Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=auth-qa.repeat.gg
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 08, 2025
Valid Until
January 06, 2026
47 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A0:34:FC:AE:C9:B2:7F:64:C4:DA:28:57:01:7C:1E:D9:2C:F1:9E:44:0B:C7:6E:81:6B:D6:FB:CF:3B:B3:D1:ED
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
aumthenticus.com
dd.010pixel.com
dev.feasibility.catalytic.28east.co.za
aaronwolf.dev
accessinternationalwork.com
accounts.adaptivedev.in
menorah.aiira.co
www.akut.jobs
www.amayapainting.ca
links.amro.tech
teleconf.astronautlabs.com
atalas.net
static.atomist.com
axel-order.com
doc.b-st.jp
admin-staging.be-hookd.com
www.brokerfixer.com
www.candkcarrental.com
www.chess-rostov.ru
cliffw.com
cedartreestudio.multiconnect.com.hk
consoleone.ai
coolplay.io
bestellen.demgrill47-nottuln.de
dimileeh.com
diwaskc.com
instructor.dkprelearn.in
doublecheck.studio
secure.echo-lake.org
app.effiway.com
www.eventsethiopia.com
fastdelta.com
scheduler.api-dev.fielder.one
flukejs.com
v3.getdex.com
www.getroadie.app
giobs.app
harimauabroad.com
healthbeyondborder.com
hegemony.jp
herbolisticarequipa.pe
honyaku.ai
live.icreatorconference.com
www.initthoughts.com
cloud.insightech.com
www.jarrak.com.au
poke.ju.studio
juguemosbingo.com
dev.katvinder.nl
ugm-predev.klarway.com
login.l-customer.com
www.lillawingendorf.hu
linkpad.bio
lnr.com.ar
app.lumix.ai
www.madraswash.com
app.mikan.com
milkcoolers.com
app.ministrary.com
www.minmal.tools
www.minnmini.com
motocarguero.com
app.mylegaleinstein.com
apollo.noelmiller.us
www.nzclaim.com
www.oldeckert.com
demo.oliveplus.cl
shop.oyedesi.in
burgerbuilder.phunh.com
turn-life-on-form.piaget.com
discover.pieces.app
product.careers
auth.projectmarketplace.live
www.qiyfoundation.org
recordx.co
www.rehabengineering.com
auth-qa.repeat.gg
www.sakinaskitchen.com
www.sarakaraga.com
uat.demo.members.sargon.com
www.schoolsuccessproject.com
shootzup.com
www.shopthepost.xyz
triviawinterhawks.sqwadhq.com
www.sskies.co
stleam.com
ml.systemdesign.no
www.tdtscholarship.org
team-lothe.com
exhart.tradedash.app
turkstartup.com
download.typefood.jp
robinai.uppatop.com
venfye.com
wanderingwithwattle.com
weibarlab.com
app.wellnest.co
www.westshorelakeclub.com
www.wharft.app
verwalter.woonig.app
Other domains in certificate