HTTPS, SSL & Security Report for trainwithshubham.com

This report summarizes how well trainwithshubham.com is configured for secure web delivery. It covers HTTPS availability, HTTP→HTTPS redirects, TLS/SSL certificate validity, security headers, HTTP/2 and HTTP/3 support, and mixed content. Use it to quickly spot configuration gaps and improve your site's security and trust.

SecureScore95/100Last checked: 24 Aug 2026 at 10:00 UTC
HTTPS

Enabled

HTTP → HTTPS

Yes

TLS

A · 1.2, 1.3

Security headers

4/6

Detailed checks

HTTPS availability

The site is reachable over HTTPS.

Why it matters: HTTPS encrypts traffic and protects user data.

HTTP to HTTPS redirect

Requests to HTTP are redirected to HTTPS.

TLS & CertificateA

Redirect lands on www.trainwithshubham.com. Certificate details below are for trainwithshubham.com; security headers, HSTS, and TLS probes are from the final host.

Valid (trainwithshubham.com)Yes
IssuerC=US, O=GoDaddy.com, CN=GoDaddy TLS Intermediate CA DV - R1v1
Expires2027-02-22
Days until expiry182 days
OCSP staplingNo

Final host certificate (www.trainwithshubham.com)

ValidYes
SubjectCN=www.trainwithshubham.com
Expires2026-10-18 (55 days)

Why it matters: A valid, non-expired certificate ensures encryption is trusted by browsers.

To improve your grade

  • Improve: Security Headers (+5 pts).
  • For A+: add Content-Security-Policy.

Monitor this domain

We'll check SSL grade, HTTPS, redirects, and security headers automatically. Email only when something changes.

Start monitoring — freeOne-click account with Google, GitHub, or email. No password.

Free: 1 domain, weekly. Plans from €7/mo — daily checks, up to 50 domains, history & white-label PDF.

Grade breakdown2 things to improve for a higher grade →
95/100 pts
HTTPS Connection
+25/25
HTTP to HTTPS Redirect
+20/20
Valid SSL Certificate
+20/20
Certificate Not Expiring Soon
+10/10
Short Redirect Chain
+5/5
HSTS Enabled
+5/5
Security Headers
+0/5

Requires 4 of 6 headers and Content-Security-Policy (CSP).

Modern TLS (no 1.0/1.1)
+10/10

To improve your grade

  • Improve: Security Headers (+5 pts).
  • For A+: add Content-Security-Policy.

Security headers4/6

  • HSTS
  • CSP
  • X-Frame-Options — sent, but weakSent as "ALLOW-FROM *", which browsers ignore. Use DENY or SAMEORIGIN (or a CSP frame-ancestors directive).
  • X-Content-Type-Options
  • Referrer-Policy
  • Permissions-Policy

Score: 4 of 6 headers effective. For the grade factor (5 pts), 4+ headers and Content-Security-Policy (CSP) are both required. We count a header only when its value actually provides the protection, so a header sent with a weak value counts as “sent, but weak” rather than present. Scanners that count a header as present regardless of its value will report a higher number here.

Cache-Control includes no-store on the HTML response. Browsers will not cache the document; ETag and conditional requests (304) are effectively disabled. Often intentional for authenticated pages; for public pages consider private with max-age or removing no-store if you want HTTP caching.

HSTS (HTTP Strict Transport Security)Enabled

  • EnabledYes
  • Max-Age365 days
  • PreloadNo
Submit or verify on hstspreload.org

Why it matters: HSTS tells browsers to use only HTTPS for this site. Preload allows inclusion in browsers’ built-in HSTS lists.

We check Chromium’s built-in list. hstspreload.org checks eligibility for submission (HSTS header, redirect chain). Results may differ for domains that are preloaded but no longer meet current eligibility rules.

HTTP/2

Negotiated (ALPN h2)

ALPN: h2

HTTP/3 (QUIC)

Not advertised

The server does not advertise HTTP/3 (QUIC) via the Alt-Svc header.

DNS Security

CAA: Not set · DNSSEC: Not signed · HTTPS record: Not setExpand
CAANot set
DNSSEC
Not signed
HTTPS Record
Not set

No HTTPS record. Browsers discover protocols via connection — an HTTPS record speeds this up. Learn more →

No CAA records. Any CA can issue certificates. Consider adding CAA to restrict issuance.

Mixed content

1 insecure resource(s)

These resources are loaded over HTTP on an HTTPS page. They should be loaded over HTTPS.

  • http://www.googletagmanager.com/gtag/js?id=AW-16459431684 (script)

Redirect chain2320ms total

When you visit the site over HTTP, the server may send you through one or more redirects until you land on the final HTTPS URL. Shorter chains are faster and better for SEO.

  1. 1.http://trainwithshubham.com210ms
  2. 2.https://www.trainwithshubham.com/2110ms

Recommendations for trainwithshubham.com

Based on this scan, here are the 5 next steps that would most improve security and SEO for trainwithshubham.com.

  1. Fix 1 mixed content resource

    High impact

    trainwithshubham.com loads a resource over plain HTTP on an HTTPS page. Browsers block or warn about these, which can break the page and removes the padlock. Update the URLs to https:// or use protocol-relative references.

  2. Add 2 missing security headers

    Recommended

    trainwithshubham.com sends 4 of 6 recommended security headers — missing: CSP, X-Frame-Options. Most take one line of server config and protect against clickjacking, MIME sniffing and data leaks.

  3. Consider HTTP/3

    Nice to have

    trainwithshubham.com supports HTTP/2 but does not advertise HTTP/3 (QUIC). HTTP/3 improves performance on lossy mobile networks. If you are behind Cloudflare or a modern CDN it is usually a toggle.

  4. Add a CAA DNS record

    Nice to have

    trainwithshubham.com has no CAA record, so any certificate authority can issue certificates for it. A CAA record limits issuance to the CAs you actually use — a cheap defense against mis-issuance.

  5. Enable OCSP stapling

    Nice to have

    trainwithshubham.com did not staple an OCSP response on the TLS handshake. Stapling saves a round-trip for visitors and keeps revocation checks off the CA. Informational — it does not affect the SSL grade.

Show this badge on your site

Let your visitors know your SSL setup is verified. The badge always shows your current grade and links to this report. Paste the snippet into your site footer:

SSL grade badge for trainwithshubham.com← live preview, updates automatically
<a href="https://httpsornot.com/report/trainwithshubham.com?utm_source=badge" target="_blank" rel="noopener">
  <img src="https://httpsornot.com/badge/trainwithshubham.com.svg" alt="SSL grade for trainwithshubham.com — checked by HTTPS Checker" height="20" loading="lazy" />
</a>

Domain owner? If you want this report removed or made private, contact us.