Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=schooly.co.za
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 29, 2025
Valid Until
March 29, 2026
88 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2A:3B:EF:B5:83:5E:DB:06:04:E3:48:1D:5C:F1:A0:95:14:2E:2F:EE:CF:A8:38:AA:BE:CB:0B:0D:D3:DD:9E:4B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
anatanoa.net
app.2aw.io
admin.activealamance.com
aolar.com.br
applicationfiction.com
arobanquetes.com
www.ashishbhavsar.com
technicians.athamneh.net
admin-dev.athomearticulation.com
www.avanzaia.com.mx
backinactionmembers.com
cotton-tape.banjobolt.co.uk
www.bitwise.si
www.blackbytes.de
bottlecaptech.in
btoday.link
central.sc
www.certivox.com
www.chotaynguyen.vn
clearvisiontechnology.in
license.ottimosystems.co.th
chiayi.onestudy-uat.oneclass.com.tw
damiendavisneff.com
dart-board.io
app.denialtek.ca
www.depilacjalaser.eu
hotram-integration.devx.vn
dmammedov.dev
www.duckywakes.com
www.eurekamps.com
app.fineducation.xyz
kushagra.fodaffy.com
www.fuzzymoos.com
genesis.game
www.goexotics.com
mail.gogogarden.dk
hamsalekha.com
harjotsinghpanesar.com
employee.herohousing.org
maze.hudsonansley.com
www.huellitasalegria.com
imagine-it.com
india.iolite.software
www.islamicdua.net
jennajn.ca
jonandjackie.love
joshgearhart.com
app-test.kentuckykingdom.com
leagueofquiz.com
www.lobesoft.com
medblen.com
admitkard-ug.metis.club
metrorganico.com
metuvestuves.lt
ticket.mfs.dk
www.mkrilanovich.com
www.myvoice.re
nikolausbrissa.com
ninjasellers.com
portal.oni.co.nz
onliestworld.com
www.ooobisidipertners.com
orkidekultur.com
vvosco01.osco-app.nl
pengelegen.no
www.perumalcraneservice.com
peterdavidsonboilerservices.com
www.playbirdie.com
poccariswet.com
portalgroove.com
professordrmashakoor.com
regis-app.com
sacha-artstudio.com
salhurry.in
vadiba.saulesaptieka.lv
scalebit.com
schooly.co.za
selfsupervised.io
permits.sgwa.org
www.sharonsmlee.com
www.solgrad.com
easycs-app.speakylink.com
easycs.speakylink.com
dr-jashim-uddin.sundiabetescare.com
owner.tanq8.com
thegeoadmin.com
www.thegeoadmin.com
www.thewatchify.com
app.staging-barber.todakdigi.tech
www.upnext.at
www.usdsportscamps.com
www.voicevictor.com
wewlt.com
whatwasnt.org
whfinder.com
privacy.woejosoftware.nl
woozlabs.com
wpaiproposal.com
yugoilooo.com
zivpn.com
Other domains in certificate