paylesscar.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- Avis
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- sdk.clearme.com×1
- www.googletagmanager.com×1
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 1996-06-10
- Expires
- 2026-06-09 20 days left
- Updated
- 2024-11-20
- Name servers
-
- ns-1101.awsdns-09.org
- ns-1762.awsdns-28.co.uk
- ns-246.awsdns-30.com
- ns-970.awsdns-57.net
DNS records live
- NS
-
- ns-1101.awsdns-09.org
- ns-1762.awsdns-28.co.uk
- ns-246.awsdns-30.com
- ns-970.awsdns-57.net
- MX
-
- 10 paylesscar-com.mail.protection.outlook.com
- TXT
-
_5emw0ds3mp6ho6yucuxl2fjs07w9q17_i858uexfdy85ooo6s1gxjbwq2xr7603
Email authentication strong
- SPF
-
v=spf1 exists:%{i}._i.%{d}._d.espf.agari-dns.net include:%{d}.5c.spf-protect.agari-dns.net -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; fo=1; ri=3600; rua=mailto:avis@rua.agari.com; ruf=mailto:avis@ruf.agari.compolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAx55MsnUYnh3Z2dpW7ISTgddvGocZQnMPrXWJ7bfSXXHPU0QhBioBXLlMBoxoZbUHoiOe42cl6fMRyX…
selectors probed - selector1:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 84 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- weak frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN, SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
frame-src 'self' *.optimizely.com *.doubleclick.net *.adsrvr.org *.bounceexchange.com *.amazon-adsystem.com *.owneriq.net *.google.com *.facebook.com *.facebook.net *.rokt.com *.amazon.com *.paypal.com *.payments-amazon.com *.sojern.com *.qantasloyalty.com *.qantas.com tag.yieldoptimizer.com img3.avis.com img3.budget.com img3.paylesscar.com *.youtube.com quantserv.com adnxs.com impactradius-event.com dgm-au.com everestjs.net everesttech.net yahoo.com xg4ken.com *.online-metrix.net *.uplift.com *.quantummetric.com api.securedvisit.com track.securedvisit.com content.securedvisit.com images.securedvisit.com track.sv.rkdms.com *.mypurecloud.com *.nagich.com cloudfront.net bing.com go.pardot.com sme.avis.co.nz sme.avis.com.au sme.budget.co.nz sme.budget.com.au abgnz.wufoo.com *.mypurecloud.com *.mypurecloud.com.au;- strict-transport-security
max-age=63072000; includeSubDomains