77/100 SECURITY SCORE

Certificate Information

Subject
CN=yatra.visa2fly.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 24, 2025
Valid Until
February 22, 2026 86 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
95:91:08:48:33:7B:24:B2:D9:9C:A2:B5:2A:13:B8:EE:C9:73:B0:40:C1:FA:06:4D:2D:49:12:EC:21:43:3C:C8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
anandabemestar.com.br

Other domains in certificate

adanfarmacia.com
www.administradorainmobiliariaes.com
iframe.adsequor.fr
demo.agilestruct.com
investment.alias-solutions.net
www.andamp.app
admin.animemo.id
apptvst.com
www.arksalarate.com
beta-studio.artboxprojects.com
artemisailabs.dev
atolyetane.com
app.avkempen.be
www.awardrace.com
baskaran.me
berdolfo.com
big-in-the-game.com
caciciafabrizio.com
e.cervonwong.com
civilstack.com
cliqhaus.in
clonypop.com
www.clubkaiku.com
coconutwaiting.com
cradx.com
contato.criar.art
gtrouble.cursedstudios.dev
danebakes.com
contact.dataknobs.com
flappyd.degendrop.io
www.edustation.one
www.endingeverything.co.uk
www.englishphonetics.net
v1.api.enjizha.com
ericyoon.com
espaciocompacto.com
gluttonshouse.eya.digital
inventory.fabianstreicher.de
rc.my.foodsi.pl
www.fotokama.eu
fragmented-past.com
gameontrivia.com.au
app.get-customers.co.uk
gobotanics.com
hallodu.eu
demo.hausera.io
hellodiabetesnurse.co.za
learn.helpersetu.com
names.herohtar.com
www.highleveragehumans.com
ianmmoore.com
intl-glyco.org
admin.jackprocity.com
app.joinflashback.co
jungy.business
kadenmisenheimer.com
www.kongan.net
www.lemenolabs.com
app-console.lifesosimplified.com
www.lizard-apps.com
www.lukeslight.com
erp.moshiurrahman.online
gassendi-animaux.musartdeurs.com
myvrs.ai
newdealpoker.nagidev.com
sulav.name.np
app.notewalk.com
baby.ogaspaas.com
dealer.dev.omotenashi.ai
rankmeonai.oorbital.tech
pahomesolution.com
www.pcbl.co.uk
www.pensioenbijcovetrus.nl
praticamedicapreventiva.com
pms.ptechin.com
spaceops.qqc.pt
rainz.com.au
staging.rarimobiliaria.pt
ricardokevin.co.za
www.rozhon.net
www.sciencecookies.net
scurrycu.org
www.shuvoislam.site
sinapystyt.fi
admin.spekaassets.com
workplace.sport2000.fr
www.srishti-designs.com
sritejaconstructions.in
linking.stow.ng
streetjokers.gr
syntaxfa.ir
takenaka-shoten.co.jp
uniquestyle.se
uphotelnaples.com
velixodrive.com
vidfluencer.agency
yatra.visa2fly.com
admin.worldofcrackers.in
app.zwem.band