partnerengage.com

.com crawl

First seen 2026-04-13 · Last seen 2026-05-07 · ok HTTP/1.1 200 7303 ms crawled 2026-05-07

US · 104.18.21.239 · AS13335 Cloudflare, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Welcome - Payroc Insights
Language
en

Technology

CDN
Cloudflare
Analytics
  • Google Tag Manager
Fonts
  • Adobe Fonts

Third-party hosts loaded (4)

  • js.sentry-cdn.com×1
  • kit.fontawesome.com×1
  • use.typekit.net×1
  • www.googletagmanager.com×1

Registration

Registrar
GoDaddy.com, LLC
Created
2015-10-06
Expires
2026-10-06 139 days left
Updated
2025-09-08
Name servers
  • jaziel.ns.cloudflare.com
  • karsyn.ns.cloudflare.com

DNS records live

NS
  • jaziel.ns.cloudflare.com
  • karsyn.ns.cloudflare.com
MX
Show 6 MX records
  • 0 partnerengage-com.mail.protection.outlook.com
  • 10 aspmx.l.google.com
  • 20 alt1.aspmx.l.google.com
  • 30 alt2.aspmx.l.google.com
  • 40 aspmx2.googlemail.com
  • 50 aspmx3.googlemail.com
TXT
  • ioddmhrkladmkftpk1e449skpk
  • MS=ms84867340
  • google-site-verification=aOZ7KL9XQSVtcVFfsdqUaMWo1t0kiRMjr57_On5GmJo

Email authentication strong

SPF
v=spf1 mx a include:_spf.iriscrm.com include:agreementexpress.net include:spf.protection.outlook.com include:spf.exclaimer.net ip4:216.118.207.1/26 include:spf.mandrillapp.com ~all
softfail (~all)
DMARC
v=DMARC1; p=none;
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

WE1
from 2026-03-21 to 2026-06-19
Expires in 30 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://payroc.partnerengage.com/Account/Login

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • weak frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN, SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self' https: data:; script-src 'self' https: 'unsafe-inline' 'unsafe-eval'; style-src 'self' https: 'unsafe-inline';
strict-transport-security
max-age=31536000; includeSubDomains; preload

Linked from (1)