Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=kalyanighodake.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 23, 2025
Valid Until
January 21, 2026
73 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DB:A5:8F:87:C2:7C:D4:55:2A:48:80:93:FD:C4:2B:9E:5B:62:94:47:06:39:F6:41:31:C2:70:B6:33:45:34:04
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
baroqueyachts.com
20.wavenet.be
afghanbooks.co.uk
www.alirtify.org
aminm.dev
andreaemme.it
choirpractice.awakening.systems
slink.baggett.info
bagru.in
backoffice.beepforhelp.nl
www.bewanderone.com
tools.bhaktisteps.com
www.boiledocean.ca
ccclin.tk
cec.ltd
stage3-payments.chaserhq.com
vendors.choicemusicevents.org
tostocoffee.clau.io
asa.leafnet.com.cy
siamexpress.com.sg
s-inquiry.daikin.com.vn
www.crisper-casmouse.com
www.cswa.com.au
www.curved.money
danielposthuma.com
newsletter.dddeurope.com
l.define.run
www.dosukoisakaba.com
crm.ecosystem.co.uk
emmaclevelandstudio.com
entrylabs.it
plant.fadhalshulhan.com
follicularlymphoma.figure1.com
technologies.fiyom.com
www.foodsteps.no
merchantbo.gamewalletuat.com
gearhows.com
hanakslr.com
bogdan-miriam.invito.link
auth.iwanna.camp
jeansuarez.com
kalyanighodake.com
panel.kamperynawynajem.pl
karthickbhojan.com
www.keithdesantis.net
keyton.com.br
kromes-backstube.de
www.kromes-backstube.de
leonari.dev
www.lqtm.net
www.ludotecasempresariales.cl
www.madalirecipes.com
priya-stores.madesh.in
www.mantraengenharia.com.br
matthewtory.com
stg.mrm.mbks.io
meaxinvestimentos.com.br
www.mechcart.com
staging.mediafinanciers.com
mijnbabydagboek.be
mlaw.ai
www.monstr-soft.com
app.moppasa.com
auth.dev.muuv.ai
www.myliteracycenter.org
demo.nextsong.live
nigithor.com
www.notreda.me
jagriti.gcect.org.in
order.preprod.jules-et-john.paymytable.com
pickpleresearch.com
pkl.bet
pokedexia.com
www.promag.in
payments.quickseat.co
www.quicktasks.app
ymay.requrv.io
appointment.revx.llc
ryuwellness.com
www.sageye.io
sandos.us
herzverein.selbsthilfe-bgld.at
www.svbway.nyc
www.targz.zip
www.tchabita.fr
www.techaeon.org
foods.terraquo.com
upload.themakersfair.pics
torihamilton.com
trainingsmagnet.com
www.tukeseafood.com
tienda-demo.verifico.co
vrc-lt.org
keybot.w3a.io
wccmcalendar.org
kujua.wezacare.org
www.wsheng.me
omni-science.xi-or.com
xploit.ltd
yuichi-sugiyama.com
Other domains in certificate