SSL Verification Bypassed

The server's SSL certificate could not be verified. The analysis was completed using insecure mode. Data may be less reliable.

Reason:

Expired Certificate - the server's certificate has expired

62/100 SECURITY SCORE

Certificate Information

Subject
CN=bobbysmile.org
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
April 18, 2025
Valid Until
July 17, 2025 Expired
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
31:12:12:AB:D0:88:F7:B1:F9:8E:98:F3:BF:FA:34:D7:53:4A:67:C8:91:AB:A9:DD:21:48:62:66:C3:42:C9:9C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
beta.flightgauge.com

Other domains in certificate

11521893.peerly.app
www.accelefreight.com
www.akhmatovafilm.com
f.alexy.moe
flora.algoritmo.lat
www.alytosinc.com
aptfi-edu.com
time-clock.ayautakg.page
betty.social
www.binarybrust.com
bobbysmile.org
kaching.boldgames.io
boxtagapp.com
gimsadmin.btgzim.com
link.celebhere.com
paradise.cenminds.com
qa.clivi.com.mx
app.yummy.co.id
mybiz-dev.colorado.gov
marketplace.continentgame.com
encontrador.contramuro.com
esxx.contrato.ws
test.correctpropertytax.com
crmthermoply.com
crossroadscenterfrederick.com
dariakurdyukova.com
link.demeter.fun
devprompts.ai
dlg.app
fb.doctolib.com
monitor.drafter.mx
avanza.estudio.app
www.everydaypoem.app
favourfelix.com
www.faypearcedesigns.uk
www.findeck.link
flow-flow-flow.com
link-dev.fondeadora.app
frankuhal.xyz
app.geco.ai
app.gkagloria.id
www.guildofpitmasters.com
hcsplus.org
hotcryo.com
www.imreboersma.nl
www.infame.in
it2learn.dk
www.joaoferreira.dev
deeplink.dev.merchant.juxapp.co.uk
www.karasuma-factory.com
web.keypify.com
www.laurakominek.com
leita.app
lestudio.pw
awa.lithodomos.com
localiz4you.fr
meme.maho.studio
qa-app.markone.work
proveedor.mazi.mx
mod1.fr
sistema.mrcasolar.com.br
muastudio.pl
app.mustsrl.com
sort.nisargshah.dev
app.orderease.show
parmartechnologies.com
www.petsdatalab.com
redirect.photier.com
www.pigment.ninja
www.pollosbueno.com
prepareu.com
www.processing-fan.com
enterprise.profylecard.com
www.radixweb.com
www.sandlab.xyz
staging.scouthub.app
login-qa.skykit.com
slatkebrige.eu
www.slickwine.uk
portal.snaptab.ch
users.somenu.digital
www.spindrops.org
tacode.dev
thegoldstones.uk
tunystech.com
aruna.turnosweb.app
www.tweetyai.com
app.personalizatucorreo.uc3m.es
neues-official.umishun.com
vavi.hu
app-t.vemely.com
www.vinosperonistas.ar
vtpdev.com
kontaktier.wanke.jetzt
www.webleast.com
img-resizer.wunderkind.co
xcloc.com
paints.yinglets.online
zimmerlogistics.org