discovercars.com

.com crawl

First seen 2026-04-11 · Last seen 2026-05-19 · ok HTTP/1.1 200 1662 ms crawled 2026-05-19

US · 104.20.43.182 · AS13335 Cloudflare, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Best Car Rental Deals with Free Cancellation, Compare & Save! | Discover Cars
Description
Save up to 70% by comparing the best car rental deals from 1000+ suppliers in 10000+ locations worldwide and FREE Cancellation. Our 24/7 customer support speaks your language!
Language
en
Canonical
https://www.discovercars.com
Translations
  • en ×3
  • pt ×2
  • zh ×2
  • ar
  • bg
  • ca
  • cs
  • da
  • de
  • el
  • es
  • fi
  • fr
  • he
  • hr
  • hu
  • id
  • it
  • ja
  • ko
  • lt
  • lv
  • ms
  • nl
  • no
  • pl
  • ro
  • ru
  • sk
  • sv
  • th
  • tr

Open Graph

url
https://www.discovercars.com
title
Best Car Rental Deals with Free Cancellation, Compare & Save! | Discover Cars
description
Save up to 70% by comparing the best car rental deals from 1000+ suppliers in 10000+ locations worldwide and FREE Cancellation. Our 24/7 customer support speaks your language!

Technology

CDN
Cloudflare
CMS
Next.js
Analytics
  • Google Tag Manager

Third-party hosts loaded (4)

  • accounts.google.com×1
  • cookie-cdn.cookiepro.com×1
  • widget.trustpilot.com×1
  • www.googletagmanager.com×1

Social

Registration

Registrar
GoDaddy.com, LLC
Created
1999-05-25
Expires
2027-05-25 369 days left
Updated
2025-10-30
Name servers
  • brad.ns.cloudflare.com
  • elma.ns.cloudflare.com

DNS records live

NS
  • brad.ns.cloudflare.com
  • elma.ns.cloudflare.com
MX
  • 1 aspmx.l.google.com
  • 10 alt3.aspmx.l.google.com
  • 10 alt4.aspmx.l.google.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
Verified for
  • Brevo
  • Google

Email authentication partial

SPF
v=spf1 include:_spf.google.com include:amazonses.com include:mail.zendesk.com include:spfa.mailendo.com include:em5708.discovercars.com -all
strict (-all)
DMARC
v=DMARC1; p=none; sp=none; rua=mailto:dmarc@discovercarhire.com,mailto:re+11d78619e98f@inbound.dmarcdigests.com; aspf=r; pct=100
policy: none (monitoring only) · sp=none
DKIM
  • google: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoAQ+nUm0B325aHCJbTv63cggFTeFlRGmgJhU/I9Gxz9RY6RwiRUqFRX9KK1MCYWMxQAM8rUhtILuuz…
  • mail: k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed

Certificate (current)

Sectigo Public Server Authentication CA DV R36
from 2025-11-28 to 2026-10-01
Expires in 133 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.discovercars.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • cross-origin-opener-policy
findings
  • CSP allows unsafe inline scripts/styles
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
DENY
x-content-type-options
nosniff
content-security-policy
default-src https:; connect-src https: wss:; font-src https: data:; frame-src https: twitter:; frame-ancestors http: https:; img-src https: data: blob:; media-src https:; object-src https:; script-src 'unsafe-inline' 'unsafe-eval' https:; worker-src 'self' blob:; child-src 'self' blob:; style-src 'unsafe-inline' https:;
strict-transport-security
max-age=15552000; includeSubDomains; preload
cross-origin-opener-policy
same-origin-allow-popups

Links to (15)

Linked from (27)