77/100 SECURITY SCORE

Certificate Information

Subject
CN=canaldoanuncio.themediatrade.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 15, 2025
Valid Until
March 15, 2026 80 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4E:8E:19:67:DF:46:DA:29:6C:3A:80:D1:3B:62:14:FF:57:FE:13:23:56:79:7F:99:70:AB:B4:4A:D0:44:16:D3
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
admin.occupyd.com

Other domains in certificate

28add11.win
www.abmed.sk
accesoriosmusicalesmt.com
adivinaelpersonaje.me
login.aepssevakendra.com
andrewludwig.me
anvikacreation.com
app.apoly.de
archivereader.arborapps.io
fu.arcarin.net
resell.arianee.org
www.armbrustproshop.app
trace.as-a-service.dev
autogoldmine.com
www.bealtaine.band
boogeyvoxx.rip
cocvuong.buitientuan.com giapha.buitientuan.com masoi.buitientuan.com
butterflies-childminding.co.uk
report.levo.bycopilot.com
carivoa.com
vcdemo.clinic1.one
beta.clr.one
complexinvest.pl
userstaging.convercus.io
staging-next.crosslog.life
www.dinuraimesh.me
marlafrancisca.drtis.com.br
www.easytune.info
ezrah.co
fincaelbiclen.es
finderai.app www.finderai.app
flapz.io
fnm.ink
a0hv.foodle.su
app.gaston-services.com
devfest.gdglima.com
uat.journey.healthwizz.net
pauta.helius.com.br
hellestranda-antirust.no
www.hentaigirls.net
cld.immigratic.com
customer-portal.infocorpnow.com
link.information.dk
island-financial.com
itmrav.com
jswwministries.com
www.karl.codes
www.maggielidesign.com
staging.marketgames.io
mundimarcos.art
musepic.com
mycurexbeta.mycure.md
www.myndatech.com
www.naif.in
time.nilear.com
nhsa2020.ondagoapp.com
mammouth-malin.ouihelp.fr
parthassignature.ae
info.pcrapps.in
annotation.peer-ai.com
training.pepwear.com
www.pgmet-cnc.pl
www.phumbl.com
pirelliveiculos.com.br
app.plusoneworldwide.com
greenup-link.propertek.id
www.pyjunior.com
newapp-staging.qlub.cloud
quantaiverse.com
mes.revoluslabel.com.br
robcook.org
sb-develop.com
milu.shareil.org
shopmellc.com
sienazap.com
job-oriented.sivasoft.in
www.somosprotagonistas.com.ar
splendorcribbingtime.ca
shusweeps.sqwadhq.com
www.steamboatsoftware.com
stocks.gy
www.strataka.com
ipc.suitefeedback.com
www.symbolabuse.com
app2.tablechamp-dev.at
dev-admin.talkster.app
instance1.tallyfor.com
oracles.tellstories.xyz
canaldoanuncio.themediatrade.com
thenithreads.com
nico.thesimpleclub.de
www.thoren.io
tweek.so
www.veganbuddy.site
projects.wonkytech.net
zurab.me