83/100 SECURITY SCORE

Certificate Information

Subject
CN=redux.todo.keigo.io
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 31, 2025
Valid Until
January 29, 2026 53 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DC:A8:62:18:AF:B8:C0:66:AE:4F:88:9F:C0:DA:E7:EA:A4:F6:1C:7E:B6:3B:BF:D6:81:9A:72:5E:82:13:BD:F7
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Good
default-src
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Strengthen CSP by removing 'unsafe-eval'
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
api-staging.tanto.app

Other domains in certificate

adityadroid.com
www.alldostudy.com
www.alphabiomedica.com
angro.hu
aptekabialeblota.pl
arkid.nl
armingurdic.com
ashoksoniassociates.com
hexvisualizer.baotong.dev
www.botopus.com
cheatsheet.c4f.wtf
kimandleabook.cafetextual.com
www.cardingclub.mp
www.cbdib.com
www.chatsee.io
www.codemagma.com
www.compti.com.br
www.cormackwiddop.com
creativequotation.com
poc-angular.daobui.nl
www.deniselynshue.com
www.desaxed.com
customer-s.dev-ltl-xpo.com
devshroff.devshroff.com
digitaldatatecnologia.in
www.doctorgordin.com
www.douglasrodriguesjose.com
go.dreammo.eu
www.elaineling.ca
elevaid.org
www.ferisdesign.com
www.freerangekids.org
futdale.store
ndljppid924862.grikk.co.jp
app.guidemeart.com
www.hangr.fr
www.hannahgetsaward.com
playground.hazu.dev
mta-sts.hindmarch.au
mta-sts.hindmarch.com.au
hirayama-kensetsu-ltd.com
lounge.iamverse.com
doandaiphong2416585.id.vn
play.immodesttrivia.com
www.infrabootcamp.com
admin.irts-one.com
jennisimone.com
joncel.com
primafabbrica.kards.fr
redux.todo.keigo.io
moodle-test.klarway.com
www.kovigo.com
nkm.lapprand.pro
task.letitechsl.com
dev-link.liirn.app
type.linka.su
www.lokio.app
app-dev.lovb.com
lucianolang.com
lynnmargenetics.com
www.marinerobengali.com
www.martinjonson.com
thanks.matchupinfluencer.com
gout.mayamd.ai
meble-joker.pl
www.mechanizedabstraction.com
ottmanager.mediatiquepress.com
mrautos.cl
www.mydentalcaresunnyvale.com
www.navywrestling.org
www.odit.me
app.ontreino.com
oule.re
parkingzone.io
v3.portfoliolink.co.za
www.prayog.app
puneetkushwah.com
puzzlemaker.live
rakuritu-enjoy.com
investment-accounting.dev.resre.bm
rhc360.com
brainsync.rickybrowne.com
rucovid.com
app.runningstars.org.au
training.seclab.id
www.skamalakannan.dev
firebase.storytellarkt.snappopapp.com
www.stim.ai
synergistic.ca
app.pipestream.tatvic.com
www.tosou-madoguchi.com
jobs.trandrew.ca
dev.relosource.trcgm.com
www.veljkoplecas.me
www.vetzoo.cl
dripcentral.viralfission.com
app.viridios.ai
wey-yu.net
www.winnonapartners.com