sprucepeak.com

.com crawl

First seen 2026-04-23 · Last seen 2026-05-17 · ok HTTP/1.1 200 17325 ms crawled 2026-05-17

US · 52.12.234.131 · AS16509 Amazon.com, Inc.

Reputation 100/100

sector travel type homepage

HTML metadata

Title
Spruce Peak at Stowe | Luxury Ski-In/Ski-Out in Vermont
Description
Discover luxury lodging, dining, recreation, and arts at Spruce Peak — Vermont’s premier mountain destination for unforgettable experiences.
Language
en

Technology

Analytics
  • Google Tag Manager
Cookie consent
  • OneTrust
Fonts
  • Font Awesome

Third-party hosts loaded (5)

  • cdn.cookielaw.org×1
  • cdnjs.cloudflare.com×1
  • tags.tiqcdn.com×1
  • use.fontawesome.com×1
  • www.googletagmanager.com×1

Social

Contact

Phone
Address
7412 Mountain Road, 05672, Stowe, VT

Registration

Registrar
CSC Corporate Domains, Inc.
Created
2003-03-25
Expires
2027-03-25 310 days left
Updated
2026-03-21
Name servers
  • ns1.bluecatdns.com
  • ns1.bluecatdns.net
  • ns1.bluecatdns.org

DNS records live

NS
  • ns1.bluecatdns.com
  • ns1.bluecatdns.net
  • ns1.bluecatdns.org
MX
  • 10 mx1.hc6694-6.iphmx.com
  • 10 mx2.hc6694-6.iphmx.com
TXT
Show 6 TXT records
  • e2ma-verification=3gh
  • fq4mhq5oa2eu4tdsov7342pljc
  • 8f2eilsd711k82ldq9cpptj851
  • MS=ms49506509
  • MS=ms56274084
  • adobe-idp-site-verification=de3a0dc593864fc9ebf8e8d297522c648e0639ad7185cda3b4eee2513c48a4c2

Email authentication strong

SPF
v=spf1 include:_u.sprucepeak.com._spf.smart.ondmarc.com -all
strict (-all)
DMARC
v=DMARC1; p=reject; pct=100; sp=reject; rua=mailto:38357fee@inbox.ondmarc.com; ruf=mailto:38357fee@inbox.ondmarc.com; adkim=r; aspf=r; fo=1; rf=afrf; ri=3600
policy: reject (enforced) · sp=reject
DKIM
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtOBpz/9sFRxiOBM/XiQzdaxVpm95gD+MM/i6kGfi+rUnVwzUDx07JrW7Ec3CprRhupbSBjXMofsaex+jDK…
selectors probed

Certificate (current)

Go Daddy Secure Certificate Authority - G2
from 2025-10-13 to 2026-11-12
Expires in 177 days

HTTP security headers

Header hygiene 70/100 Checked live page: https://www.sprucepeak.com/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://tag.pearldiver.io https://a.usbrowserspeed.com https://cdn.jsdelivr.net https://ajax.googleapis.com https://www.googletagmanager.com https://www.google-analytics.com https://cdn.polyfill.io https://*.cloudflare.com https://use.fontawesome.com https://cdn.cookielaw.org https://tags.tiqcdn.com https://www.google.com https://www.gstatic.com https://twi.revinate.com https://connect.facebook.net https://googleads.g.doubleclick.net https://tags.srv.stackadapt.com https://urldefense.com https://a.omappapi.com https://*.stackadapt.com https://a.optmnstr.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://*.cl
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (11)

Linked from (5)