77/100 SECURITY SCORE

Certificate Information

Subject
CN=stage.verasana.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 02, 2025
Valid Until
March 02, 2026 87 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
49:AE:B0:2A:0D:F0:43:B9:FE:76:B4:A8:EB:C4:22:54:47:9C:45:41:8E:6A:67:35:04:78:8E:D7:A2:FB:B1:66
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.smartsolutionsarabia.com

Other domains in certificate

admin.badge.accenture.com
ahlulhadith.in
uthox.aimcomely.com
ajtek.fi
a.angelystor.com
armasafelocksmiths.co.uk
ascendant.gg
bitecrunch.co.uk
www.bubblemap.app
erp.una.cambridgeinternationalschool.in
carlos-ramirez.dev
app.catimbafantasy.com
dev.cdmvision.dev
hawkev.co.in
mdtrade.com.pl
www.intekelektronik.com.tr www.intekteknoloji.com.tr
windows.corntech.com.mx
www.cwcabinets.com.au
decisionmaking.tools
dimarofolgarida.app
onconnection.drtis.com.br
durogan.es
www.dwane.in
eily.studio
api.enbo.fr
evolvecontractmfg.eprvmnt.com
www.excelheavyduty.com
flt.guru
adobe-staging-ideacloud.forgedx.com
zoe-mobil.get-ikigai.com
giapnh.com
redeem.gizmoplex.com
goldcleats.ai
groovechat.fm
growed.in
forge.hotg.dev
www.iddris.dev
www.iyawali.com
www.jamesvo.uk
jayasurya.one
jesusgarciase.com
juliacamacho.com
www.justinsalcedo.com
auth.kanban-cloud.com
learnification.fun
www.luciaellan.com
www.magicshield.ca
www.maticco.com
mountiecamps.com
mskaist.org
app.mtnra.com
www.myfndapp.com
neoplumes.com
njmphotos.com
www.noter.dev
portal.optagestion.cl
docs.paysly.io
lafama.pedidomovil.es
pedixwpp.com
wegoshop.piticommerce.com
phyathai3-be.plaping-dc.com
ibiza-dev.playibiza.net
polkasafe.xyz
prasaddasanatti.in
www.proviewcloud.com
brs.quemind.com
setup.quickdsn.com
qa.apex.rcloudsoft.app
cad.redriver911.com
repzoapp.com
rohanmehta.com
rpisoni.dev
tracker.rustycrow.com
saylynconsulting.com
dev.securetix.app
www.sgomberoalloggitorino.it
test-123.smartcore.mx
snaptab.ch
www.soliditynapratica.com
soundboardstudio.com
stprepublicanparty.com
swingtoplaces.com
www.control.taxivery.mx
arcadia.thetislive.com
laelaygrillemenu.triggersplus.com
ts.ttc-solutions.com
updatus.com
uueauclaire.org
stage.verasana.com
dev.app.vervemoney.com.au
www.vidaimoveis.com.br
www.vybeerai.com
waiandshan.com
www.workboxapp.com
yangwiki.com
photo.ymdryy.com
player.youshop.com.br
boards.zhengfangdev.com