Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=regmar.rentando.mx
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 26, 2025
Valid Until
December 25, 2025
41 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CE:D1:08:0E:1C:66:98:5B:F7:43:04:C9:28:56:0A:98:2D:F5:A0:3D:9E:3C:21:A8:C3:62:07:7E:98:95:BD:4F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
anightmareofwinter.com
aesteroids.com
agrapine.com
www.aizeta.com
ajayshrivastav.com
ajhughes.com
www.alboradadeunpueblo.com.ar
amayas.ca
amrutdigital.com
sudoku.anglebrackets.app
assinardocumento.com
registration.atc-technology.com
index.athenyx.online
forecasting.bako.co
www.barroisantiques.com
benxautomotive.com
billardscore.com
www.blakeperdue.com
www.partner.boogzo.com
www.chez-loulou.net
americanmega.cleantie.com
mobile-personal.connectid.io
creativedecoration.in
cserkeszet.org
cwcabinets.com.au
img.d-navi.info
fsadyn.danielwirelesssoftware.com
www.darbyfulcher.com
dating-tools.com
dev.alumni.dena.com
notes.diwank.name
ekinstallation.fi
www.elsilvonero.com
explorer-app.co.uk
register.fitoutawards.ie
www.flfsfiling.com
fnoto.com.ar
business.fresherstoday.com
friendzone.app
www.gaminglab.biz
gradesk.com.br
heliosanalytics.io
share-dev.holopix.com
hoursworkedapp.com
quadpatch.ideandosoft.com
docs.intellectible.com
jysinfotech.com
kegva.co.uk
jobs.kisad.de
api.litta.co
shop.loveloughborough.co.uk
fg-poll.mapoll.de
app.meavana.com
www.megalapak.org
melontownfriends.com
monapeak.com
mutty.club
www.mutty.club
referidos.mybiznez.app
nerdvana.com
nexifyz.com
nftconcerts.com
nickardecky.com
www.nikitarus.com
www.nrsmagic.com
www.otimizeprojetos.com.br
www.padrone.ch
paoycamilo.com
live.portme.app
me.portme.app
dev-auth.premierlacrosseleague.com
photo.principiantes.es
app.qedfinance.com
followupai.quantumrover.in
radarcelectrodes.com
redsols.com
regmar.rentando.mx
www.revistamipyme.pe
rksapps.com
www.safari12.com
scottcrossen.com
scottmcc.com
sp.shogi-dojo.com
rpi.sonsofmedia.com
www.southindiacabs.in
www.spectrum20kw.com
tct.ebot.stedu.vn
demo.swish.nu
regex.rss-builder.tehs.in
www.thetac.club
trivenipoint.in
www.ubimemes.com
unriddle.in
temperature.vagabundo.org
westerncourtyard.com
www.wgcosta.com
www.whitekite.in
winshared.com
foodsensitivityjuniorpanel-report.yourgutmap.co.uk
zaozerskikh.ru
Other domains in certificate