77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.feremcare.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 07, 2025
Valid Until
March 07, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8D:F0:60:6B:E8:0A:BA:88:05:53:CE:10:84:06:19:EE:D2:41:EF:67:CD:18:F0:40:F3:20:14:E6:2B:9A:20:02
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
apiprod.theboxmarket.vn

Other domains in certificate

adminhk.6dbytes.com
badge.accenture.com
agropomoravi.cz
learngcp.andrewdo.cloud
weather.anewshade.de
app.ialai.art.br
dev-koreka-app.asobicocoro.com
onboarddev.astriadigital.com
api-docs.beyondshop.cloud
www.bitcoin-pt.com
bodajoseyclaudia.com
brewfather.no
watti.cee-uk.com
partner.cirrushk.com
appstart.cmhilfe.de
admin.northgateestates.co.zw
verdict.cybernetex.ai
dannyxr.com
datea.pl
www.david-yu.com
www.demical.org
app.diamondedge.com
www.dnos.in
www.documents.house
www.ecellstmenmimsnavimumbai.tech
elishahenig.com
apps.empanadus.com
evento.enricomisasi.com.br
www.eskimosonly.com
www.eugene-matatov.com
ewayprint.com
ferbn.es
www.feremcare.com
www.fitmap.com.br
sintpaulusgent.flockim.com
painelumerc.g2canal.com.br
gebirgsmarine.sexy
ct-dev.gestion-traiteur.shop
9c9.getemplaza.com
godsjoychristianchurch.com
share.graphy.com
hdocto.com
app.hostabee.com
sample.b.hotekan.com
shopping.imaginakids.com.br
indian-mango.com
www.ipothi.com
jeanscarlosmarmol.com
www.admin.jets24x7.com
joobimeme.com
prod.kalpkari.com
experiments.klemenc.io
kredittkort360.com
www.lexxon.net
lintapipes.com
u.loopm.co
dashboard.lsceco.cloud
www.lukaszwiatrak.com
qa-dashboard.mpower.africa
gtools.mskian.com
neiljohnramal.com
tv.neoufitness.com
omkarsteel.com
beta.onlinejudge.net
opravystaveb.cz
portal-dev.zofim.org.il
ozairi.com
www.parsamazaheri.com
www.petnino.com
machine.pi-te.com
www.plannor.app
portal.refundsniper.com
rosap.com.br
running-tracker.com
portal.s4biz.co.za
setup-simracing.com
www.simpla-scale.com
snackbarstudio.com
www.spirus.app
staituned.com
startinteractive.com
street-child.org
studysmartapp.com
tracpic-dev.stylishop.store
dynamic.theyellowmoney.com
www.thsgroup.in
d.dash.provider.tibilsolutions.com
tjameskelly.com
www.tomasbaran.com
course.tomocode.net
trolytui.com
kranos.turnosweb.app
app.engage.errandup.voyagernetz.us
wcpocambodia.org
www.wilshandharvi.com
www.winqi.dev
slb.yiuivan.cc
yooo.gg
www.yvanmutara.com