Open
Cached
·
just now
95/100
SECURITY SCORE
Certificate Information
Subject
CN=setmore.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 24, 2025
Valid Until
February 22, 2026
39 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
99:36:10:C7:46:6C:40:CA:8E:10:0B:A6:5B:39:4D:91:FE:87:7D:FB:C4:34:CE:28:0B:8C:33:7E:B2:91:D3:B7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=63072000; includeSubDomains; preload
Content-Security-Policy
Basic
default-src; connect-src; script-src; +9 more
default-src https:; connect-src 'self' data: blob: filesystem: https://tracking-api.g2.com/attribution_tracking/conversions/assign https://adservice.google.com https://api.sitesearch360.com https://api.tapfiliate.com https://api.ipify.org https://widget.trustpilot.com https://*.clarity.ms/ https://www.googleapis.com https://sheets.googleapis.com https://o151188.ingest.sentry.io/ https://bat.bing.com https://script.google.com https://script.crazyegg.com https://script.googleusercontent.com https://*.google-analytics.com/ https://events-writer.smartlook.com https://*.smartlook.cloud https://api.chatsupport.co wss://rtmserver.anywhereworks.com https://stats.g.doubleclick.net https://www.google.com https://tracking.crazyegg.com https://frstre.com https://monitor.clickcease.com https://gjtrack.ucweb.com https://plugin.ucads.ucweb.com https://my.setmore.com http://go.setmore.com https://t.dca0.com https://sn.dca0.com https://*.dca0.com https://l15.dca0.com https://sn36.dca0.com https://idsync.rlcdn.com https://optout.dca0.com https://www.facebook.com https://analytics.google.com https://hooks.zapier.com https://storage.googleapis.com/ https://www.setmore.com/blog/ https://assets.setmore.com https://accounts.google.com https://accounts.google.com/gsi/ https://staging.setmore.com/ https://go.staging.setmore.com/ https://assets-tracking.crazyegg.com https://pagestates-tracking.crazyegg.com https://region1.analytics.google.com https://*.chatsupport.co https://storage.googleapis.com/stag-fullstorage https://storage.googleapis.com/fullstorage http://storage.staging.setmore.com/app http://storage.setmore.com/app wss://rtmserver.anywhereworks.com/ wss://stagingrtm.anywhereworks.com https://bc-api.setmore.com/ https://bc-api.staging.setmore.com/ https://www.googletagmanager.com/ https://dev.setmore.info; script-src 'self' 'unsafe-eval' 'unsafe-inline' https://*.clarity.ms/ https://optimize.google.com https://app.chatsupport.co https://assets.setmore.com/ https://*.googleapis.com https://www.googletagmanager.com http://script.crazyegg.com https://script.tapfiliate.com http://www.google-analytics.com https://connect.facebook.net http://bat.bing.com https://cdnjs.cloudflare.com https://www.googleoptimize.com https://embed.typeform.com https://rec.smartlook.com https://snap.licdn.com https://s.adroll.com https://www.googleadservices.com https://dnn506yrbagrg.cloudfront.net https://www.pagespeed-mod.com https://ip.freshmarketer.com https://butavu.zawaceboji.com https://www.google.com https://www.clickcease.com https://mocadi.wisoyekivo.com https://wl3olebc.6v5f3l.com blob: https://d.adroll.mgr.consensu.org https://d.adroll.com https://www-widgetapi.js https://www.youtube.com https://www.youtube.com/s/player/4bc55fd6/www-widgetapi.vflset/www-widgetapi.js https://accounts.google.com https://accounts.google.com/gsi/client http://widget.trustpilot.com/bootstrap/v5/tp.widget.bootstrap.min.js https://tracking.g2crowd.com https://unpkg.com https://cdn.jsdelivr.net/npm/@fingerprintjs/fingerprintjs@3/dist/fp.min.js https://unpkg.com/@fingerprintjs/[email protected]/dist/fp.min.js https://*.chatsupport.co ; font-src 'self' data: https://*.googleapis.com https://fonts.gstatic.com https://cdnjs.cloudflare.com https://static3.avast.com https://www.slant.co https://script.hotjar.com chrome-extension: https://use.typekit.net https://assets.setmore.com; img-src 'self' data: https://c.bing.com https://optimize.google.com https://www.googletagmanager.com https://*.clarity.ms/ https://www.google-analytics.com https://ssl.google-analytics.com https://*.googleapis.com https://bat.bing.com https://*.g.doubleclick.net https://googleads.g.doubleclick.net https://googleads.g.doubleclick.net/ https://px.ads.linkedin.com https://www.google.co.uk https://www.google.co.za https://www.google.cl https://www.google.it https://www.google.fi https://www.google.dk https://www.google.ee https://www.google.fr https://www.google.no https://www.google.be https://www.google.de https://www.google.pl https://www.google.si https://www.google.ru https://www.google.lv https://www.google.co.zw https://www.google.im https://www.google.lk https://www.google.com.tr https://www.google.com.cy https://www.google.com.sv https://www.google.com.mm https://www.google.com.uy https://www.google.com.kh https://www.google.com.br https://www.google.com.hk https://www.google.com.sa https://www.google.com.pr https://www.google.com.ar https://www.google.com.ph https://www.google.com https://www.google.co.in https://www.google.co.id https://www.google.co.kr https://www.google.com.my https://www.google.es https://www.google.ca https://www.google.pt https://www.google.ch https://p.adsymptotic.com https://www.setmore.com https://www.linkedin.com https://www.facebook.com