77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.chuday.us
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 04, 2025
Valid Until
March 04, 2026 39 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
EE:C4:EB:2A:F8:3F:7B:6A:22:0E:FF:FF:B0:49:EB:16:B2:D7:36:12:87:92:17:34:D2:D1:51:D0:55:92:64:96
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
admin.wellbeyondwater.com

Other domains in certificate

6ottobre2024.it
huikoeaina.ainadesign.org
app.alignerplay.com.br
mimihouseowner.appnho.com
apttick.com
au-checkin.auassist.com
www.azhagudroptaxi.in
sub2.baddatapush.com
bagruartandcraft.com
baldovinphotography.com
directory.berkeleyplace.org
bobbybrilliance.com www.bobbybrilliance.com
buchhandlung-raabe.de
bulmaca.org www.bulmaca.org
www.busquenos.com
www.camilaspinelli.com.br
www.casadelosbarrigones.com
ceci-foods.cat
chamsferid.tn
www.chuday.us
hemensat.cardata.com.tr
aprisa.com.tw
test.contigo.social
www.copagency.org
craftbuildingservices.ca
crowdprobe.com
dataleomedia.com
decideup.com
disabilityconfident.org
qa.docon.me
dtfdatabase.com
lamhi.dv.in
dynacon.tech
admin.energic.sa facility.energic.sa
app.entreprenants.be
eycp.co.uk
www.flipstorm.com
i.freebie.app
www.funclass.com
www.geniuspro.app
geooh-go.app
www.getzinch.com
app.ghostbento.com
glasinloodkoper.nl
globalreachretailers.com
www.gravitastec.com
alp-admin-staging.greenvolt.by
www.groutor.com
hannahtuong.com
helltender.com
www.hjacksltd.co.uk
hockeypool.co
jaiho.app
julien-scholz.dev
kanastruk.com
admin.production.karma.life
kayciparcells.com
spaceminer.lambdasoup.com
ref-test.letsemjoy.com
linfieldfarm.org
lucabosch.com
manyenya.com
beta.mero.finance
minarulak.in
www.mjcscientific.co.uk
m.delivery.niceloop.com
www.oneupconsulting.solutions
www.penum.co.uk
www.pettanko.world
possible.new
admin.prism-reception.jp
rapimoney.pe
www.reto-fit.com
www.robertmopia.com
www.salamongyula.hu
seasonalwork.uk
links.selvy.ai
slips.im
app-alpha.smartester.io
splaytech.com.au
stakesignal.app
storyshot.place
tastrious.com
teachcal.app
www.tegnespillet.no
thaiflights.info
mint.thisnftiscrap.io
admin.preprod.app.tripp.com
www.umrahalbadal.net
vrivi.com
wall.love
wcmtanninginc.com
wearedip.eu
wkalender.app
auth.xchanger.software
yobee.au