Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.royal-promotion.fr
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 07, 2025
Valid Until
January 05, 2026
36 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F6:CF:92:CD:3E:99:69:63:BF:79:56:93:48:97:24:C2:1E:E8:AE:AC:8D:35:7A:7B:92:25:A1:93:B8:DB:EC:56
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
abchomoeocare.in
alimount.4hotel.tw
aftinsight.com
lnx.almanabir.app
almaresk.com
alobaid.co
medisim.amcsoftware.pe
anthonymuthuma.com
shop-redirect.any-creator.com
appledoremarinellc.com
www.atavihomestay.com
axoratechnologies.com
gcp.baetscher.com
admin.bilditon.com
dev.bilgesin.com
assets.bitestechnology.com
manica-cms.bitestechnology.com
www.bixtek.com
www.bizclassapp.com
app.bizzyka.com
bkcport.com
www.bkcport.com
admin.bkkhive.com
admin.blacklisttackle.com
new.blatstudio.com
www.blujedi.com
links.blzzt.com
brandmorals.com
bremair.com
api.brutask.com
app.brutask.com
brutejustice.com
buildtray.com
bunnch.com
cafeconcarlos.com
www.cakesbydia.com
calient-eh.com
call2mom.com
camioneta.club
books-search.carlosagosto.com
dashboards.celtx.com
chezfred.net
www.clubifasport.com
app.sungsimdang.co.kr
www.aprisa.com.tw
www.cosprops.app
www.drsilonieskinlaser.com
eunicekelvinanyiam.com
futureforwardmarketing.com
www.gardencitycarpentry.co.uk
www.gunn.app
heleb.com
hestonliebowitz.com
bot.hrbot.com.br
www.hypehq.io
ispjet.com.br
deeplink02.iweventos.com.br
jakerothenberg.com
kefshelkof.com
cz.kuramatura.eu
l14.lhotatrophy.cz
dynamic-form.labs.moon.lu
newdreamtravel.com
www.nexdarksolutions.com
niccovileparle.com
www.nightreignpasswords.com
app.noormarkunvpk.fi
novicsoft.com
beta.oneclickapp.com
dev.app.onlinedoctor.co.jp
backoffice.onshoreguide.com
app.orelo.cc
ipledge.tbaf.org.tw
author.paper2publish.com
pearce.app
pos.posder.app
feedesign.projact.kr
beta.qwiko.app
dev-pay.qwiko.app
rat.club
loja.reverystylo.com.br
www.rileypeterson.com
www.royal-promotion.fr
shedevit.com
shriganeshnursery.com
admin.shubhamkumarverma.com
cdn.smartdashboard.app
srivenkateshwaraproperties.in
www.tecnance.com
www.tekbeatz.com
teuestoque.com.br
www.thehippoisfat.com
tiangewang.co
www.ugoservices.com
account.unilife.cc
www.unilife.cc
www.vijayvadi.com
www.workoutnotes.com
x-01.ru
youlernit.com
Other domains in certificate