Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=blueshifted.gorewood.games
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 03, 2026
Valid Until
April 03, 2026
79 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DF:81:3D:01:F3:7A:B1:29:CE:85:7F:B0:60:78:44:1D:96:86:2A:CE:D2:6E:20:61:AA:89:90:E4:BF:6D:C2:5B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
appdev.devcarteras.xyz
4hvnsk8.com
adaptapost.co.za
www.lrsa.adv.br
alcasart.com
silvandemo.shipfromstore.fpui.ameroservices.dk
amiresmaeeli.fr
ancurehealth.com
www.ancurehealth.com
annastolarska.art
appgeni.us
archigest.ma
ares-technologies.ca
www.baillies.co.za
resumail.becreato.com
www.belanutre.com.br
brisasaludybienestar.com
www.brisasaludybienestar.com
caldevillamotor.com
canaguide.app
www.cartco.in
www.lockstar24.co.il
www.quickvikalp.co.in
tripsim.co.kr
www.collegeroi.app
podatky-fop.com.ua
portal.curiousone.in
dde-nordest.ht
infotech.devnox.in
dsbjjcasper.com
earthtimesforestry.com
www.eduphile.in
gestione.elenaparvu.it
www.enzoft.se
www.faraei.cl
fcmi.online
finalatpl.com
auth.fintitles.com
mobile.for-petz.com
blueshifted.gorewood.games
www.greengoat.nl
helpinghands-community.com
admin.hiremebuddy.app
huy-facebook.itepduong202417234.id.vn
panchan.id.vn
evo.insights.com.co
intellaralabs.com
docs.dms.jayendra.in
kalamesh.com
account.lab900.be
landandwood.co.za
www.lovespiritgrowth.com
www.makeclearcopy.com
www.merveilleuse-events.be
missgpt.io
netcomserve.com
nexoratechnology.net
tools.nexusweber.in
opstina.studenti.org.rs
correctroute.orientpark.pl
osrodek-peruwianka.pl
palletrestaurante.com.br
staging.presentum.dev
app.projectives.net
queueup.in
echoes.redcoris.com
redeclickmais.com
qrscanner.app.rekhansh.com
rhymtriler.online
roshcompanylabs.com
secretsignal.app
stuflog.com
admin.testsetu.in
www.thomas-lorenz.eu
tr-iq.net
app.teste.tramite.com.br
uegrp.com
uniqlogic.xyz
www.uniqlogic.xyz
combatflow.vallsmest.re
vedadtermiz.com
venalcentroygana.com
auth.veritlyapp.com
vernimur.com
victorypoint.app
www.volleynerd.com
oyun.lisematematik.web.tr
www.weinv.buzz
woestehoogte15.nl
www.woestehoogte15.nl
www.wycofali.pl
yakisame.site
www.yaorui.bond
yonda.online
www.yorkieconstruction.com
www.yuwanglin.cyou
yuwanglin.cyou
app.zabi.co
www.zabi.co
taboo.zielona6.pl
Other domains in certificate