77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.codecaptives.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 09, 2025
Valid Until
February 07, 2026 76 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1C:ED:B7:4E:FF:A1:01:08:7B:AA:B9:83:71:39:5B:5C:14:96:F0:2E:7B:CA:E3:CE:1A:3C:27:96:6D:4E:02:1A
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
nitta-belt-app.grosbeak.co.jp

Other domains in certificate

aiilab.tech
aisdom.com
akshaysecuritysystems.in
ondeviceai.anglebrackets.app
certs.beconfident.app
biz.test.beeoclock.com
benzinske.info
biens.ai
bitsofbytes.co.uk
www.bixat.dev
bowstring.dev
brainrotted.fun
app.bullwhip.io
buyminati.com
apicor.carzonrent.com
mnsolar.co.in ratoon.co.in tripmyway.co.in
championcleaning.co.ke
www.codecaptives.com
jetnepal.com.np
app.customviewbook.com
cutout.in
www.ddoouubbllee.app
ext-web-admin-5.dev-ltl-xpo.com
dheerancrackers.com
portfolio.dileepchil.in
drteladoc.com.br
www.durian.one
www.edalvb.com
emiliapetrarca.com
www.everlastinglight.in
contract-manager-demo.fimatica.com
fs2.digital
mobile.genskill.com
mentalizze.gustavofreitas.dev
waggy.iolab.app
jupiterstorm.net
www.ksdsconsultancy.in
ldr.today
leagueofnations.net
go.lifedailyhealth.com
limelit.in
lyuartwork.com
maadurgainterior.in
maxmamone.com
maziar.io
misterburlap.com
hypnos.neurogram.ai
www.oceni-nepremicnino.si
opheliathenun.art
web.ornamental.ai
oversfit.site
www.pawiki.net
www.pinselmoment.ch
www.prettycoolpattern.com
www.prismsolutions.app
auth.proptracks.com
quantumworks.space
www.reactuibuilder.ai
api.reitcircles.com
www.renatoperez.dev
rocketman.games
roemerquartier.de
scguide.space
qr.scj.io
semiring.solutions
serendipico.com
shaktidoors.in
heic-convert.simonschneider.org
www.soloalquila.com
stephanimoroni.com
clay.steven2k2.dev
stoniqapp.com
sudoku.surimico.com
xvgracielacordova.swanmoments.net
translations.theagamas.com
thesdconstruction.com
thilaksanadroptaxi.com
threehyphens.com
madrid-pilates-studio.timp.io
tourismsju.com
turonairlines.uz
assessment-tr.twiser.com
www.ultinfotech.com
ultrasound.vc
universalbartendingacademy.com
nextwaveservice.unrealsdevhub.de
www.uplabh.com
vageeshhegde.com
vartikatravelscab.com
vortexblades.com
wildbriarway.com
windycitysmiths.com
dev.wodscribe.com
wyw.cx
wyw.games
www.youreventors.com
zmline.zchoolmate.com