Open
Cached
·
just now
80/100
SECURITY SCORE
Certificate Information
Subject
CN=spacegut.guthealthlab.co.uk
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 01, 2025
Valid Until
March 01, 2026
88 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BC:AF:B3:6D:DF:09:BA:F5:F4:57:29:F2:B6:72:EB:51:06:B4:5B:43:20:DA:B5:4B:73:19:AD:1A:E8:5A:59:4A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Configured
(Restricts certificate issuance)
Current Issuer
Authorized
(Matches CAA policy)
Authorized CAs
Wildcard CAs
Recommendations
- • Consider using critical flag (flags=128) for stricter CAA enforcement
- • You have authorized 6 CAs - consider limiting to only the CAs you actively use
- • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts
Subject Alternative Names
100 domains
agendabarbeiro.online
adwokatbenc.com
www.anjawollan.com
app.any-x.com
asianchildneuroclinic.com
asset-tracker.fr
avododo.com
www.axlry.com
auth.babykanaam.com
ballsofbarwell.co.uk
markdown.bctsoft.net
www.bellinmuseum.art
eagle-quote.blackfin.tools
www.boop-noodle.com
bottlebuddy.com.au
admin.brewwidget.com
fiu.campusexperienceapp.com
capletunes.xyz
www.charitableactstheater.com
chilidip.ca
skywingsholidays.co.in
colonoslashigueras.com
communitycompanioncare.com
cssflorida.net
revenue.derma-rooms.de
despuesdelpeaje.com
dtv.cash
auth.duckytest.no
dvrtoursandtravels.com
dash.dwellful.com
lmsapps.ecampusweb.com
www.eldhoseshaju.online
facilite.me
farmitindia.com
www.fearless-security.com
propatria.felporgetve.hu
www.fintechvisuals.com
forodeescorts.com
staging-app.fubles.com
galileobnauniversallink.info
v2.legacy.graphitewriter.com
whois-admin.grilabs.net
growthplusplus.com
www.gspteck.com
guesssync.com
spacegut.guthealthlab.co.uk
stock.gwrevolution.com
www.hallpasshero.com
dentaldeposit.halo3.net
test.happyparentingmalta.com
hcppod.com
housecraftexperts.com
www.howthecookiecrumbls.com
hydronavixmarine.com
icon-builder.com
dm-q.interviewui.com
itzaartsgallery.com
kartingtransilvania.com
link.kidscur.com
www.kingdomk9training.com
www.kuttekimaut.com
www.lean-nishikata.com
lolesportscalendar.com
majdihouidi.com
www.markangelohernandez.com
www.mayda.com.br
mersi.money
www.midas-financials.com
monumentenstudios.com
www.nivin.design
northernstarseed.com
member.ofukidoma.org
u-space-demo.orbitalize.com
endeavour.orchestra4edu.com
palashudyog.com
www.pilateschicos.com
primarypen.com
pulsedot.pt
qrmenus.com.br
quadraenergia.com
qwertyisaduck.com
www.restaurantecanton.com
www.roadsppc.com
rosalyndupont.com
rrhhagro.com
salomontienda.co
www.sidnix.com
www.signatory.co.za
g1academia.sogafit.net
share.sprueche-app.de
squaadapps.com
streakcontrol.com
svarlabs.site
talentrom.ro
app.teacherfinder.com.au
share.thelallantop.com
tsbespoke-timesheets.site
twentypercentproject.org
us-central1-dev-api.waseda-onodalab.jp
zapdev.net
Other domains in certificate