Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.bolel.dev
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 11, 2025
Valid Until
February 10, 2026
46 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
09:A3:6E:21:4F:A1:F1:4E:CD:BF:0A:81:4F:E1:4E:64:FE:B3:EE:23:AD:56:BC:E0:9D:4F:0D:01:AA:65:9B:68
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
apra.sncr.dev
abrilcarlos.com
api.app.activaenergia.com
adorjanwilliger.com
antoinegallois.com
api.apexanatomy.app
apprephub.com
asurrobotics.in
www.benalum.com.ar
betzy.in
www.betzy.in
data.bimedoc.com
blackstarlegal.org
bmw-m5.online
www.bolel.dev
bommahallimahakumbhabhishekam.site
www.bunchee.dev
app.chappipay.com
chkcal.com
app.cnbctv18.com
runnables.co.th
dev-admin.collegiatex.com
labchan.com.np
www.tsis.com.tr
www.confeccionesmaures.cl
copenmama.com
cpapp.me
cyclopsdefense.com
ets.damianbas.nl
admin-dev.deeddelivery.com
dongcoin.fun
www.e-filetransfer.com
e-works2017.com
emdientlab.com
fitinsights.net
assets.forthepeople.ai
gext.it
pay.sandbox.example009.gr4vy.app
buss.grevling.dev
helpfl.au
japanese47.id.vn
painapuru.id.vn
www.independo.cloud
iru.bg
tenant.jorato.com
keter.cloud
dhouha.khaldi.dev
komtilkort.no
lagoon360restaurant.com
inqba.lapieza.io
www.lensevents.co.uk
lesud.ca
lexandtechconsulting.in
globalshowcase.livebusinessupdate.com
dyn-prc.ltl-xpo.com
www.miloszsokolowski.com
www.mizu.mx
momanddadbank.com
app.moonrise.com
app.msbauheld.de
admin.mssdev.works
admin.myminnievacay.com
mysweethotel.eu
www.nickmarinelli.ca
monportail-dev.noticia.ca
peacefuljson.com
f003.petclinicbooking.com
peterhelstrom.com
mobile.picturepairs.com
calci.plasito.com
pro-5.de
proof.projectboek.nl
qrosshatch.com
reallyrenewable.co.uk
rooibosfusion.com
www.rozwebsolution.co.uk
test-taller.servicetececuador.com
shamstailors.in
shieldtune.com
www.shinganprinters.in
tickets.sjc.co.za
observer.socratesdata.com
www.sos.blue
soumalya.in
www.start-react-native.dev
stempl-app.de
stevenharford.com
generator.studygazelle.com
techrisedti.org
ar.thebetaverse.uk
www.thedrunkweb.com
freelibrary.vandlee.com
whatsub.co
fluttercicd.wonkytech.net
worldsgreateststory.com
landing-dev.xpersity.co
f15246eb6de148b2834a4ff724cf8148.yotepya.com
signup.zedify.app
zeropls.com
hayztack.znapz.net
Other domains in certificate