Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=prioritycalculator.app
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 28, 2026
Valid Until
April 28, 2026
88 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0F:EE:B4:43:F2:90:28:6B:72:64:27:DA:54:CA:13:39:EB:09:89:D4:DB:9A:75:87:AC:B7:13:74:86:A2:04:9E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
app.bynand.de
www.531go.app
cms.aappoint.me
pwa.sagt.acuizen.com
www.aglide.co
dev.crm.airlift.app
djr-manager-time.aldridge.app
www.algebradamen.no
docs.dev-thecsas.algo-artis.ai
alignasi.com
connect.ar-remote-assistance.com
askquikstrike.info
auro-space.com
averyscuttingedge.com
device.balloonair.tech
bareltayouri.com
www.belmonthotel.co.uk
www.blocs.se
bloomtherapypnw.com
breaker-breaker.app
ipd.byhc.group
capsol.us
app.asgard.cargotic.com
www.castells.app
christophgajda.com
www.cinetrips.com
akshikacarecenter.co.in
commabot.com
dashboard.crave-cloud.com
crazytrip.com
d-genesis-stats.com
digitalinam.com
superadmin-dev.driverguide.is
adam.drivevesta.com
krunal.drivevesta.com
www.dycrea.com.mx
eanint.org
alunas.englishcomcami.com
web-staging.faks.co
fameoil.com
fawan.space
admin.freightra.com
dl.pre.galgo.tv
green.legal
harpandsheena.com
hotcryo.co.uk
houseofcarslondon.co.uk
studio.husori.com
wimmog.immodigi.app
www.joinslip.com
kintimer.app
kmoschatter.be
talentohema-performance.lernit.app
life-inharmony.com
api.lipsurf.com
app.litsoftware.com
mcrni.app
mizorameconomicassociation.com
museotechniki.com
www.nanometer.app
app.nekudotaim.com
nvdr.space
www.palakkadonlinenews.com
parasets.parallel.life
id.pdfsnake.app
pendulumsession.com
pixelogic.app
emoji.playful.ist
tailored.preventtool.com
prioritycalculator.app
api.protoworld.io
nuevamente.quickpass.app
reynanda.ca
auth.beta.portal.riggsdavie.com
riply.in
auction.rwrc.net
link.saytm.app
secondsense.club
www.secondworld.games
sekocitylogistics.co.uk
sentencesplitter.com
www.simatomic.com
merchant.simpleservice.app
smallpinefarm.com
spectrumsolutions.in
stylelimb.uk
sushibelgium.be
swarkoz.com
taskontable.com
thenorth.in
app.ujama.co
www.umko.co.za
www.unrealshowcase.org
rubik.untitled.cl
vocabuild.com.au
www.walsallchess.com
landing.weekday.team
wordscanner.app
workzee.app
xqst.cc
Other domains in certificate