80/100 SECURITY SCORE

Certificate Information

Subject
CN=sw-pwa.tech-scheduler.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 21, 2025
Valid Until
December 20, 2025 39 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6C:93:A2:CC:48:45:C9:26:37:42:01:03:02:56:D6:7B:43:93:E7:EF:4B:A6:88:2C:CB:5D:2C:82:E6:42:B4:C2
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
app.machineworks.io

Other domains in certificate

materials.abudiabshawarma.com
web2020-development.ack.ee
ahmedelhalabi.com
ampconceptsllc.com
app.appsaufrezept.com
asapstaffingservices.com
baebae.app
parisvolley.deeplinks.bfansports.com
breakforthtech.in
budgetforecast.app
links.civik.ca
www.clouddest.com
code-connect.org
dev.mrdiamond.com.tw test.mrdiamond.com.tw
conarcholding.com
convene.co
www.corporacionlucidez.com
share.currencymarket.app
www.datadrought.com
www.denizgun.se
devadath.co
www.emilyandanuj.com
firewerkzapp.com
flareaviation.app
forexwin.co
gps.fupo.app
console.fyne.ai
basketballstars.games235.com
betpoint.gestordelocales.com
getplaytime.app
www.hebraicway.com
hexchain.org
hippona.pl
verify.huuk.social
ambulans-vasternorrland.infosynk.se
claim.instaprotection.sg
iofellowship.org
jksatyacareers.in
jmlr.es
julioorellana.cl
khanhvynguyen.com
lawnscape.io
link.rugby
fire.mandala.digital
maxgrant.com.au
www.mcuinorder.com
www.ngl.lol
novuscomm.in
greenify.oasisfeng.com
omdroptaxi.in
app.orundata.com
www.ourhealthdao.com
paloaltoturismo.com
www.paradoxfoods.com
iscrizioni.pienissimo.com
www.pixxibook.com
polied.com
promochilemat.cl
www.ramses.dev
pipelines.reveliolabs.com
rmenezes.me
connect-ng-asset-management.rxoconnectint.rxo.com
saasyinc.com
www.sahp.fi
admin.satsy.com
sharpeoptimizer.com
shopeg.in
staging.showitbig.com
member.simamat.id
www.simpleclub.mx
sitsalab.com
www.softbiz.net
sollarpaulistanoimoveis.com.br
sompurasamaj.org
soulspring.xyz
madurai.ssddroptaxi.in sivaganga.ssddroptaxi.in thanjavur.ssddroptaxi.in tirupati.ssddroptaxi.in
conduit.suyash.io
konsern-app.svenn.com
bodamanciafunes.swanmoments.net bodareyesmaldonado.swanmoments.net
seedsale.swarajcoin.com
app.swidoc.ch
teacherme.me
www.team-escape.ch
sw-pwa.tech-scheduler.com
thednaproject.org
www.todaytaste.com
www.trevorfulham.com
trukhanoff.blog
app.vitaellis.nl
recipes.vrozsa.com
webdevaas.com
teacher.xqmath.com
www.youmustbemistaken.com
www.znapplus.com