Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=escapecard.ca
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 03, 2025
Valid Until
January 01, 2026
40 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
9D:1F:BA:F4:EE:05:3F:42:6F:AA:69:B7:91:7D:B9:98:D1:71:0C:FD:1D:3A:9D:6D:D5:49:07:C8:42:12:DE:7C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
computerlove.io
antonioviannakarate.com.br
app.aureolestudios.ca
ericka.axelink.fr
battalion.ch
bennettsbridge.ie
bornasoft.ca
brahier.ch
bunkers.cc
www.calient-eh.ca
onling-status.cbdata.cz
chiloeapp.cl
clearmind.cl
www.compactworks.ca
constructoraderbau.cl
cookpop.xyz
www.cookpop.xyz
crowdium.com
cryptoportfoliotracker.com
cubantropia.com
devgeek.com.br
dewahoki888.com
happy-birthday-suchi.divyanshusaraswat.in
www.dundee-electronic-recycling.ca
www.edwardaddley.co.uk
encantas.com.br
escapecard.ca
www.escapecard.ca
www.fluencytrainer.in
menu.gowriekaran.com
www.grahambull.com
grandmascookbook.ca
www.greenscape4u.com
guideme.cc
hackatoa.com
haru067.com
henriquezarquitectos.com
heromortar.com
huayyak.com
iksandi.com
investidorsm.com.br
jonmarcello.ca
www.jonmarcello.ca
realmeadmin.kobotogether.com
timeturner.krishkrosh.com
youthdebate.krishkrosh.com
www.kube-vault.com
www.kuvandzhiev.com
lk.kyokushinprofi.com
www.landonepps.com
be.laosexchangevip.com
www.laosgoldlottery.com
dj-admin.laoslamduan.com
dj-admin.laoslanna.com
www.laospecials.com
mn.laospremiumlottery.com
cms.latinad.com
lazokjacint.hu
lazybong.com
leagueofbulls.com
cloud.leapor.com
leftwit.ch
www.leonielondonmeditation.com
lightapex.com
lightsonleyden.com
livingsqr.com
lonelypop.com
lowbats.com
lrceg.com
auth.dashboard-staging.marblefashions.co.uk
www.marklynch.ca
mavinsandeep.xyz
mentalcheck.care
micrologics.ca
myadidasevents.ca
nestorcafe.com.br
www.nycclassical.com
blog.omarcarpinteyro.com
dash.pagerules.io
www.pix.nl
recallmonitor.ca
www.recallmonitor.ca
quiz.relab.cc
shopaholics.relab.cc
www.retailerhub.eu
shreejitours.co.uk
www.sisnordbau.de
console-maashml.softbox.com.br
sqad.com.br
hub-stg.staza.io
swapmeetcircle.ch
techstein.ch
www.thefroyo.com
trakkar.io
web.trakkar.io
ubiquityhealth.ca
register.uottahack.ca
ursem.cc
bestellen.zaids-pizza.de
zblock.ca
Other domains in certificate