Open
Cached
·
just now
80/100
SECURITY SCORE
Certificate Information
Subject
CN=savethedate.vamsiambati.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 02, 2025
Valid Until
March 02, 2026
85 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2B:88:EF:78:16:CC:34:A6:8D:C4:61:3C:8F:42:12:5B:AF:C9:10:25:79:1F:3F:88:74:4B:77:C0:E0:80:BB:44
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Basic
script-src; object-src; base-uri; +3 more
script-src 'report-sample' 'nonce-W6mAexUgK4vFFI4vOufEkg' 'unsafe-inline';object-src 'none';base-uri 'self';report-uri /_/DurableDeepLinkUi/cspreport;worker-src 'self',require-trusted-types-for 'script';report-uri /_/DurableDeepLinkUi/cspreport
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Present
ch-ua-arch=*, ch-ua-bitness=*, ch-ua-full-version=*, ch-ua-full-version-list=*, ch-ua-model=*, ch-ua-wow64=*, ch-ua-form-factors=*, ch-ua-platform=*, ch-ua-platform-version=*
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
app.smartspend.net
share.7aderapp.com
www.ablejapan.co.jp
au.foresight.adgile.media
approvals.antibiogo.org
mail-assets.appointer.com
www.badmintonpal.com
banerjeerishi.com
software.bicg.com
sell.storybook.bidscape.com
biteus.pl
www.web2app.botify.ai
bouilland.net
casttech.bracelit.es
www.bruxton.com
campagapevt.org
m.cbh.care
fmx.cintoia.com
portal.cloudhexa.com.au
startkorea.co.kr
smartcity.cochabamba.bo
auth.ksong.com.tw
www.comichaiku.com
oracle.connectorzzz.com
cnxoutcomes.connexia.com
www.consulbench.com
atualizador.datanorte.com.br
www.davits.page
dessertnyc.net
dewald.app
app.drmacmandalay.com
auth.earpulse.co
easy-spesa.it
madina.edusystem.co.za
www.elmro.se
eod-now.com
facturemaroc.com
fallah-est.com
feriavirtualtigo.com
app.fiffit.com
fintectm.com
auth.flysafe.pro
app.folio.finance
view.getboostar.com
plataforma.congresoson.gob.mx
www.hecareswecare.org
nguyenxuanbach20225259.id.vn
www.intuitiva.io
advisor-kpl-stage-6.ischoolconnect.com
www.isteuerkindschonda.de
www.joeladamsphotography.com
juulsgaard.io
kaewkwanpetshop.com
kalinowewzgorza.pl
app.karatesnap.com
api-debug.landskies.com
lestourneesdesproducteurs.fr
www.letsmakeloot.com
sgo.liche.cl
lish-eikaiwa.com
lussosolare.com
page.makestar.co
www.marstech.click
gm-screen.matthewbickell.co.uk
cms.staging.medicalmotion.de
evaluate.ttmh.mobilitymojo.com
www.mortgage-simulator.com
motf.org
admin.movel.no
nextstepgames.net
booking.nikacurly.com
lnk.nolan.wiki
mathzombie.nonip.net
www.orzeszek.org
www.owlsector.com
www.pantheon.com.ar
peakdieselservices.com.au
pianolessonsyork.co.uk
woodland.portfoliolink.co.za
apps.ragdoll.sh
repsketch.com
shortlink.rutgon.me
sandilovestom.com
immured.shaman.land
www.sharmahospitaljandiala.com
auth.staging.shimejis.xyz
view.soft.events
web.speedsolution24h.com
verkkokauppa.stella.fi
storywise.app
www.streetjokers.gr
www.strmsapp.com
partner.supergenerous.com
thankingteachers.org
app.tonioloimoveis.com.br
underscoredesign.com
savethedate.vamsiambati.com
dashboard.vsight.io
wandb.ml
app.yamnam.com
Other domains in certificate