77/100 SECURITY SCORE

Certificate Information

Subject
CN=filesmesh.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
May 06, 2026
Valid Until
August 04, 2026 85 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
76:6B:D4:94:BF:2C:AE:87:9C:2A:FF:CF:CA:0E:29:C9:CF:3A:5D:FF:AA:29:C2:64:E0:F8:FB:11:68:FC:CD:A8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
auth.opendossard.com

Other domains in certificate

121servicesltd.com
aig-demo.affinity.do
rec.alaaezzat-hospital.com
www.alawrancebrown.com
aryanchaudhary.com
app.ascend.fit
ashusharma.net
asicmthailand.com
askconsulting.co.in
www.atlas7.net
auto-bosch-gtp.com
archive.avastars.io
www.bcredstars.com
www.bhaktiverse.com
www.bob.watch
bortlikpt.pl
www.certgenerate.com
chriseugenerodriguez.com
bocasparadiserest.clau.io
www.cleverjester.com
codesquadsolutions.com
www.darrenchg.com
brain.dissect360.com
driveyourcarhome.com
staging.enklakassan.nu
demo.enterlive.mx
equestrian-industries.com
filesmesh.com
www.flawsome.ink
gccsaudi.com
getxfilter.com
heed.icu
helloargus.com
go.heyyou.me
image0.dev
www.infleety.com
istashar.com
jidokasourcing.com
chordo.joesteccato.com
josvai.com
www.launchbelly.com
lesdadallamot.hu
www.livingstonbrokerage.com
estudios.loup.cl
loversheartmap.com
tyc-not-admin.lsceco.cloud
andrew.makeacircle.org
marcellpetras.xyz
discover.marzi.life
ofis.masterplas.com.tr
app.replyreach.mharith.me
minhhn2417253.id.vn
myrepairer.co.za
mytvplus.ca
www.netxsoft.com
neutraxcorporation.com
odeliaalon.com
onedroptaxi.in
orderopt.com
www.oyreppusaimaa.fi
phantomlightdesigns.com
bestellen.pizzeriagusto-wachtendonk.de
polustechnology.com
www.pracowniadp.pl
proofly-shopify.com
landing.propgoal.com.au
purely-app.net
www.ramblinstories.com
internship.rapazp.ch
www.resbool.com
rigakayaking.lv
pokerplanning.rodserver.fr
yatadabbaroon.rootsoft.dev
staging.routesixtysips.com
rudratransline.in
screenwraiter.com
app.selfanalysis.jp
www.signlogistics.in
www.skyfocuscapital.com
www.skyms.co.kr
skyndr.com
starlingburgers.fr
www.statcounty.com
link.strikemetric.com
goto.sultonbek.uz
app.prism.swisper.ai
sytse.dev
talviron.com www.talviron.com
auth.thecreators.io
dev.vegmart.tradix.co.in
triox.in
got.tronx.work name.tronx.work
voracom.com
wallstreek.com
foodsensitivity95-report.yourgutmap.co.uk
youthcompassafrica.com
zenyourminds.com