Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=refida.li
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 08, 2025
Valid Until
March 08, 2026 83 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0D:D1:E1:1D:79:AC:28:47:DB:32:2E:DD:AB:97:20:CD:E4:82:4A:E0:BC:72:F8:9A:9E:52:BC:B9:EB:48:2F:F8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
admin.things.ws

Other domains in certificate

2019.m1studio.co
admin.novella.bard.aabass.net
www.andrewsk.com
config.armstrongmonitoring.com
batchy.finance
www.begrowld.com
dev-cda-admin.bens-groupe.com
jobathon.bintern.com
bizvento.app
casetamombasa.bracelit.es
app.brighthospitals.com
pages.app.c-rayon.com
pravobot.chmelicky.work
cinestry.in
climateactionnarbs.org
clubone.app
career-stage.quantic.co.in
loudon.column.us
techtalks.cpptl.co
cubefy.com.br
darn-think.com
www.dementx.com
weather.e-arthsolutions.com
emmanuelojeah.xyz
emphasisetech.in
ios-support.emula.pro
www.eosetf.io
fatherxldn.co.uk
www.fcssport.com
app.feedio.ai
fucked.finance
fuertes.app
geonaut.co.uk
dev-virtualnotary.gettonote.com
www.gorkhalikitchentampa.com
remote.gservices.page
www.haff.tech
hasini.lk
hidroelectrik.mx
hyperlink.tools
www.icomuae.org
beta.admin.ikriyo.com
scheduler.iowave.in
apptemplate.ita.tokyo
www.jaxfloyd.com
www.johnsonbricks.com
unsolicited.joshbauer.com
wallpaper.kalyptex.com
karmatwixtors.com
api.karttour.net
cloud.kinetica.com
localcocollective.com
www.lvacreative.com
madtrenz.com
marmolesbernardo.com
merchcode.net
milanohouse.co.uk
mistryankit.in
visitor.registration.mohw.bz
munroaming.co.uk
we.nhayeu.com
v2-dev.nofilterbroadcast.com
main.okroo.com
app-dev.outtrove.com
oviedocup.owqlo.com
slides.patrickwilliamweaver.com
penumbralabs.xyz
auth.pet2vets.com
app.pflemi.de
schematics.phoenix-dz.com
www.praguedentistry.com
m.quesmatic.com
links.lightx.recursyve.dev
devconsole.redoos.com
refida.li
app-ecofiltros.refiltek.com.br
retinset.com
staging.shopsavvy.com
skshiipingbgm.com
snipersanctuary.in
www.sttir.com
sunshipmedia.com
dlink.surfunhk.com
graduacionjacquelineventura.swanmoments.lat
zeta.taktak.co.uk
tannerslist.com
repaint.tapotap.com
links.teamcollect.net
referrals.timedoctor.com
translationsexp.net
trenchscout.com
info.tsunagicom.com
unlighter.app
vaigunth.in
mta-sts.vectigalis.si
vin-decoder-free.de
yiketty.com
zachwhitener.com
zbrmapps.fr