77/100 SECURITY SCORE

Certificate Information

Subject
CN=staging.carecircle.co
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 22, 2025
Valid Until
March 22, 2026 87 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
79:F4:83:08:81:C8:59:F5:35:08:35:A3:D5:5A:65:3F:27:27:28:45:76:60:56:DC:BA:BE:93:2B:21:5E:10:5D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
baywatchboatcharters.com

Other domains in certificate

collector.agfc.com
www.garage.aperides.io
atelierambre.be
voucher.aumenterprises.net
www.bigapplemom.com
web-components.blackpurl.com
www.cablecraig.co.uk
staging.carecircle.co
vc-kungfu.cerana.tech
www.chespik.in
chiedimi.it
afya101.co.ke
app.coostura.com.br
www.cotxesnets.es
resume.curiousone.in
dentix.click
diyetlife.com
dosarium.com
eetechsystems.com
dashboard.erikmagnusson.com
www.exclusiveprs.info
felipemarcianodev.com
admin.fresto.io
geolyth.net
geolyth.org
strengths.godonew.com
provider.goperi.com
link.hilbertpress.org
iglugt.com www.iglugt.com
indyriot.indyriot.com
www.informatted.com
app.iplanta.com.br
ireneyfabian.com
newstage-partnerweb.isthara.com
itslokeshm.com
jardet.com
www.jazzyafterhours.jp
johnrood.com
joshilog.com
jroboticksclub.com
jyothigroundnuts.in
kibundiary.com
kodefoundry.com
kolso.com
lachocolitaloyalty.com
www.laposadadefrancisca.com
www.linastojanovic.com
lisme.dk
app.liunice.com
ajinomoto-north.logivan.com
londonlivecommunication.com www.londonlivecommunication.com
ls-absolute.com
bluefigma.m1studio.co
www.mattbendel.com
mfsanal.com
mice.software
home.minimumstudio.net
admin.missearth.in
morisraely.com
msappworks.shop
nossaselvanoape.com
novacash.co
www.order-lens.com
morse-it.pacolabs.com
paroquiadesaovictor.pt
www.perfectlypacked.uk
www.pixelayers.com
pokistudios.com
telescope.poseparty.com
pranaparade.com
pulsodemocratico.com.mx
www.qrgroup.ch
static.rechargemobile.ci
empleo.revoolt.me
connect-ng-billing.rxoconnectuat.rxo.com
stinsights.safetec.com.br
santiagomille.dev
saorsadev.com
www.satsolindia.com
tapi.scivone-api.com
assets.set.live
shoudian.hk
sparklingwillowphotography.co.uk
stargovision.life
sudam.co.nz
superfps.com
bodamoralesalas.swanmoments.lat
cpanel.diel.dev.techkey.pro
tknomisa.com
trgfs.net
www.uber-rent.cz
vannalamobileapps.com
track.veehaenterprises.com
www.wandelvoordeel.nl
yummy-technologies.be
zak-fisher.com
www.zibezi.com