Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=admin.easylanding.io
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 17, 2025
Valid Until
January 15, 2026
62 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
82:1C:3F:27:F6:2A:B8:01:44:F5:FE:07:D6:63:3A:E1:8F:83:6C:D3:34:2D:26:40:B5:5D:DA:CD:88:4B:7E:31
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
alyx.live
www.11yearsafter11.nl
dev.360textpay.app
adxsdk.com
aemc.space
www.almabits.com
birthdaydeyasini.anik3t.dev
www.antenna.money
app-fenix.com
connect.appabrik.com
austinhoag.com
balkanamericans.org
dev.boltchem.com
brianmoneypenny.net
chat-id.nl
www.choikokhou.com
auth.nano-forms.co.il
crediyes.app
curlite.rest
tools.davecore.dev
supaspeak.davidmakesapps.com
www.desingu.in
app.dietspace.fr
dl.digitalby.me
www.dynamic-ai-56.com
www.earnhaus.com
admin.easylanding.io
smr.elderporcaro.org
www.endometriosis.app
feya.eu.org
www.eugeneyun.com
stage.f2p.tv
fqpayrollsolutions.com
www.gainstrack.com
gatewayresidency.in
www.gescon.info
web.getkisi.com
handtoy.com
merchants.healthygoodness.com
hudepohl.io
humiselect.global
registre.monjuridique.infogreffe.fr
isinmaden.com
javandchar.com
joyastick.com
jujuslist.com
gamekzone.kelvinguerrero.dev
www.keypis.com
www.kiteki.app
www.waterworks.klinger.ooo
www.lantz.io
www.linfieldstables.com
abyss-dev-bnxhh.logicpuzzle.app
www.loveingame.fr
mta-sts.maartenjankamerbeek.nl
mafiaclub.online
mealme.mom
micro-grp.com
consent.mistergreen.club
moonliv.in
beta.muncommand.com
n-sync.com
meprod.nablasol.net
oazarelaksu.fun
appmaker.ogunlabs.com
www.omcorretora.com.br
onedropstaxi.in
www.onewaydropstaxi.com
app.optiplan.company
www.dev.paperon.app
www.rewards-dev.pocketpoints.com
console.preview-solutions.com
corp.recri.jp
rethinkreading.org
rutt.io
www.s2nventures.llc
www.shocat.app
www.sierrahubs.com
www.softspace.dev
dev.spbeu.ru
acc.spont.cash
app.stackstarter.io
www.stichtingkoh.nl
admin.subscription.app
surgeconsulting.co.nz
wine.sushibento.it
control-panel.tcas-backoffice.tcaster.net
technovator.in
thesourcepedia.org
thinkwrite.ai
ops.trophyrail.com
bachngo.trueapps.cz
u1f595.info
unitconversion.app
www.ustavshik.ru
3dsquares.vbi.dev
kolo.veert00x.com
xoxtruffles.cafe
yogascience.in
www.ziliochurrascaria.com.br
Other domains in certificate