Skip to main content

maze.co

Jul 19th 2027 11:59 PM

Gandi SAS

unsigned

Yes

Jun 20th 2026 12:22 AM

maze.co appears to be a domain name that might be used for a website or online service, but its purpose is unclear. It's been registered since 2009 and is currently unsigned for DNSSEC, suggesting a potential security risk.

Data on this page is collected by cside's crawler, which monitors third-party scripts across the public web.

Copy Summary
Copy Link
Helpful
Not Helpful
Rarely seen
Vendor

Maze

Category: developer-tools

Description

Maze is a user research and testing platform for rapid usability tests.

AI Review

The scripts on maze.co primarily focus on enhancing user engagement and personalization via contextual widget loaders that track user interactions and retrieve content from Maze's API. Key functionalities include capturing user identifiers, device IDs, and managing widget state through localStorage and sessionStorage, which raises concerns about the volume and sensitivity of the data being collected. The integration with Amplitude for analytics purposes indicates a reliance on third-party services, increasing the risk profile due to potential vulnerabilities in API communications and external data handling practices. While aimed at improving user experience, the data gathering mechanism intersects significantly with payment processes, specifically during sensitive interactions such as checkouts. This dual focus on engagement and analytics poses challenges, demanding adherence to stringent data protection guidelines to ensure the minimization of identifiable data collection and handling practices. Despite the lack of alerts in the last week indicating no immediate operational risks, the inherent behaviors of tracking and data storage within the scripts highlight areas where compliance and user consent are paramount. Continuous monitoring is essential to ensure that data collection remains appropriately scoped and that any dependencies on external services do not compromise user privacy during payment processes, as the potential for data exposure remains a concern.

Script hostnames

maze.co
WHOIS Information
Registrar Gandi SAS
Registration: July 20th, 2010
Expires: July 19th, 2027
Updated: June 20th, 2026
Nameservers
ns-1436.awsdns-51.org. 205.251.197.156
ns-2001.awsdns-58.co.uk. 205.251.199.209
ns-311.awsdns-38.com. 205.251.193.55
ns-807.awsdns-36.net. 205.251.195.39
Meta Tags
viewport
width=device-width, initial-scale=1, shrink-to-fit=no
generator
Gatsby 5.14.0
theme-color
transparent
facebook-domain-verification
drhcrz8ea1drrezceet5qolf5e61ce
description
Run user interviews, usability tests, and surveys to unlock user research insights at the speed of product development.
application-name
Maze
og:title
Maze | User research platform for modern product teams
og:description
Run user interviews, usability tests, and surveys to unlock user research insights at the speed of product development.
og:site_name
Maze
og:url
https://maze.co/
og:type
website
og:image
https://www.datocms-assets.com/38511/1718885427-maze-user-research-platform-meta.png?auto=format
og:image:width
2400
og:image:height
1350
twitter:card
summary_large_image
twitter:title
Maze | User research platform for modern product teams
twitter:description
Run user interviews, usability tests, and surveys to unlock user research insights at the speed of product development.
twitter:creator
@mazedesignhq
SSL Certificate
Status:

Enabled

Expires: February 6th, 2027
Issuer:
Security Posture
HSTS
CSP
DNSSEC

maze.co is one of thousands of third-party scripts on the web.

Most sites run dozens of third-party scripts and can't say what each one does. cside monitors every script on your site and catches the ones that change or turn malicious.

DNS Records
Hostname Type TTL Priority Content
maze.co NS 172800
ns-1436.awsdns-51.org.
maze.co NS 172800
ns-2001.awsdns-58.co.uk.
maze.co NS 172800
ns-311.awsdns-38.com.
maze.co NS 172800
ns-807.awsdns-36.net.
maze.co A 60
18.244.214.123
maze.co A 60
18.244.214.82
maze.co A 60
18.244.214.12
maze.co A 60
18.244.214.42
maze.co MX 120 1
aspmx.l.google.com.
maze.co MX 120 10
alt3.aspmx.l.google.com.
maze.co MX 120 10
alt4.aspmx.l.google.com.
maze.co MX 120 5
alt1.aspmx.l.google.com.
maze.co MX 120 5
alt2.aspmx.l.google.com.
maze.co TXT 60
"_cf-custom-hostname.compliance=f55475fa-fbeb-4477-8b56-4ca06955779b"
maze.co TXT 60
"google-site-verification=-dJOQBWiYUsfnnk3eO5FtpLmhBe7-NgxQ7ClL9HUhHA"
maze.co TXT 60
"google-site-verification=28b8M5Sj0_rkgBrDOkmUyvcv7T4-QjzNMtO0-KDcsZw"
maze.co TXT 60
"google-site-verification=2cogUAqw02nvlYgRm1iNYAkWwoVTBjcQrW7-v5x0n2M"
maze.co TXT 60
"google-site-verification=D5aaUEGGpTzGT2A4En9PqJ2gdC8K0YdqucXbpgXyBgI"
maze.co TXT 60
"google-site-verification=eFXujLjlSNGFTxQ4jYphg-bIXX4W3N3gZweJ093TvT4"
maze.co TXT 60
"google-site-verification=i52Splgzk4sdbUG-rcfDn2UxrbJMusBmkq9_X-zbWpo"
maze.co TXT 60
"v=spf1 redirect=maze.co.hosted.spf-report.com"
maze.co SOA 900
ns-2001.awsdns-58.co.uk. awsdns-hostmaster.amazon.com. 1 7200 900 1209600 86400
maze.co CAA 60
\# 17 00 05 69 73 73 75 65 61 6d 61 7a 6f 6e 2e 63 6f 6d
maze.co CAA 60
\# 20 00 05 69 73 73 75 65 61 6d 61 7a 6f 6e 61 77 73 2e 63 6f 6d
maze.co CAA 60
\# 22 00 05 69 73 73 75 65 6c 65 74 73 65 6e 63 72 79 70 74 2e 6f 72 67

FAQ

Frequently Asked Questions

View all

This domain is analyzed as part of cside's domain directory to identify third-party scripts and their purposes. The summary provides information about what services, tools, or scripts this domain hosts, helping website owners understand which third-party services are being loaded on their sites.

The risk score is calculated based on multiple security factors including SSL certificate validity, DNSSEC status, domain registration details, and historical security data. A higher score indicates lower risk, while a lower score suggests potential security concerns that should be investigated.

The SSL certificate information shows whether the domain uses HTTPS encryption, when the certificate was issued, when it expires, and who issued it. This helps verify the domain's security posture and identify potential certificate-related vulnerabilities that could affect your website's security.

Third-party script domains can be compromised or used maliciously. By monitoring domain information like registration details, SSL certificates, and DNS records, you can identify suspicious changes, expired certificates, or domains that may pose security risks to your website and users.

Domain information is regularly scanned and updated to provide the most current security intelligence. The last scanned timestamp shows when the most recent analysis was performed, ensuring you have up-to-date information about the domain's security status.

If you identify a high-risk domain loading scripts on your website, you should investigate why it's being used, verify its legitimacy, and consider removing or replacing it if it's not essential. Use cside's platform to monitor and block suspicious third-party scripts to protect your users from potential security threats.

Subscribe to our newsletter to get the full picture

Stay updated with our latest news, offers and blog posts. Subscribe for exclusive updates delivered straight to your inbox.

Your inbox stays chill, we pop in monthly.

A pixelated, glitchy rendition of the cside shield
Book a demo