77/100 SECURITY SCORE

Certificate Information

Subject
CN=bountify.in
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 09, 2025
Valid Until
January 07, 2026 52 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F4:8C:D0:27:B2:90:C7:71:23:6A:9C:09:2D:23:0B:9D:21:1C:7B:75:B5:6B:C1:16:5A:11:75:1C:D3:7C:05:A9
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.joshuaopata.com

Other domains in certificate

rovio.12traits.com wpg.12traits.com
adam.icu
overview.allhorses.nl
amaniak.com
academy.andreaslydemann.com
www.anetaferreira.com
www.angelabewick.dev
mobile.dev.asaren.ai
media.avyukta.xyz
www.babybingo.app
barqi.ca
bigwisu.com
blitsapp.com
student.bmfconnect.app
boopsnoot.com
bountify.in
www.burn-hall.com
www.choicebuild.co.uk
www.clericle.com
www.colchimed.ge
datacompass.com.br
dashboard.digitaltourism.travel
ecocarecp.com
eddo.ca
a0f3.foodle.su
freel.app
fsp.media
valimail.gatheround.com
gedcom.gedmaker.com
www.getflick.me
www.app.getpilot.ai
security.grace.app
habitaly.hytechapp.com
kmtutor2.indiandevelopers.org
www.investifire.com
janovasolutions.com
laukineorchideja.lt
www.lojica.dev
londri.co
pizzacala.menui.at
nr12.mkdata.com.br
untangled.monolith.gallery
www.moon-story.com
mustafai.info
dev.myungsoo.com
myenjoyhealth.nari.net.au
monti.net.ar
nonconformistducks.com
noneonly.com
oahucustomconstruction.com
olegkastyuk.com
www.pavelbinar.cz
paybloc.io
paystitch.com
l.petrol.social
pingmyserver.app
authenticbrandedcollections.piticommerce.com
pontotvpublicidade.com.br
praphan.dev
pristineluxurycleaners.com
pulsomusic.com
holo.punchred.xyz
qrsecg.com
youtube-thumbnail-viewer.ravigandhi.com
www.recipe-bot.com
reyno.tech
www.rostykerei.nl
shop.sayuriai.co.za
sently.io
shaolinvalencia.com
shikshaa.org
113a87c2-746f-46f2-978f-a2ef9b.simplifycmssite.hu
skeleton.club
soravit-varanich.com
dev.stembionix.com
www.stephenchristie.com
app.stepuptutoring.org
rc.strap.app
www.supplyear.com
www.taitconsulting.de
beta.taprostaff.com
testapp.taskingo.com
karur.tatataxi.in krishnagiri.tatataxi.in ooty.tatataxi.in perambalur.tatataxi.in pondicherry.tatataxi.in ranipet.tatataxi.in tenkasi.tatataxi.in
studenthub.tdlab.io
thecaddy.co.uk
tinode.dev
tldm.me
auth.tripply.dk
www.tuitionsupport.co.uk
activ.turnosweb.app
auth.1screen.viviane-dev.com
app.zapimpresso.com.br