pennylanepromo.com

.com crawl

First seen 2026-04-23 · Last seen 2026-05-16 · ok HTTP/1.1 200 7918 ms crawled 2026-05-16

US · 52.177.84.9 · AS8075 Microsoft Corporation

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
Home - Penny Lane Promotional Products
Description
Penny Lane Promotionalproducts from Avon NY USA Looking for promotional products, advertising specialties and business gifts? You've come to the right site! Whether you are looking for a specific item or just browsing for ideas, our site is your one-stop source.
Language
en

Open Graph

url
https://pennylanepromo.com
title
Home - Penny Lane Promotional Products
description
Penny Lane Promotionalproducts from Avon NY USA Looking for promotional products, advertising specialties and business gifts? You've come to the right site! Whether you are looking for a specific item or just browsing for ideas, our site is your one-stop source.

Technology

Social widgets
  • YouTube Embed
Third-party hosts loaded (7)
  • cdn.asicentral.com×28
  • commonmedia.asicentral.com×22
  • cdnjs.cloudflare.com×12
  • ajax.googleapis.com×1
  • maxcdn.bootstrapcdn.com×1
  • translate.google.com×1
  • www.youtube.com×1

Contact

Phone

Registration

Registrar
GoDaddy.com, LLC
Created
2012-05-24
Expires
2026-05-24 4 days left
Updated
2025-05-25
Name servers
  • ns07.domaincontrol.com
  • ns08.domaincontrol.com

DNS records live

NS
  • ns07.domaincontrol.com
  • ns08.domaincontrol.com
MX
  • 0 smtp.secureserver.net
  • 10 mailstore1.secureserver.net
TXT
  • google-site-verification=nG-z2yewDpRX1lRK0tMtufme_IQs9_3Bt91COnvSXGk

Email authentication weak

SPF
not published
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

R12
from 2026-05-10 to 2026-08-08
Expires in 81 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://pennylanepromo.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-opener-policy
  • cross-origin-embedder-policy
  • cross-origin-resource-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SameOrigin
permissions-policy
fullscreen=(),accelerometer=(),autoplay=(),camera=(),display-capture=(),encrypted-media=(),geolocation=(),gyroscope=(),magnetometer=(),microphone=(),midi=(),payment=(),picture-in-picture=(),publickey-credentials-get=(),screen-wake-lock=(),sync-xhr=(self),usb=(),web-share=(),xr-spatial-tracking=()
x-content-type-options
nosniff
content-security-policy
frame-ancestors 'self' *.espwebsite.com; frame-src 'self' https: ; script-src 'self' 'unsafe-inline' 'unsafe-eval' https: ; style-src 'self' 'unsafe-inline' https: ; object-src 'self'; child-src 'self' https: ; font-src 'self' data: https: ; base-uri 'self' https: ; default-src 'self' https: ; form-action 'self' https: ; img-src 'self' data: https: ; upgrade-insecure-requests; block-all-mixed-content; connect-src 'self' https: wss: ; manifest-src 'self'; worker-src blob:
strict-transport-security
max-age=31536000; includeSubDomains
cross-origin-opener-policy
same-origin
cross-origin-embedder-policy
unsafe-none
cross-origin-resource-policy
same-site

Links to (2)

Linked from (2)