lensrentals.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- Heroku
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (2)
- cloud.typography.com×1
- use.typekit.net×1
Social
Contact
- Phone
Registration
- Registrar
- MarkMonitor Inc.
- Created
- 2006-06-06
- Expires
- 2027-06-06 382 days left
- Updated
- 2025-05-05
- Name servers
-
- ns1.lensrentals.com
- ns2.lensrentals.com
- ns3.lensrentals.org
- ns4.lensrentals.net
DNS records live
- NS
-
- ns1.lensrentals.com
- ns2.lensrentals.com
- ns3.lensrentals.org
- ns4.lensrentals.net
- MX
-
Show 7 MX records
- 10 aspmx.l.google.com
- 20 alt1.aspmx.l.google.com
- 20 alt2.aspmx.l.google.com
- 30 aspmx2.googlemail.com
- 30 aspmx3.googlemail.com
- 30 aspmx4.googlemail.com
- 30 aspmx5.googlemail.com
- TXT
-
klaviyo-site-verification=MGxrPJ
- Verified for
-
- Anthropic
- Apple
- Atlassian
- Meta
Email authentication strong
- SPF
-
v=spf1 include:amazonses.com include:aspmx.googlemail.com include:servers.mcsv.net include:mail.zendesk.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; sp=quarantine; pct=100; ruf=mailto:dmarc-ruf@lensrentals.net; rua=mailto:dmarc-rua@lensrentals.net,mailto:re+hs4cak8qtwk@dmarc.postmarkapp.com; fo=1; ri=86400policy: reject (enforced) · sp=quarantine - DKIM
-
Show 4 DKIM selectors
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCOGnkanA7UnA0g6q7qqKBJxWk5Gl9f318pxeh1THd9xgBhjQf20c1nCPk6QPngN2Dp5vcdBviXyQHThO3n/v… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2H7I4QyPJLDb4VCzzcV8mYxAKOCm9MrQz4graCnyXvGrVw0w6MrxefVB3MtNoU/T9VCyaNcdsNQCbmSCRz… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtWLiEiPtEitla+4jor54Ye+kOrIrgnzgTqbBYrvXQJKDk94qaXN7d4WFMTPLVhKIlRP29DLzI+4TXmeQJO…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M04
Expires in 271 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' inline js.stripe.com checkout.stripe.com *.talkable.com *.typekit.net static.lensrentals.com staticw2.yotpo.com cdn-widgetsrepository.yotpo.com d2wy8f7a9ursnm.cloudfront.net dgpbytyl405yb.cloudfront.net; style-src 'self' 'unsafe-inline' fonts.googleapis.com cloud.typography.com cdn-widgetsrepository.yotpo.com staticw2.yotpo.com static.lensrentals.com; img-src 'self' data: about:blank about blob *.stripe.com *.googleusercontent.com *.gstatic.com i.ytimg.com static.lensrentals.com *.talkable.com cdn-yotpo-images-production.yotpo.com p.yotpo.com p.typekit.net; font-src 'self' data: fonts.gstatic.com cloud.typography.com cdn-widgetsrepository.yotpo.com cdn.shopify.com use.typekit.net; frame-src 'self' js.stripe.com checkout.stripe.com www.youtube-nocookie.com *.talkable.com share.lensrentals.com workforcenow.adp.com; connect-src 'self' checkout.stripe.com api-cdn.yotpo.com share.lensrentals.com; report-to lr- strict-transport-security
max-age=31536000; includeSubDomains