Open
Cached
·
just now
92/100
SECURITY SCORE
Certificate Information
Subject
CN=www.edmik.tech
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 06, 2025
Valid Until
March 06, 2026
53 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
81:D3:7A:06:AA:2F:6D:0A:17:0E:83:6C:5B:20:4A:67:7D:27:97:AF:10:B8:DA:5D:8C:2A:AF:3E:92:1D:F3:C4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Good
default-src; script-src-elem; connect-src; +5 more
default-src 'self';script-src-elem 'self' https://*.cloudflare.com https://cloud-commanders-stg.web.app https://iso-common-stg.web.app https://iso-models-stg.web.app https://iso-shared-stg.web.app https://iso-company-stg.web.app https://iso-global-stg.web.app https://*.google.com https://*.googleapis.com https://*.gstatic.com https://*.ingest-lr.com https://*.googletagmanager.com; connect-src https://*.ingest-lr.com https://*.typesense.net https://*.google-analytics.com https://*.amplitude.com https://us-central1-iso-connect-test.cloudfunctions.net https://*.googleapis.com https://*.googletagmanager.com; frame-src https://isoconnect-stg.com https://*.isotalent.com https://*.google.com; worker-src blob: ;style-src 'unsafe-inline' https://*.googleapis.com https://*.gstatic.com; font-src https://*.googleapis.com https://*.gstatic.com;img-src 'self' data: https://ui-avatars.com https://*.ui-avatars.com https://*.googleusercontent.com/ https://*.isotalent.com https://*.isoconnect-stg.com https://*.googleapis.com https://*.gravatar.com https://*.gstatic.com https://iso-shared-stg.web.app https://iso-common-stg.web.app https://cloud-commanders-stg.web.app https://iso-global-stg.web.app https://iso-company-stg.web.app https://*.googletagmanager.com;
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
no-referrer
Permissions-Policy
Present
geolocation=(), microphone=(), gyroscope=()
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Strengthen CSP by removing 'unsafe-eval'
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
app.isoconnect-stg.com
dev.app.cupcake.29k.org
2raf.org
974tailoring.algoramming.com
www.974tailoring.algoramming.com
test.apollofactor.app
salesbalros.appnobis.com
ngsprekanchanhcloud.auxswot.com
play.beerealit.com
www.buikema.work
portfolio.burakuyar.net
instant.cafetoolkit.com
citrus.tw
www.claimsolution.biz
clypto.in
nitro.co.th
www.coinmetrica.com
mobiledev.gim.com.bd
www.whiterose.com.ua
www.delis.xyz
www.dokilearn.com
dota2skirmish.com
q2-mydeliveries.dpdlocal.co.uk
drivees.com
www.linux-corner.dsbalderrama.top
google.easysignin.com
cdn-test-jk.ecellar-rw.com
www.edmik.tech
app.engagedbpo.com
www.estudio.app
ethanmauk.com
excandia.com
firefixoffers.com
www.gamenotfound.com
www.glynfinck.ca
dev.docs.hark.eco
www.hollyjfitnessapp.com
www.hookdtoowoomba.com.au
hygieia.app
coopertaxi.ideiadtc.com
jkb-development.com
jmrclimatizacao.com
www.jooselohi.eu
qt-develop.judicialappointments.digital
24planner.kaalkode.com
www.kalehv.me
www.kegelstreams.de
mailboxes.kerp.net
kimishaluxe.com
app.lastclass.io
qms.legit.health
supervisor.liderendeportes.bet
linguaway.com
saldo.lrsoft.id
www.lukasbt.com
premion-console.madhive.com
link.manadr.com
admin.marklii.com
www.megatown.one
ebooks.mobibootcamp.com
www.onspe.com
pedestriandeaths.com
www.pmcusa.org
beta.pointshop2.com
my.progressor.app
www.psychoanalysis.melbourne
app.radanalyzer.com
reflor.ee
rehobothbaptistchapel.com
admin.renaultbolsa.com.br
rexiliamary.com
www.rexiliamary.com
ridpo.com
roselineves.com.br
routz.com.au
www.ryanmccutcheon.dev
www.siete.top
kontor.snoservice.no
sparkstmc.org
www.sub3software.co.uk
suparevadreamsolution.com
webapp.tadatada.com
tilequesurfaces.com
timpweb.com
tompkins-wedding.com
stage.tractivity.se
trinitybrands.co.za
twansoftware.com
expresate-dae.uanl.mx
link.uploadnow.dev
admin.usdevsforhire.com
deleteaccount.vibelynk.com
vivahcreations.com
kuhna.vrteckolezija.si
wakadori-karuizawa.jp
alpha.new-backoffice.waylar.net
www.we4u.com.br
api-service-testing.wecovr.com
yottabytessolutions.com
www.zwirc.com
Other domains in certificate