Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=tanaka.digital
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 21, 2025
Valid Until
February 19, 2026
89 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6A:13:E8:A2:63:92:87:76:45:EF:99:56:EE:C3:51:8B:01:8F:E1:66:B3:EA:DC:30:46:7A:C9:6E:90:73:E5:89
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
alexpyc.com
3d-glass-ui.com
3dplug.com
4-v.co
aloha.dev
www.amooto.co.uk
services.arianee.com
askigib.com
asternaut.trade
www.asvntech.com
petective.ateliee.com
www.aureliaintl.com
avafoos.com
beyond-agentur.de
biculounge.com
blacklub.eu
www.bridgetohealthpa.com
cecilydowns.com
woktowalk.clau.io
clicka.ai
club-meister.com
codegazer.com
www.curafittech.com
www.dmp.d2-apps.net
damianchavira.com
dev.sfa.e-bukken.app
emma.earlymarkers.com
www.feedback.link
www.fortuneassists.com
servolution.gms.church
github-blog.guiathayde.dev
music.h3lio-lab.com
www.h3lio-lab.com
hangbird.app
panel.ideafacil.mx
billing-hk.cloud.ikala.tv
development.invoicego.app
www.jader.io
jeremie-lopez.fr
johnniewalker.dev
watch.justmovieme.com
kagolai.com
www.kangaroocarefertility.com
kerolterapeutacorporal.com.br
www.khabeer.ca
auth-dev.kislepesek.hu
links.konsi.dev
www.kumarguptajit.com
la-terraza-de-la-salsa.com
leclef-1889.com
leclef.co.uk
leclef.uk
leclef1889.com
linandphil.com
testing.makepoke.com
www.medtechprosolutions.in
minipivovarjicin.cz
mister-chocolate.be
mister-chocolate.co.uk
mister-chocolate.uk
misterchocolate.be
misterchocolate.co.uk
misterchocolate.uk
rentamigo-apply.money-phone.com
clicker.msiejak.dev
www.murase.page
namibiascorpions.site
course.onjobusa.com
lp.oresalo.com
ops.parkchamp.ca
piraten-pub.de
store.planck.biz
powerm-agency.com
rdbtx.de
suluint.corp-internal.rxo.com
sardal-chocolate.com
sardal-chocolats.com
sardal-dubai-chocolates.ae
sardal-dubai-chocolates.com
sardal.store
sardalchocolate.com
sardalchocolates.com
sardaldubaichocolates.com
sardalworld.com
sigil.cloud
dev.signalflow.tech
www.sloughdominoes.co.uk
soulshades.ca
www.spliffyworldwide.com
www.statbanana.com
demo.stormbase.co
suniltarge.com
tanaka.digital
thewoundguru.com
toraymakine.com
tryluminary.com
www.ttopet.com
app.dev.utags.co
video-up.app
wikodrew.pl
Other domains in certificate