Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=bimanalytics.ai
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 06, 2025
Valid Until
March 06, 2026 88 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A0:1C:D3:CE:B9:37:C0:05:48:F8:2E:BA:A2:0B:4C:A3:9D:13:A0:9C:4B:0F:F6:AA:25:E4:2D:49:A7:05:33:EA
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
advisorflow.net

Other domains in certificate

5e4u.me
abdul-adventures.com
www.abiinteriors.com
acho.io
agdl.link
www.ahhmused.com
aldeebaj-med.com
allchildrenchristianacademy.com www.allchildrenchristianacademy.com
allstorie.com
aminhassani.com
andrewmulleady.ie
coaching.annelaurecano.com
arasteknik.com
app-link.aturnos.com
www.automagicalflows.com
mobi.bambangdjaja.com
bcnw.men
docs.beyondshop.cloud
bihani.app
bimanalytics.ai
bionton.com
bluebrain-medtronic.com
www.booknites.com
www.brewjoys.com
caliipso.com
www.cernet-esco.it
chadbuck.ca
chrisbehr.com
www.chromaweb.app
cliplabs.ai
aitutor-dev-ckt.cloudpssolutions.com
app.asabro.co.il
qa.ebot.xbot.com.vn
s.copyki-pr.com
dbilgin.com
dittrex.com
dynamic-pricing.dev
thesaurus.e-onlineservice.com
egykidsacademy.com
staging.api.esadidea.pt
app.euro-kurier.si
exploringsolutions.com
edu.far.st
www.financialfuture.io
gluon.info
hetdautenmannetje.be
heysha.jp
nazuna-kyoto-gosho.b.hotekan.com
hummingup.com
ignitialabs.dev
itfreelancing.nl
jaglavak.co.za
johirmisszio.hu
client.joinyaw.com www.client.joinyaw.com
jvrmed.com
sport-en-fete.sj.k12.tr
pay.kerzz.com
www.ktmcouriers.com
lackierer.app
lydianuniverse.xyz
marinadecolon.es
control-panel.mchosts.com.au
ffs.mirch.dev
mitskovets.best
mongolvalley.mn
onlyyesterday.monicahamilton.art
morganeirio.com
www.motherlabs.ai
tax.newco.cz
cash-ito.nni.ai
od-tech.my
onews.site
pconsult.ro
liveqa1.peppybiz.com
pslove.dev
pushpa.clinic
swimmingwaikato.pushstack.io
qrcode.chat
au1.resbutler.com
revecode.com
rizalspades.com
singerji.com
sods.snabb.lv
www-new.solholt.dk
api-dev.tanto.app
www.techtalk-hub.com
thelin.app
audit.triply.ai
udruga4lista.hr
www.sol.under25universe.com
www.verbup.com
vldbn.dev
waymarksystems.au
edit.webcat.app
static.wellwaterservicect.net
app.yampi.co
zyadelgohary.com