Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=admin-area.namastheworld.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 15, 2025
Valid Until
January 13, 2026
47 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
21:D5:2E:2A:2D:57:47:00:66:F7:D0:D2:D3:DF:CF:8F:11:65:28:3A:F8:71:DF:26:BE:DD:E1:8D:80:94:AF:C9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
abovethenetstats.com
app.agimo.io
atoapps.com
www.atoapps.com
bckub88.com
benjaminshock.net
admin.bildoktoren.no
warrantypulse.bksys.in
app.blinx.com
admin.bristudioproductions.com
lojinhadeteste.test.carrinho.digital
handicall-hcom-gameapp.civitimeapp.com
maisonkayser.clau.io
raaonline.co.in
ops.cogniapp.com
cmazey-command-line.coltondogportraits.com
www.dainikradio.com
danuphyudawsawyee.com
dibyacare.com
www.diegogarcia.mx
unlearn.edvantalabs.com
emilakerman.com
www.fbmuziek.be
eu.finnovex.com
fluma.io
flighttracking.flylbicharters.co.za
freehat.org
fruitsbowls.com
fuckinterview.com
gopal-sharma.digital
gssreco.com
questionnaire.haleoclinic.com
appadmin.heerdelijkfestival.nl
hiphopsinfronteras.com
www.hoivomedical.com
homeproff.com
app.hypefury.com
deeplink.hoainguyen.id.vn
www.ilusionistanoda.com
incineratormanufacturer.com
qt.izmirsh.com
cupones.javimogan.com
seguros.jbonet.xyz
www.kaleidofx.com
kamilgrz.com
karenbrowndivorceadvisor.com
www.landongavin.com
local-i.landslide2020.org
legionrealtygh.com
www.littleroomvideo.com
staging.app.livewise.in
mapallars.com
www.mercurius-tool.com
app.miniyatra.com
mymanager.app
mytubenavi.com
admin-area.namastheworld.com
www.newaxis.net
prints.noahnemec.com
onwizz.com
www.osmoequity.com
owfantasy-latam.com
cv.palmero.xyz
prolifeatlanta.com
demo.puzzleblitz.com
app.questionpourunpharmacien.com
ratstrats.com
www.refwell.net
iaae.rekindlelearning.com
repairscard.com
rogist.com
www.safelockapp.com
auth.safespacesapp.com
safranecorporation.com
sagibit.com
sankalpahicreations.com
api.saudigamer.com
www.savaaridroptaxi.com
www.sellwith.live
www.seoblogtool.com
sesc.eu
sethgonzales-dev.com
shannonscakeshop.com
sigmaproit.com
www.sliptap.com
stefankheider.com
www.stephen.vip
www.syntacticgroup.com
www.teamshield.in
beta.teleiosonline.com.br
thirddegreeapps.com
www.twistseed.app
www.uniclip.app
venture-studios.online
www.vertigocreativo.com
www.vfsmembers.com
app.viagemdubai.com.br
invite.whizleague.com
adminspace.woolili.com
www.yoguebook.com
Other domains in certificate