Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=mangalore.southindiacabs.in
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 06, 2025
Valid Until
March 06, 2026
72 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BB:EC:57:EB:3F:5C:45:11:4C:F5:1B:D5:9C:EE:98:C2:0D:2E:4C:DF:92:16:75:F4:A1:4B:05:2B:08:C4:5C:58
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
aramixcomercial.com
the-clubhouse.1stcutoutings.com
www.acceleratedact.com
www.acornupdates.com
app.mejores.agriness.com
ajion.co
www.tris.algorithm-net.com
workspace.apisailor.com
appgarage.us
asbsportsinc.com
www.ballerinas.nl
apps.bibles-direct.co.uk
vaccins.bilo.ba
bitbitcode.com
byeol.co
chiaramazzonvocalcoach.it
cienfuegos.dev
configuration.coinomi.net
test.corktreedesign.com
cuisinons.org
curicon.com
dared.io
conference.develop-homehub.site
appdeeplink2.devpress.net
www.dmsounds.nl
dev.route.doorstep.at
app.duluman.ro
elisafranchini.it
esunpispas.com
eventslist.org
www.examefederativo.pt
infra-app.familyportal.nyc
popup.fukumo.tokyo
app-stag.growlog.co
www.hangtok.com
mobile.here.fm
howtostart.ai
teams.ibokin.net
jacl.io
thoughts.jatintiwari.com
jiformation.fr
jonesdigitalcapital.com
jonesdouglas.com
kawaii-idol.com
developer.kisanhub.com
capture.legendoj1.xyz
lentefestina.nl
luizhsk.com
majesticmaven.ca
marstech.click
www.minitodo.app
www.mojiseed.com
descarga.myrealfood.app
nahuelbutarollerangol.cl
netmeraki.com
nikolai-astrup.no
www.or7tech.com
outerlimits.zone
app.outgrow.co
oxunrowing.com
paradisemarina.ca
www.plaintextfoodwebsite.com
play.playgrasshopper.org
beta-v2.poursteady.com
www.proequiposgn.com
ie-buster.qranoko.jp
staging.admin.panel.quench.mobi
grammar.quill.org
www.randomon.net
w5p3en-dev.rayark-pass.net
www.redribbongames.com
suite.rewanow.com
robotfor.sale
ronnyvictor.com
rustcursus.nl
seoauditagency.co.uk
www.serflexcorp.com
smujmaiku.com
ballari.southindiacabs.in
hyderabad.southindiacabs.in
madikeri.southindiacabs.in
mangalore.southindiacabs.in
mysore.southindiacabs.in
ooty.southindiacabs.in
www.sportfaralimite.ro
www.sungtaokao.com
tadaedo.com
tampilisanmdrrmo.com
tomartopia.wtf
www.toolsplus.io
trust-jobs.com
unique-career.jp
magic.uplyfe.io
vadasztarsasag-tapsony.hu
www.valoplant.gg
www.veertig.xyz
vkato.com
www.reservations.watersedge.lk
wiz.toys
www.wynlers.fr
Other domains in certificate