77/100 SECURITY SCORE

Certificate Information

Subject
CN=nexus.kartos.com.br
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 11, 2025
Valid Until
March 11, 2026 73 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
30:49:A6:F6:30:9F:48:A1:D0:18:81:56:11:EE:6F:95:E6:8D:8D:7B:E9:37:CD:A0:3B:47:1E:4C:D8:CA:6E:D1
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
admindemo.digitalmathlab.in teacherdemo.digitalmathlab.in

Other domains in certificate

aashishanand.in
www.amazethu.com
amborjo.com
www.amirans.com
amyandzane.com
apidae.tech
dev.arberatstudios.com
arjunsanthosh.com
audise.club
avantidance.com
kaussner-dienstleistungen.botmanufactory.de
carepayzw.site
claddingscandalmap.co.uk
louly.co.il rsp.co.il
gridx.co.in
codeisnolongerwritten.com www.codeisnolongerwritten.com
wiki.collla.com
dashboard.cookmytech.site
ctrl-bee.net
daylykid.com www.daylykid.com
v2-uat.digiqc.com
dronequa.com
cdn.easytripapp.com
konobar.ebeach.me
takepart.staging.egg.srl
eilonc.com
ella.school www.ella.school
farmskiwedding.com
financialskills.net.au
links.fromaggio.com
frontweb.co
fundi.sa
www.hamsoltech.com
hjezly.com
local-census.tpmap.in.th
doctracking.incuventure.net
interviewreview.work
workshop.ishvern.com
app.jesusonline.com
staff.kalamindfulness.com
nexus.kartos.com.br
www.launchtab.app
fuel-logger.logisian.in
invite.luep.app
bingo.luishutterli.ch
lumaterminal.com
admin.mediwaysvaccine.com
meijerprojectontwikkeling.nl
pedro.missawa.com.br
mivaronaturals.in
pax.muevo.com.ar
www.mustpool.com
mygardening.site
mysoundapp.com
login.newlevelgames.com
nicolezok.com
nonglac.com
noted.oneai.com
onepill.com
radio.ooami.world
mp-dashboard.optime.ai
www.pfadethik.de
pixley.social
maps.privemd.com
bhs.procad.pl
ptownpickleball.com
tokyo.qdx.co
rrstudio.biz
skyhub.my
snickerbockens.com
sower.org.au
www.spendifyr.com
spendly.fun
sdhsaascratchadmin.sqwadhq.com
sunyataventures.com
superplayer.cloud
swachhtaclinic.com www.swachhtaclinic.com
flutter.tejaspokale.site
tfikolkatadelhi.trustin.app
twilightlabs.in
ukiyo-homes.com
wawgd.com
waytogo.app
wezyapps.com www.wezyapps.com
demo.wisy.ai
www.yodono.cl
okstationsmqtt.yoojis.app
www.zaisustechnologies.com zaisustechnologies.com
www.zaisustechnologies.in zaisustechnologies.in
zieloneraporty.pl