Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.beecounted.org
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 06, 2025
Valid Until
January 04, 2026
43 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
39:48:16:54:02:93:95:41:FF:C4:14:C1:8E:3C:51:5A:9B:56:26:D9:0B:76:62:30:82:6D:53:B1:2E:3E:5F:9C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
carma.auto-reidl.at
www.abplatez.com
www.adecuo.com.co
www.adniter.com
admin.ai2claim.com
ak55bet.com
razorpay.akshatvg.com
alejandrinoanimalhospital.com
pine.alexandergottlieb.com
friendsof.alexsquibbs.com
alimentoskawsay.com
www.allatte.com
allofthisuk.com
www.allstarxi.com
test.aloapp.live
amplnk.com
animals4lifefoundation.com
aniruddhapandit.com
anthonycaliber.com
apevolutionclub.com
ascenders-college.jp
app.atlasdiver.com
tablefinder.axelraymundo.com
www.ayushmentor.com
bali.apartments
www.bananatimer.com
baobab-mr.com
www.beecounted.org
www.bekbakes.com
firebase.betafabric.com
www.bitesalert.com
stage.bixtek.com
blueleafinnovations.com
briffaultab.com
caritasstgeorgehospital.com
cassavaproducts.com
cdapainting.com
www.chadhillary.com
chillryday.com
christianfmartin.com
ciner8.com
amf.civitimeapp.com
experis.civitimeapp.com
inrae-gameapp.civitimeapp.com
claryt.co
erp.editt.co.kr
aftersales.scinnova.com.ph
composing.it
copagency.org
m.creditea.fi
www.dappback.com
deviseops.com
www.die-information.eu
app.dignityink.co.za
docsafterdark.com
dsgvo-beschwerde.de
erasmusplus.app
www.erbium.org
fcnakahara.net
figma.cl
flave.app
cat-animations.fraffrog.it
www.gustavosantos.me
www.harangmentoring.com
hotelcilantro.com
www.insidequantum.org
egencia-sdk.joinsherpa.io
iotconnect-spie-w.kapion.de
cedar.karla.ai
ul.kenh14.vn
current.lfps.co.uk
www.lifecircles.hu
www.makscs.com
demo.mbks.io
pinterest.mega.lol
www.natyoungartist.co.uk
newdayrising.org
www.notreal.ai
canoe.orchidisland.tw
www.organ-tech.jp
www.qbo.cl
www.resalaschool.com
ceh.rootpwn.com
www.scaftexas.org
shamrockrovers.scouthub.app
shumilov.pro
signerry.com
ta.skanckenyquist.no
skmfarm.com
shop.slowvillage.hu
go.solidgroup.ru
www.speakingathome.pl
www.speed.me
www.sportboard.site
link1.sucodev.net
ftse.triomarkets.eu
tripek.ru
unitingbusiness.zone
vaporwave.fish
zora.fish
Other domains in certificate