77/100 SECURITY SCORE

Certificate Information

Subject
CN=app.tagneed.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 13, 2025
Valid Until
January 11, 2026 60 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
EE:E3:5F:5B:96:0D:52:52:33:BD:34:58:1F:6D:31:04:17:30:E3:DE:F0:5B:0B:4F:65:26:EE:48:35:E4:E3:74
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.boomedupsoftware.com

Other domains in certificate

admin.13protein.com
24fpskochi.com
ping.28east.co.za
3ms-mali.site
aarvath.com
acbitirsalam.com
layh-jobs.agentur-id.de
alexyulejewellery.co.uk
www.allthingsmaths.eu
alnst.cyou
www.altrosa.app
www.andhw.com
www.apartmentsthestones.gr
www.artandall.live
bizembedded.com
www.book-tracker.com
brittanycoffey.com
www.burakdemirpolat.com
pay.c14.money
carnivorespotter.org
c.choy-san.jp
kptrack.co.in
eastsidelivingmenu.villagecalifonia.co.tz
demo.comovee.com
www.creativecinemastudios.com
cwa.lv
d3x.dev
dappfi.org
d1-myreturns.dpdlocal.co.uk
www.earlypath.org
web.echophotos.io
endental.se
app.entrie.se
fulfilmn.com
ct-staging.gestion-traiteur.shop
oscapp.gubler-it.com
haklnatomislavu.com
random-order.handc.app
hexagons.be
openheic.inditech.in
irondome.app
jeremecobb.com
joextodd.com
juststartingup.com
krishnadev.info
laterunner.dk
dev.tenant.latinfever.app
office.bobestyrer-addins.test.legala.no
lobofrontal.com.br
lovebarrel.org
www.manugoel.com
l.medguru.studio
mesbro-images.mesbro.in
mondrone.it
moongoldmusic.com
student.morningsunart.com
webclient.muddebouw.nl
www.mycoffeestory.cz
appli-decheterie.neurowaste.com
www.nextjob.pro
www.noisy.studio
od-werks.com
www.ok4brain.app
www.pintuairtronics.com
auth.dev.pomelloapp.com
www.primedroptaxi.com
quesync.in
www.rainmaker.school
rajamraghutech.com
portfolio.raviqqe.com
www.sapphireclinics.app
www.sawyermusic.com
sellia.app
examai.skillupai.com
returns.sparvaccessories.de
web-logger.spried.com
www.squadfeedback.com
join.subspace.money
app.tagneed.com
www.talbotracing.ca
tcgbrasil.com
report.tdmobile.work
www.thearpit.in
www.theyellowbutton.it
blog.tkame123.net
www.coach.trainme.com.br
www.troytomasch.com
home.ubutouch.com
testnetmerchant.usdtify.com
www.useaccord.com
ustemofficial.org
vancegallagher.com
venturemafia.xyz
ask.vinnie.app
waywaystudio.com
winfight.app
auth.workplacely.com
yamaguchikarate.in
www.zertthecreative.com