Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.lostfocus.org
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 24, 2025
Valid Until
January 22, 2026 61 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DA:2E:D4:08:54:FE:FE:A8:F1:90:5C:24:47:37:3B:40:7D:39:A7:4B:B5:16:E0:AA:A6:A3:0C:02:69:BA:EA:A1
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
auth.luca-ai.app

Other domains in certificate

appmyab.abenergie.it
staging.imo.admaren.org
alexhsia.com
apnax.net
sigma.kinderopvang.appdashboard.nl
bernardobernal.com
bitcoin.house
client.bobcoin.cash
business.buksa.app
shop.bularis.com
camerabreaker.in
www.inforsys.co.id
www.comiccon.co.il
cruzocare.co.in
3telsolarenergy.com.sg
www.ctc-bc.com
cuddlykaijuhq.com
didiform.com
mcvac.erdostracks.com
esf.pt
micentro.estetical.es
tallerdechapa.fanductsl.com
console.mimi.fd.ai
featherfever.com
www.filipebarroso.dev
www.fomo-tv.com
dev.forcespike.com
www.foreverperez.com
mail.cabanacraft.frontfacer.com
gowtix.es
hunterfashion.store
s.jsg-hainbach.de
sn.khalidvpn.top
thoothukkudi.kishoredroptaxi.com virudhunagar.kishoredroptaxi.com
stickynote-totalling.kodomo-suite.jp
kunjumanikkamhairoil.com
lakesosteo.co.nz
staging.leadertrip.org
lepotier.eu
www.lostfocus.org
lyonsfamilyeyecare.com
manbropharma.com
bartsedu.partners.medics.academy
melonh.at
portfolio.michaelandersondev.au
new.miri-graphic.com
stage.morenft.io
mrhollander.com
munae.fitness
museostoricoroccamonfina.com
roadmap.mynu.life
myonus.io
neverending.games
nimcheck.org
staging.log.nival.me
app.oasisazul.com.br
www.oleschool.org
paineldecontrole.onlypromo.com.br
www.ossbot.computer
www.parkaidpharmacy.com
peblet.be
www.plomberiepeltier.fr
elba.pootheriproperties.in
powerplustips.fr
api.premiomayorcr.com
promobell.com.br
propertyservicesexchange.com
www.rdservicess.com
repartizare.rusudinu.ro
www.septacode.com
shop-assistance.com
smartaf.nl
a.sonicbroom.ca
sorichat.com
g-old.soumyak4.in
srsdigitalzone.in
admin.tablz.com
tak-jim-to-rekni.cz
teamparkerracing.com
app.tentanganak.id
themayan.space
dev.daysix.thetraumaapp.com
www.timeandplace.app
tmw.rip
mayoristas.topwhite.com.ar
api.twinbuild.com
workroom-staging.typex.kr
unfussy.org
www.vastracare.com
resellerintegratormarkeingpackage.videoteldigital.com
www.vtes.global
www.wadzoo.com
signwaiver.waivepro.com
share.staging.web.support
caoyao.xiaoyifei.com
blackrock.xlntapps.com
www.yrsa.dev
alumnidatabase.zachphelps.com