Open
Cached
·
just now
75/100
SECURITY SCORE
Certificate Information
Subject
CN=charterace.org
Issuer
C=US, O=Let's Encrypt, CN=E8
Valid From
December 17, 2025
Valid Until
March 17, 2026
50 days
Public Key
ECDSA
256 bit
(P-256)
Adequate
Signature Algorithm
ECDSA-SHA384
SHA-256 Fingerprint
8B:52:A5:38:7F:E0:12:76:11:53:03:68:2C:74:0F:2F:91:94:B3:79:84:A6:18:F4:BE:51:F8:F1:36:39:13:E1
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
38 domains
charterace.org
app1.charterace.org
app10.charterace.org
app11.charterace.org
app12.charterace.org
app13.charterace.org
app14.charterace.org
app15.charterace.org
app16.charterace.org
app17.charterace.org
app18.charterace.org
app19.charterace.org
app2.charterace.org
app20.charterace.org
app21.charterace.org
app22.charterace.org
app23.charterace.org
app24.charterace.org
app25.charterace.org
app26.charterace.org
app27.charterace.org
app28.charterace.org
app29.charterace.org
app3.charterace.org
app30.charterace.org
app4.charterace.org
app5.charterace.org
app6.charterace.org
app7.charterace.org
app8.charterace.org
app9.charterace.org
www.charterace.org
charterace.com
www.charterace.com
charterace.net
www.charterace.net
chartersace.com
chartersace.org
Other domains in certificate