https://www.gstatic.com https://fonts.gstatic.com https://www.google.com.au https://www.google.com.mx https://www.google.com.do https://www.google.com.ng https://www.google.com.sg https://www.google.com.co https://www.google.gr https://www.google.mv https://www.google.ie https://i.ytimg.com https://www.google.co.nz https://www.google.ro https://www.google.lt https://www.google.co.th https://www.google.com.eg https://www.google.md https://www.google.tt https://www.google.nl https://www.google.co.ma https://www.google.com.kw https://www.google.com.qa https://www.google.ae https://www.google.ba https://my.setmore.com http://go.setmore.com https://www.google.bg https://www.google.sr https://www.google.co.jp https://lh3.googleusercontent.com https://www.google.com.na https://www.tailwindapp.com https://www.google.com.jm https://www.google.rw https://heapanalytics.com https://www.google.bs https://www.google.com.bh https://www.google.az https://translate.google.com http://www.google.co.ug https://yastatic.net https://www.google.ps https://www.google.jo https://avatar.anywhere.app https://www.google.so https://loungesrc.net https://www.google.com.gt https://www.google.com.np https://www.google.mu https://cdnjs.cloudflare.com https://www.google.hn https://www.google.com.ec https://www.google.co.ve https://www.google.co.ke https://www.google.com.bd https://www.google.com.pe https://www.google.sk https://www.google.se https://www.google.hu https://www.google.com.mt https://www.google.com.lb https://www.google.hr https://www.google.co.cr https://s3.amazonaws.com https://www.google.com.ua https://www.google.com.gh https://www.google.cz https://www.google.is https://www.google.com.pk https://www.google.at https://www.google.co.tz https://www.google.ad https://storage.googleapis.com https://www.google.com.om https://www.google.by https://www.google.kg https://www.google.vu https://www.google.kz https://www.google.com.bn https://www.google.com.bz https://joshtower.net https://www.google.com.pa https://www.google.com.vn https://mstat.acestream.net https://www.google.co.il https://downloads.intercomcdn.com https://www.google.tn https://rest.exchmapdata.com https://us-u.openx.net https://x.bidswitch.net https://idsync.rlcdn.com https://ads.yahoo.com https://subscription.omnithrottle.com https://rc.rlcdn.com https://pippio.com https://ib.adnxs.com https://pm.w55c.net https://fcmatch.youtube.com https://fcmatch.google.com https://tags.rd.linksynergy.com https://pixel.advertising.com https://dsum-sec.casalemedia.com https://eb2.3lift.com https://sync.outbrain.com https://pixel.rubiconproject.com https://simage2.pubmatic.com https://sync.taboola.com https://ups.analytics.yahoo.com https://www.google-analytics.com https://sync.mathtag.com https://gpush.cogocast.net https://segments.company-target.com https://s.amazon-adsystem.com https://pixel.mathtag.com https://x.dlx.addthis.com https://e.dlx.addthis.com https://beacon.krxd.net https://usermatch.krxd.net https://match.adsrvr.org https://www.google.bt https://www.google.dz https://www.google.sc https://sync-tm.everesttech.net https://d.adroll.com https://tag.cogocast.net https://tag.apxlv.com https://deviceid.trueleadid.com https://i.liadm.com https://dpm.demdex.net https://tags.bluekai.com https://www.google.com.vc https://login.dotomi.com https://www.google.co.uz https://tapestry.tapad.com https://track.reson8.com https://connect.facebook.net https://csyn-r.cxense.com https://www.google.cn https://match.prod.bidr.io https://www.google.rs https://storage.chatsupport.co https://www.entitytag.co.uk https://accounts.google.com https://assets.chatsupport.co/ https://assets.setmore.com https://tracking.g2crowd.com https://region1.google-analytics.com https://region1.analytics.google.com https://*.chatsupport.co; style-src 'self' https: data: 'unsafe-inline' https://optimize.google.com https://fonts.googleapis.com https://*.googleapis.com https://cdnjs.cloudflare.com https://pwm-image.trendmicro.com https://my.setmore.com http://go.setmore.com https://www.googletagmanager.com https://accounts.google.com https://accounts.google.com/gsi/style; frame-src 'self' data: https://td.doubleclick.net https://optimize.google.com https://www.googletagmanager.com https://www.facebook.com https://www.youtube.com https://my.setmore.com http://go.setmore.com https://pwm-image.trendmicro.com https://mozbar.moz.com https://tpc.googlesyndication.com https://accounts.google.com https://accounts.google.com/gsi/ https://widget.trustpilot.com https://moarshath.weebly.com/ https://www.youtube-nocookie.com/; media-src * data: blob: filesystem: https://*.googleapis.com https://stats3.unrulymedia.com https://assets.setmore.com https://assets.chatsupport.co https://*.chatsupport.co; object-src 'none'; child-src 'self' blob: gap:; worker-src 'self' blob:; report-uri https://o151188.ingest.sentry.io/
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Configured
(Restricts certificate issuance)
Current Issuer
Authorized
(Matches CAA policy)
Authorized CAs
Wildcard CAs
Incident Reporting
mailto:[email protected]
Recommendations
- • Consider using critical flag (flags=128) for stricter CAA enforcement
- • You have authorized 4 CAs - consider limiting to only the CAs you actively use