77/100 SECURITY SCORE

Certificate Information

Subject
CN=app.interbono.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 18, 2025
Valid Until
March 18, 2026 86 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2C:00:E6:6A:31:08:D9:E5:F3:D5:3F:FF:92:69:E7:B3:BA:01:85:EF:90:D0:1B:70:57:3D:11:61:1E:3B:D6:F9
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
app.scr-bayreuth.de

Other domains in certificate

actifgym.com
mijn.adminta.nl
member.aibiz.id
www.akademianiechorowania.pl
www.anthillsolutions.net
apconsultingtax.it
areyoutrader.com
arkil.studio
babyloncity.online
invoice.bookaid.be
www.ludo.boomhunk.com
run.brooklynmarathon.com
checkmarkacadademy.shop
chefedodia.com.br
www.colinterry.me
conferonline.co.nz
www.conversyai.com
daffodilsmodelschool.in
designhive-group.com
designhive.ae
devicapluess.ch
www.doveguardarlo.it
app.dynamicroadmap.com
ncr.ehryourway.com
epoch.build
snycat.eu.org
www.facturx-facile.fr
flat6a.co.uk www.flat6a.co.uk
app.fleetseer.com
www.fondsundmensch.com
promotion.francispradel.fr
www.geldwissen2go.de
geoffspielman.com
geonumismatica.es
getaglobalconsulting.com
admin-api.getcubo.com
getjayde.com
gipltda.com
www.glingtech.com
restream.gostream.vn
www.guydecoration.fr
haileamlak.tech
handpokemon.com
huygensoft.com
app.interbono.com
www.jdfenergiasolar.com.br
kfcratsex.com
www.krovus.com
linkinfaith.com
loc8ly.com
logefacile.com
martu-gymon.pl
md-apps.medallia.com
mercan.life
www.minisuku.com
www.minusthenegative.com
mobileempires.com.br
mollychacon.es
multiwordle.org
connect.myplayer.io
naeembux.com
nexaglobal.capital
nistha.org
nokmosis.net
oneclub.backstage.oneclass.vn
onlyclassyporn.com
admin.pallagialla.com
promptgallery.in
psychologrogowska.be
rahasoko.com
www.ravillamed.com
reliableinclusiveskilledu.in
test.resolved.social
rocks-rocks-rocks-rocks-rocks-rocks-rocks-rocks-rocks.rocks
sinetic.mn
smartmarketingcloud.com
softconcapital.in
www.solidaritybookproject.org
souki.me
messenger.stable.codes
www.studentloanstudy.uk
bodareyesvalle.swanmoments.lat
talentconnect.it
dungeon.tbremer.com
teamfisk.net
www.textflow.live
theartofbraces.com
www.thetida.eu
urenregistratie.net
vadelab.com www.vadelab.com
vendorgatesolutions.com
admintool-dev.verveoffice.dev
vibeflowapp.com.br
whattimeisitintarkovrightnow.com
wonmove.com
www.xtensiv.io
www.zotasys.com.br