LEAKRANKscan your own app →
Scheduling & booking

What technology does Cal.com (cal.com) use?

Cal.com is an open-source scheduling platform for booking meetings and appointments, offered as a hosted service and as self-hostable software.

Observed live from cal.com on July 28, 2026.

Detected stack

Technology signals read from cal.com's public homepage and response headers. Best-effort detection, not a definitive stack list.

CloudflareFramer

Server header: cloudflare

Security-header grade

A live check of the HTTP security-response headers cal.com sends, the same class of signal as securityheaders.com. Present headers score points; missing ones do not.

HEADER HYGIENE
D
35/100
Content-Security-Policy
Strict-Transport-Security (HSTS)
X-Content-Type-Options
X-Frame-Options
Referrer-Policy
Permissions-Policy
What this is, and is not. This grade reflects only the publicly observable HTTP response headers of cal.com, measured automatically. It is a hygiene indicator, one signal among many. It is not a security audit, not a penetration test, and says nothing about Cal.com's internal systems, code or data handling. Many secure sites score below A because headers like Content-Security-Policy are commonly omitted.

What Cal.com is used for

  • Meeting scheduling
  • Appointment booking
  • Team round-robin scheduling
  • Embedded booking pages

Alternatives to Cal.com

Calendly
Popular hosted scheduling tool.
SavvyCal
Scheduling with overlay and ranked-time features.
Google Appointment Scheduling
Booking built into Google Calendar.

FAQ

What technology does Cal.com use?

The hosting, CDN and framework signals we can detect from cal.com's public HTTP responses are listed in the "Detected stack" section above. They are read from the site's own responses at load time, so they reflect what Cal.com exposes publicly, not a definitive or complete stack list.

Is cal.com safe?

This page reports cal.com's publicly observable security-header hygiene as a letter grade, shown above. Security headers are one signal of good front-end practice, not a full security audit, and they say nothing about Cal.com's internal systems or data handling. Treat the grade as informational.

What are the best alternatives to Cal.com?

Widely used alternatives include Calendly, SavvyCal, Google Appointment Scheduling. The right choice depends on your workflow, budget and team size.

Your turn

Is your own app leaking data?

Header hygiene is the surface. LeakRank checks what a stranger can actually read from your app. Paste your URL, free, in 30 seconds.

Scan my app — free →

More tech reports

NotionLinearFigmaVercelSupabaseFramerLoomTypeformRetool

See all reports: /tech