76/100 SECURITY SCORE

Certificate Information

Subject
CN=carsoceanside.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 07, 2026
Valid Until
May 08, 2026 88 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B9:A5:5B:38:DF:D2:5A:5D:27:22:63:70:31:0B:88:C0:A7:45:81:63:D9:59:45:70:7D:B6:6D:A4:4B:CD:41:57
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
growarow.com *.growarow.com *.dev.growarow.com *.forum.growarow.com *.help.growarow.com *.hostmaster.growarow.com *.test.growarow.com *.ww38.growarow.com *.www.growarow.com

Other domains in certificate

aaaexecutive.club *.aaaexecutive.club *.cms.aaaexecutive.club *.comune.aaaexecutive.club *.cpcontacts.aaaexecutive.club *.mail.aaaexecutive.club *.org.aaaexecutive.club *.pop3.aaaexecutive.club *.ss6.aaaexecutive.club *.staging.aaaexecutive.club
*.backup.bossoni.com *.beta.bossoni.com *.blog.bossoni.com bossoni.com *.bossoni.com *.forum.bossoni.com *.hostmaster.bossoni.com *.mail.bossoni.com *.remote.bossoni.com *.sitemap.bossoni.com *.sitemaps.bossoni.com *.vpn.bossoni.com *.wildcard.bossoni.com *.ww1.bossoni.com *.ww16.bossoni.com *.ww25.bossoni.com *.ww38.bossoni.com
carsoceanside.com *.carsoceanside.com *.ww25.carsoceanside.com
catwalk-escorts.com *.catwalk-escorts.com *.ww38.catwalk-escorts.com
dogbreaders.net *.dogbreaders.net *.www.dogbreaders.net
*.api.dreamwavemusic.shop *.app.dreamwavemusic.shop *.autoconfig.dreamwavemusic.shop *.autodiscover.dreamwavemusic.shop *.boss.dreamwavemusic.shop *.cpanel.dreamwavemusic.shop *.cpcalendars.dreamwavemusic.shop *.cpcontacts.dreamwavemusic.shop *.dev.dreamwavemusic.shop dreamwavemusic.shop *.dreamwavemusic.shop *.home.dreamwavemusic.shop *.m.dreamwavemusic.shop *.mail.dreamwavemusic.shop *.mobile.dreamwavemusic.shop *.news.dreamwavemusic.shop *.sitemap.dreamwavemusic.shop *.wap.dreamwavemusic.shop *.web.dreamwavemusic.shop *.webdisk.dreamwavemusic.shop *.webmail.dreamwavemusic.shop *.whm.dreamwavemusic.shop *.ww25.dreamwavemusic.shop *.ww38.dreamwavemusic.shop *.www.dreamwavemusic.shop
helperscript.com *.helperscript.com *.myv.helperscript.com
*.de.hojas.com *.google.hojas.com hojas.com *.hojas.com
sanctuaryofgardening.live *.sanctuaryofgardening.live
*.98120589-d297-4e59-99f5-07c8ddf2557c.sfbayviews.com *.qa.sfbayviews.com *.sber.sfbayviews.com *.secure1.sfbayviews.com sfbayviews.com *.sfbayviews.com *.staging.sfbayviews.com *.webmail3.sfbayviews.com *.wildcard.sfbayviews.com
zuoyuedh.xyz *.zuoyuedh.xyz