Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=myjourney365.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 29, 2025
Valid Until
March 29, 2026
89 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B9:50:B1:59:31:69:0F:F5:B4:AA:8B:45:5D:07:93:4B:A6:71:78:31:52:29:79:73:69:27:D7:2B:11:4C:57:1C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
admin.shortchall.com
2048.omarhurani.me
aprire-centro-estetico.2gbeautycenter.it
www.abou-simbil.com
accesolatam.com
api.staging.anikki.in
anthonyzhang.info
www.facilitta.app.br
axondev.com
nowruz4.apps.babaaman.com
bincang.app
app.bissap.deals
bnginternational.in
cameyesecuritysolutions.in
ashagaire.com.np
www.uicco1.com.tw
cooktribe.app
crowditory.com
dsapp.app
auth.ebake.com.br
chuyendoisodoanhnghiep.edu.vn
eexchange.in
www.elnutrion.com
energetic-awakening.com
evanmglover.com
www.eventwood.no
faseiinightclub.farrasnorte.com
federicofumo.com
festudio.app
www.filmengineers.com
www.findhousefor.me
www.fitlefit.com
admin.forteharbor.com
cimbalomiskola.hagyomanyokhaza.hu
terms.hbarspace.com
heissliimundglitzer.ch
hewandfrost.in
beta.app.huduku.io
idroptaxis.in
jonathan.ixcayau.com
www.jobhopr.be
thomalex-sdk-sandbox.joinsherpa.io
kamraman.com
biquet.kards.fr
go.kvdigital.swiss
lisaochmartin.se
luxuryhomessdelhincr.com
mariusbaer.de
todoapp.masadi.fr
www.maskchecken.se
www.mathvlearning.com
portal.maxsource.pt
www.memid.co.jp
mimercanciasegura.com
www.mlconsole.com
mo-atef.com
daisy-dev.mokkon.com
myjourney365.com
myswaps.de
uailugar.nata.dev
pic-lslux.mentor-stage.neccton.com
www.nograbass.com
ohmynova.fr
current.ontariogarlicweek.ca
dev.battle.othellonia.com
admin.playexplora.com
www.playquiz.co.uk
www.powerliftcalc.com
quantumwms.com.br
pw.rafaelbiehler.com
app.reduzer.com
devteam.referringo.com
www.resinates.art
room101.retro-ink.com
admin.risewagecoining.com
www.risewagecoining.com
office.rokkhi.com
google.rotaneta.com
segarapratama.com
www.sheepaprod.com
auth.siteman.ro
sivis.app
smartnext.xyz
www.taasa-health-app.org
dev.team-de-bug.com
terrathefinalode.com
theallocator.com
tintmint.net
www.tktt.fi
www.toiware.co.jp
dashboard.triangula.com
uisyntax.com
my.staging.uvida.app
vandanawedsvinay.vandanapv.com
viticly.com
usapp.wahedinvest.com
www.willowprescott.com
admin.interedu.wowdesk.jp
usermanual.youdocms.com
youreasypm.com
Other domains in certificate