Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=virtualevent.kaosalondivision.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 20, 2025
Valid Until
March 20, 2026
84 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E0:FB:22:9F:1C:90:65:4F:F9:52:3D:E4:99:2B:26:74:3E:14:A4:5D:5A:A7:D6:E6:56:58:FF:63:9F:48:C2:2B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
app.tuumradio.com
accesscs.org
amooto.in
www.andresenapiaries.ca
aumarche.net
client-dev.beamylabs.com
einhorn.bezahl.de
auth.biyu.fr
artists.bpm.app
www.bucklerash.co.uk
www.burnoutapp.be
bymitta.nl
test.carlosalonsofisioterapia.es
carpetmasters.co
www.ccsonline.app
game.clubcrayon.com
clubescuelasolidaria.org
destinations2019.mako.co.il
boon.com.hk
madakiproperties.com.ng
cutlassware.com
day4u.in
stage.dd.zone
links-staging.delori.io
app.diagrammarois.gr
wofe.divarch.com
dontflywizzair.com
panel.queue.e-ceos.com.br
rsc-link.ehubstar.com
www.findafh.org
fosterphi.in
geeft.io
gestoriaknk.es
www.growtovchani.com
www.grtfl.io
gsvd.si
guriguri.net
guvenckardas.com
www.hernandezrentalsllc.com
hexreviews.co.uk
www.icoriha.com
www.imaadjunaidi.com
www.jasonyounan.com
jeremyfossette.fr
kalektar.org
virtualevent.kaosalondivision.com
demo.komon.es
wa.malvre.com
www.mcs-specialist.com
meddelivery.in
controle-dev.mobilizei.com.br
mosahay.info
gtc.mstubbs.net
www.mytherapeasy.com
staging.support.nival.me
admin-web-dev.loud.odd-no.tech
app.onfat.cy
osadchy.pro
www.psypack.com
www.pulsarenergy.com
quantalytics-ai.com
quickfuel.shop
receiptstory.ru
campaign.rideshimano.com
rktsim.com.br
ryannovas.com
door.samweaver.com
satyaki.dev
saynotobugs.org
www.serori.org
shikoinu.de
sso.shoegeeks.in
link.sikkaapp.in
app.siteinfinite.com
www.skeptonomics.com
z6dhib7lisp7hkfvz2tq.smartimob.io
staging.stockrepublic.net
staging.admin.storagepug.com
kumamoto2.tabingo.com
kumamoto5.tabingo.com
www.admin.shadow.terrific.live
www.thaigai.app
bookings.theasiacollective.com
links.thebitcoincompany.com
thecoffice.se
www.thrivepediatricspeech.com
thuykieu0706.online
tourasia.travel
tuggar.com
ajans-tema-1.ultof.com
unitysworkshop.com
www.unyleague.com
friendfeed.urbansheep.com
www.vavvyox.com
waotools.com
www.hr.wedevelop.me
whento.info
winnay.com
xenotive.com
yourdreamjobinaustralia.com
Other domains in certificate