Open
Cached
·
just now
80/100
SECURITY SCORE
Certificate Information
Subject
CN=sw-pwa.tech-scheduler.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 21, 2025
Valid Until
December 20, 2025
39 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6C:93:A2:CC:48:45:C9:26:37:42:01:03:02:56:D6:7B:43:93:E7:EF:4B:A6:88:2C:CB:5D:2C:82:E6:42:B4:C2
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
app.machineworks.io
materials.abudiabshawarma.com
web2020-development.ack.ee
ahmedelhalabi.com
ampconceptsllc.com
app.appsaufrezept.com
asapstaffingservices.com
baebae.app
parisvolley.deeplinks.bfansports.com
breakforthtech.in
budgetforecast.app
links.civik.ca
www.clouddest.com
code-connect.org
dev.mrdiamond.com.tw
test.mrdiamond.com.tw
conarcholding.com
convene.co
www.corporacionlucidez.com
share.currencymarket.app
www.datadrought.com
www.denizgun.se
devadath.co
www.emilyandanuj.com
firewerkzapp.com
flareaviation.app
forexwin.co
gps.fupo.app
console.fyne.ai
basketballstars.games235.com
betpoint.gestordelocales.com
getplaytime.app
www.hebraicway.com
hexchain.org
hippona.pl
verify.huuk.social
ambulans-vasternorrland.infosynk.se
claim.instaprotection.sg
iofellowship.org
jksatyacareers.in
jmlr.es
julioorellana.cl
khanhvynguyen.com
lawnscape.io
link.rugby
fire.mandala.digital
maxgrant.com.au
www.mcuinorder.com
www.ngl.lol
novuscomm.in
greenify.oasisfeng.com
omdroptaxi.in
app.orundata.com
www.ourhealthdao.com
paloaltoturismo.com
www.paradoxfoods.com
iscrizioni.pienissimo.com
www.pixxibook.com
polied.com
promochilemat.cl
www.ramses.dev
pipelines.reveliolabs.com
rmenezes.me
connect-ng-asset-management.rxoconnectint.rxo.com
saasyinc.com
www.sahp.fi
admin.satsy.com
sharpeoptimizer.com
shopeg.in
staging.showitbig.com
member.simamat.id
www.simpleclub.mx
sitsalab.com
www.softbiz.net
sollarpaulistanoimoveis.com.br
sompurasamaj.org
soulspring.xyz
madurai.ssddroptaxi.in
sivaganga.ssddroptaxi.in
thanjavur.ssddroptaxi.in
tirupati.ssddroptaxi.in
conduit.suyash.io
konsern-app.svenn.com
bodamanciafunes.swanmoments.net
bodareyesmaldonado.swanmoments.net
seedsale.swarajcoin.com
app.swidoc.ch
teacherme.me
www.team-escape.ch
sw-pwa.tech-scheduler.com
thednaproject.org
www.todaytaste.com
www.trevorfulham.com
trukhanoff.blog
app.vitaellis.nl
recipes.vrozsa.com
webdevaas.com
teacher.xqmath.com
www.youmustbemistaken.com
www.znapplus.com
Other domains in certificate