Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.greenmini.nl
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 30, 2025
Valid Until
March 30, 2026
77 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
45:76:20:2E:B3:65:74:8E:9C:49:EF:EE:3D:FC:33:FE:06:C7:DE:05:96:F3:FE:E2:4F:72:FC:03:D2:9C:79:F6
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
andrechenriques.com
sl.24houroxygen.com
www.aitechupdate.site
grupomega.akibaa.com
arsenal.anduril.com
pheno.anuvabio.io
armadordepercurso.com.br
avantagecpo.com
www.azvn.app
paufc.deeplinks.bfansports.com
bluebird-documentation.com
dev.admin.cabinetdeals.com
www.calitank.com
www.cardinalstepinacawards.com
dev.open-us.cardiosignal.com
www.ccjopartnerstrading.com
vision.celushop.com.ar
www.admin.certifysimple.com
www.china-chats.com
l-staging.convoz.com
www.corvinodesigns.com
analytics-dev.cresicor.ai
geo.cuadraporcuadra.com
dingajudge.com
www.monitoring.egraft.org
www.elastikobjective.com
admin.farmact.de
video.feedback.feelalytics.com
feelinsoupy.com
demo.fitexgo.com
app.focusokr.com
www.followupspro.agency
freebusinesscontracts.com
dev.auth.futster.io
join.getfinally.com
ghosts-art-legacy.com
link.gobizdev.com
www.greenmini.nl
www.haagistvan.com
www.beheer.hallobot.nl
andrii-kseniia.invito.link
www.jimw.ca
eventually.jorgetheengineer.com
ibtc.test2.kiki.finance
client-dev.kleenwayservices.com
www.admin.klubbappen.se
permits.lasepa.com
latter.page
www.leafautos.com
www.app.staging1.learningsuite.at
auth.localmasjid.com
pro.logbook.com.co
mobileapp.marina-punat.hr
aayulinks.medcords.com
mercan.mercari.com
editor.michaelpdidier.com
mindmakersproject.org
mirasasse.com
www.mj12358.dev
paopao.moderntea.ch
muchoos.com
www.myasedi.com
go.mybloodpressuretip.com
myklassrum.com
nipunenterprises.com
beta.nitetoast.com
ngpanel.noisegrasp.com
moderator.novo-connect.com
www.odania-it.de
event.othellonia.com
pages.parsonsbehlelab.com
photoratingsystem.com
gozcc1.pksquad.com
www.playtrimmingsails.com
www.pluraling.com
www.myresourcesite.propelledbrands.com
auth-dev.qoodish.com
shop.queue.lol
www.raad.work
www.rckit.app
cliente.rflex.io
shoks.net
dev-game.simemes.xyz
siscoven.com
stg.admin.smile-package.com
console-alpha.spont.cash
cscabinet.studiossolution.com
mazerats.taytay.ca
teyoh.com
thefrankemon.dev
tigerstudios.com
titanxg.com
testing.topic.com.ar
trickstratapp.com
tuxedolab.info
www.wavelette.io
www.worldviewsoftware.com
xii.agency
www.yelobus.app
api.yodd.health
Other domains in certificate