Open
Cached
·
just now
77/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=jeu.kawaa.co
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
April 27, 2026
Valid Until
July 26, 2026
85 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D8:C9:13:D8:D2:A3:FC:DB:75:A0:47:22:56:EA:BF:C4:82:AB:C9:0C:F1:67:A2:4A:8E:62:14:49:1A:C4:52:70
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
bajorauto.com
10xbooster.app
azek-bom-recipes-cert.3dcloud.io
app.3maples.ai
www.accintech.com
www.accordle.no
corea.alexpachon.com
alharamain.academy
altasegura.app
www.angele-event.fr
qaneo1.appshare.com.br
victoria.avalonwish.com
awefalafel.com
app.backofficesherpa.com
bevura.app
mobile.bizopsapp.com
www.brandonmle.com
busteniview.com
www.bytepic.dev
beta.parents.c360.org
livechat.callzz.com
www.cardapiocloud.com
chaobaby.clau.io
grupomaitodemo.clau.io
colemantrapp.com
coll.app
conduct.chat
coverly.io
www.cruzhacks.com
cupidmagic.com.br
czill.com.pl
www.deliversense.com
devwarex.com
agile.diebietse.com
diegoelcrack.es
dizzymoonprofile.com
kwisp.ebol.dev
interview.echoagent.io
dashboard.eeaser.com
envynailsandlasheshobart.com
everstone-universe.com
www.fantagt.it
www.foragemethis.com
neo.fringe.nl
buddy.ggian.gr
old.go2nft.io
staging.goo-deal.app
www.gradoid.com
mira-ai.grayscale-technologies.com
grupopaleco.com
helloaakash.com
hudsonansley.com
huntthenight.com
iaidometer.hu
iamgowtham.com
ikayatirim.com
ilahihealthcare.com
itroomsolutions.com
www.itroomsolutions.com
jivishika.in
jeu.kawaa.co
kvogames.com
dps-db.lecien.com
www.antojitos.lehem.org
levinacare.com
bestellen.mec-doener.de
metafront.tech
mindhalla.games
moodygen.site
motherbox.in
www.myminnievacay.com
www.n13.capital
www.nathanhensher.dev
officemk.biz
tech.optifarm.app
pickuick.com
www.pickuick.com
editor-stage.pixis.ai
helfin.portfolioview.co.za
auth.qquad.ai
qzzly.com
runjoke.com
secretsofthelamp.com
app.selfy.ai
shopdifferent.com
superadmin.smartpol.it
opac.smbtecampus.org
tednz.win
thepoolcleaners.co.za
www.tldr.coffee
toolry.dev
trinnoverse.com
api.demo.insights.umanni.com.br
umland.berlin
www.urbanproperties.in
devsilke.vev.design
www.info.voyobee.com
whyloop.tech
xlnk.dev
calibrate.yugadanavi.com
Other domains in certificate