampered with during transit. Enabling DNSSEC is recommended for domains handling sensitive data or financial transactions. Our subdomain enumeration scan discovered 9 active subdomains for tiktok.com: api.tiktok.com, dev.tiktok.com, developers.tiktok.com, m.tiktok.com, partners.tiktok.com, shop.tiktok.com, smtp.tiktok.com, and support.tiktok.com. Plus 1 additional subdomains. Active subdomains can reveal the organization's infrastructure, including development environments, API endpoints, and third-party service integrations.

IP Address2.18.64.21
ASNAS20940 · Akamai International B.V.
LocationFrankfurt am Main, DE
Nameserversa1-97.akam.net
MX Providertiktok.com (mx1.tiktok.com)
CountryDE
SPF✓ Configured
DMARC✓ reject
DMARC Recordv=DMARC1; p=reject; pct=100;
DKIM✓ Found
DNSSEC✗ Not enabled
IPv6Not detected
WHOIS Privacy🔒 Private

Subdomains 9 found

apidevdevelopersmpartnersshopsmtpsupportwww

TXT Records / Service Verifications 24

Facebook ✓ Google ✓ Apple ✓ Hubspot ✓ Klaviyo ✓ Globalsign ✓ +18 more
tiktok.com Page Analysis

Content structure, media assets, cookie usage, payment methods, and social media presence for tiktok.com.

tiktok.com Page Content Analysis

🤖 Content Analysis

The homepage of tiktok.com contains 5 words of visible text content. This is a relatively short page — adding more descriptive content could improve search engine visibility. The page is structured with 0 H2 headings, 0 H3 headings, 0 H4 headings. The link structure consists of 0 internal links pointing to other pages on the same domain and 0 external links pointing to third-party websites. There are 52 external JavaScript files, 0 CSS stylesheets, and 0 iframes on the page. The site implements the following web standards and features: robots.txt (controls search engine crawling behavior) and Progressive Web App (PWA) manifest (enabling app-like installation). Notable missing features: XML Sitemap and Schema.org structured data. Adding these could improve search engine discoverability and rich result eligibility. We detected the following payment methods accepted on tiktok.com: Visa, Discover, Apple Pay, and Google Pay. Offering multiple payment options including credit cards and digital wallets improves customer trust and can increase conversion rates.

Word Count5 words
Images0 total · 100% alt coverage
Internal Links0
External Links0
JS Files52
CSS Files0

Payment Methods

💳 Visa 💳 Discover 💳 Apple Pay 💳 Google Pay
tiktok.com SEO & Content Analysis

Evaluate on-page SEO factors including meta tags, Schema.org markup, content metrics, social presence, and environmental impact.

tiktok.com SEO Analysis, Meta Tags & Content

🤖 SEO Analysis

The title tag for tiktok.com is good at 22 characters: "TikTok - Make Your Day". The length is acceptable, though it may be slightly truncated in some search result displays. No meta description is configured for tiktok.com. This is a critical SEO oversight — without a meta description, Google will auto-generate a snippet from page content, which may not accurately represent the page or entice users to click. Adding a unique, compelling meta description of 120-155 characters is strongly recommended. The page language is declared as en. No Open Graph tags are configured. When someone shares a link to tiktok.com on social media, the platform will have to guess the title, description, and image — often producing unattractive or inaccurate previews. Adding OG tags is essential for social media marketing.

TitleTikTok - Make Your Day
H1
Word Count5 words
Images0 total
Internal Links0
External Links0
JS Files52
CSS Files0
Redirect Chainhttps://tiktok.comhttps://www.tiktok.com/
X-Powered-ByGoofy Node
MinificationJS: 0/52 minified · CSS: 0/0 minified
Sitemap✗ Not found
Robots.txt✓ Found
CanonicalNot set
Languageen
Open GraphNot set
Twitter CardNot set
PWA✓ Manifest found
RSS FeedNot detected
AMPNot detected
Carbon / Visit0.17g · Rating B

Google SERP Preview

TikTok - Make Your Day
https://tiktok.com

META TAGS & SCHEMA.ORG

META TAGS

TitleTikTok - Make Your Day
Title Length22 chars Too short
Meta Desc Length0 chars Too short
H1
Languageen
CanonicalNot set
Meta Robots

SCHEMA.ORG & SOCIAL

Schema Types
OG Type
OG ImageNot set
Twitter CardNot set
FaviconNot detected

📊 Compare With Your Competitors

See how your website stacks up against tiktok.com in trust, speed, security, and technology.

Compare Now →