77/100 SECURITY SCORE

Certificate Information

Subject
CN=api.idhammar.se
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 10, 2025
Valid Until
January 08, 2026 55 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BB:7F:7B:A8:99:B0:EF:C2:59:07:2B:97:3A:58:10:3B:65:D1:D0:84:C1:EC:8F:7D:8C:48:71:53:3A:54:2E:0C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
app.mazury-trans.pl

Other domains in certificate

app.24duty.se
allied.3diq.com
acuitye.com
alspice.net
apero.team
auth.firebase.eduardocamillo.appmembers.com.br
test1.araras.tv
admin.aybinmobiliaria.com
banangary.com
www.clzns.co
www.villonot.co.il
www.storyket.co.kr
app.cookids.kr
app.corq.studio
pdxdev.cubeapps.com.br
damienprocaccino.dev
drixylabs.com
auth2.eauclairepartners.com
billing-enkept.edzag.com feedback-enkept.edzag.com
elinutri.es
shukobuild.guide.payment.energy-gateway.co.jp
www.etherealframe.com
www.fanmio.com
gustaf.flowup.cz
flutterwebbuilder.com
flyingshuttle.it
us.foodmenu.world
www.friendstravelsolutions.com
futurejazz.com
www.fyerapps.com
gr8rsmsmanager.com
web.haxorai.com
www.development.homegrowngardener.io
honsw.eu
hullsd.com
api.idhammar.se
via-stage-2.ischoolconnect.com
jacob-miller.com www.jacob-miller.com
japan-dojo.com
rmsadmin.jeebly.com
jonjeung.com
about.juanguarin.com
links.kingdomrushorigins.com
koscher.ch
karl.kurzer.de
lolabs.info
www.lolesportsreminder.com
chat.longbay.se
parentu.lubbockisd.org
qa.masjidtech.org
massageclick.com
grp.mediabracket.com
mfinfotechservices.com
app.us.minga.io
monetissa.com
planetside.mononz.com
www.mwork.biz
nem3calculator.com
newworld-lfg.com
nizamyap.com
number1mart.com
nuvemdealgodaomagica.com.br
links.backen.development.oetker.digital
dashboard.openbasin.io
k.ozonehl.com
www.pendulumsession.com
ml.pharsight.xyz
www.pizzamaniafuengirola.com
backoffice.sorba2.qmnet.se
raapchikgames.com
app2.raveretailer.com
investorportal.raxfinance.nl
hbsmng.removis.jp
restaurantechinooriental.com
viewer.restomax.com
richardscruggs.com
rincell.com
rohitjbhandarii.com
www.shinebros.ca
silmarillabs.com
beta.skilletworks.com
www.sonorapromocion.mx
strattonupper.com
share.sunshine-live.de
t369token.com
tarikhiran.com
app-stage.the-talent-accelerator.com
www.thepourpro.com
www.top-price.ru
api.nofi.tret.jp
truckload.in
www.turiyarenovaveis.com.br
www.vbscores.com
www.vinkoll.se
app.weareilluminaughty.com
wrenby.com
presi.zweispace.com