77/100 SECURITY SCORE

Certificate Information

Subject
CN=o-m-o.fr
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
April 23, 2026
Valid Until
July 22, 2026 82 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F5:01:3E:BD:28:DB:0B:29:1D:67:A6:10:62:FD:65:52:94:42:58:67:8C:9D:73:85:DE:B2:14:EF:38:A1:D0:9F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
auth.lostplaces.nl

Other domains in certificate

www.abdurrahman.pk
www.adeka.id
www.ahhoi-ecom.com
aiventure01.com
halloween.alexis-soto.com
eastwest.alpinemedia.com
bloomprint.aqutoqo.com
autovalor.pt
op.avaami.com
qr.blgfx.com
auth.zenith.blindblues.com
beta.brusketa.app
budalab.es
hikmah.caravanflow.com
centrodeconciliacionfym.com
circlet.jp
stg-app.commandeer.rocks
cool-as-a-cucumber.com
custr.co
www.danpride.com
links.dbhids.org
smart-tech.digigoat.app
www.dlsoftwareindia.com
lotusia.dsinstruments.fr
endurancehorses.com
myskypark.equiem.mobi
extensionesmm.mx
www.ffbjudo4you.be
focusrusher.lat
qms.gies.com.au
giovanatessaro.com.br
gnowbe.com
gopensieve.com
test.gowithsoo.com
auth.granthub.ca
greyspacenetwork.com
guestin.gr
ibisco.net
idiawisdom.com
janetnelsonbooks.com
www.jmma22.com.br
jonaley.com
kameringenk.be
karmigo.co
www.kingdomboxingnz.com
kinstaremp.com
laneconductor.com www.laneconductor.com
lauroslabs.com
app.lawmanager.app
staging-files.layer.team
lineage-m-collection-filter.store
livelinebet.com
luchtkwaliteitinbeeld.nl
medlemstilbud.dk
mortgage.mouthbreather.com
myshamarketing.ae
naruvia.net
www.natcommerce.net
neba.cafe
test.nextaqua.in
nila.digital
noderail.org
nspire.ai
o-m-o.fr
pachiraglobal.com.ng
www.pallettowncards.com
unisplit.playneer-kids.com
admin-test.pneusys.cz
app.prime-massage.com
primecommllc.com
post-scarcity.prismism.com
listen.procedural.audio
www.app.proscalar-go.com
konkursy-sandbox.przepisyjoli.com
links.pxing.design
qroke.org
www.rcadigitalsolutions.com
www.rcadigitalsolutions.com.au
robertmwaniki.com
fireworks.search-maps.com
sheihu.eu
games.skota.in
smartnote.co.za
smdigital.ca
sportfan.ro
dev.tbn.co.th
www.tech-japan.jp
spanext.telemedicine-germany.net
annotator.tiro.io
auth.treintijden-app.nl
historia.turecurso.shop
www.vitalis-r.com
dr.vria.site
staff.walnutcreekpub.com
waybebooks.com
waybestaffing.com
wirralhomephysio.co.uk
wifi.zianachahrazad.com