Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=taad.dev
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 06, 2026
Valid Until
April 06, 2026
81 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1C:18:3F:99:FE:59:DB:61:73:51:01:D7:63:98:5F:5F:74:70:F9:74:AF:BF:12:3C:12:4D:B2:4A:21:1E:BB:5B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
app.validatefirst.ai
www.achadins.com.br
adwiseai.in
champions.afrahfitness.com
telemetry.agritechau.com
contentsynergy.aoneahsan.com
nexus.appito.com
saha-immo.arovainvest.com
ask-konsultan.com
beatops.in
litoral-comunicacao.biomo.com.br
www.bomaenergy.net
budostudio.co.za
calcolatoridelprofitto.com
camsaimscs.com
caraaj.com
casbu.mx
clinicaborboletaazul.com.br
clubconfession.com
vinurvv.co.in
www.gkkagri.co.in
collectivedefiance.org
crateos.ai
cristianepepearquitetura.com.br
ctvfarm.com
cybermakaka.com
www.deniskarpenko.ru
design-logis.com
www.design-logis.com
designretailco.com
dexmania.com
dexsyn.com
dignusproject.com.ar
dotoday.life
www.dzoaccess.es
iedc-ece.iem.edu.in
www.funclass.edu.vn
electricastrology.com
finnfilmnapok.hu
www.finnfilmnapok.hu
freecryptotools.org
freeimgeditor.com
frogconsult.com
fb-ctt.gestao-frotas.pt
getvouch.co.za
tr.catalog.helexhealthcare.com
igoevents.com
www.ionovo.be
jona-love-nico.com
julienregnier.fr
lavita-pizzeria.de
www.localbus.live
lunxtmedia.com
mlinshort.com
raihanmuzaffar.my.id
mybazarkhata.online
mygiftz.in
naalanda.ai
www.nation04.sg
needlove.cz
www.nitrya.com
nordjartemis.cloud
billing.oarol.com
www.pliconsulting.it
podplus.com.br
predictiontools.directory
resonantsearch.com
retailcouture.com
sahuaros.dev
school-ye.com
pokreg.seggev.xyz
senior2junior.online
www.shiro.et
www.shiroye.com
shoudo.xyz
solvius.co
cdn-calculator.sonicrocket.be
speedmocks.in
www.stantechsl.com
stay-gardenoasis.gr
stoneycreekpm.ca
taad.dev
frontendstage.winners-circle-eu.telekom.com
thebibleworld.org
theta90tech.com
app.topgeo.ai
evro.trayangle.com
tro-x.com
truyenma.store
unoindustry.dz
www.unoindustry.dz
valdatacloud.com
vandenberghsolutions.be
viking2917.com
www.vinikaico.com
viriya.education
anggi-helen.undanglah.web.id
xforge.app
zainandfathu.com
mgtiles.zanzibaba.com
Other domains in certificate