Open
Cached
·
just now
80/100
SECURITY SCORE
Certificate Information
Subject
C=US, ST=California, L=San Diego, O=INTUIT INC., CN=redirector3.intuit.com
Issuer
C=US, O=DigiCert Inc, CN=DigiCert Global G2 TLS RSA SHA256 2020 CA1
Valid From
February 19, 2025
Valid Until
February 18, 2026
37 days
Public Key
ECDSA
256 bit
(P-256)
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
22:72:6B:15:76:2B:03:41:D2:08:67:B3:02:CB:DD:6E:74:B8:12:0C:2A:C7:8E:A3:7D:B5:F3:32:09:B7:17:68
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Configured
(Restricts certificate issuance)
Current Issuer
Authorized
(Matches CAA policy)
Authorized CAs
Incident Reporting
mailto:[email protected]
Recommendations
- • Consider using critical flag (flags=128) for stricter CAA enforcement
- • Consider adding 'issuewild' records to control wildcard certificate issuance
Subject Alternative Names
100 domains
quicktax.ca
www.benefitassist.com
simplestart.com.sg
smallbusinessbritain.intuit.co.uk
redirector3.intuit.com
quickopedia.ca
quicktax.com
quicktaxt2ib.com
radioturbotax.com
refundnc.com
renewlacerte.com
renewprofile.ca
renewproseries.com
renouvelezprofile.ca
rockyourrefund.com
rockyourrefund.net
rockyourrefund.org
saveonprofile.ca
sdrefund.com
securetax.com
seeqbtrial.com
shopintuit.net
simplestart.ca
simplestart.com
simplestart.sg
smallbizappshowdown.com
smallbizhack.com
smallbizhacklondon.com
smallbizhacksydney.com
smallbizhacktoronto.com
smallbizunite.com
smallbusinessbritain.co.uk
smallbusinessunited.com
snaptax.ca
statetaxfreedom.com
studenttax.ca
studenttaxes.ca
supportsmallbusiness.co.uk
tax-productivity-survey.com
taxturbo.ca
tennrefund.com
testqbtrial.com
trylacertesoftware.com
trylacertetax.com
tryprofile.ca
tryproseriestax.com
tryqb.com
tryqb4accountants.com
tryqbnow.com
tryquickbooks.com
tryzen99.com
ttrefund.com
ttrefundnow.com
turbo-tax-canada.ca
turbo-tax.ca
turbo-taxes.ca
turboimpotenligne.ca
turboimpuesto.com
turboimpuestos.com
turbotax-canada.ca
turbotax-extensionexpress.com
turbotax.net
turbotax.org
turbotaxcanada.ca
turbotaxcard.com
turbotaxcommunity.com
turbotaxdirect.com
turbotaxenespanol.biz
turbotaxenespanol.com
turbotaxenespanol.info
turbotaxenespanol.net
turbotaxenespanol.org
turbotaxenespanol.us
turbotaxescanada.ca
turbotaxespanol.biz
turbotaxespanol.com
turbotaxespanol.info
turbotaxespanol.net
turbotaxespanol.org
turbotaxespanol.us
turbotaxexemptioncheck.com
turbotaxfortheweb.com
turbotaxfree.ca
turbotaxhealth.com
turbotaxhelp.com
turbotaxlive.ca
turbotaxlive.com
turbotaxnow.com
turbotaxonline.com
tvqbtrial.com
usepayroll.com
useqb.com
usequickbooks.com
wearesmallbusiness.com
webturbotax.com
whyproadvisorprogram.com
willexpert.com
winfreelacerte.com
winfreeproseries.com
turbotax.youngtaxfiler.com
Other domains in certificate