Open
Cached
·
just now
88/100
SECURITY SCORE
Certificate Information
Subject
CN=shop.tedxriga.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 27, 2025
Valid Until
February 25, 2026
84 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DC:BF:0A:25:FD:46:62:4B:55:7D:89:8C:56:58:A0:C7:79:09:49:84:48:53:6C:D1:68:43:BE:95:20:29:63:EE
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Good
max-age=31536000; includeSubDomains
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
no-referrer
Permissions-Policy
Missing
Not configured
Recommendations
- • Consider adding 'preload' to HSTS for maximum security
- • Add Content-Security-Policy header to prevent XSS attacks
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
bfi.org.uk
www.aiqrix.com
sso.airreading.com
admin.alpop.com.br
alpop.com.br
www.arthaus.site
alg.uat.bankabc.me
data-visualizations.barisozcetin.me
staging.batterylearning.com
www.bearbearandbunny.com
blendiqo.com
app.bonealimentos.com
admin-order.bookinggood.net
metrics.brightwrite-staging.com
test.calendr.it
calvinkoch.ch
preview.canalsidecoach.app
www.carlosmello.work
app.carpsa.co.za
decodeinstallations.com
deepscoring.com
app.diglot.ai
dev.dkmemorial.in
admin.durin.co
dynaree.com
editionsgrandschamps.fr
l.eirinc.jp
eksonic.com
eratechnologyservices.com
ref.eremit.com.au
gen3.escea.com
app.everette.io
fltraining.es
gaming.frerestoque.fr
athena.frontiergroup.info
fyrestack.com
www.hair-nice.fr
hanryuspa.com
www.haveandhold.app
hollinc.store
www.hontru.com
painel.horizoncontent.com.br
hyperjournal.info
formulir.indonesiana.tv
inouz.fr
www.integraone.ca
kairos-compass.com
kinni.eu
www.kinni.eu
www.leaguelife.net
nabokos.lion-and-bear.de
ats.livve.io
m.londonbuspal.co.uk
lovemealapp.com
gethido.marchewczyk.eu
memoboard.org
mandala.metodocharlie.com
www.motolabskenya.com
khurkot.nepaldrivinglicense.site
www.noryan.com.mx
dev.numicircular.com
scd-uat.order.place
www.paulbuchan.com
www.petteriranto.com
app.pixipie.com
www.pluskarla.org
www.primevlsi.in
www.puyogo.app
www.qrcodereader.app
rudiqtech.co.uk
beta.seedtospoon.net
www.sensoryapparel.in
sequencity.xyz
sololo.app
www.sortedbranding.com
ajuda.squidit.com.br
www.stamconference.com
demo.sushilkaran.me
cloud.t-con.co.uk
tapx.me
control.taxivery.mx
www.tedsamaha.com
shop.tedxriga.com
www.toejambacklot.com
tpmap-fragile-dev.tpmap.xyz
trivias.com.mx
fbentrenamiento.turnosweb.app
www.vapecentralsupply.co.uk
vedikfoodscr.com
silicon.velorum.games
ihospital.vilnek.in
johnsoncontrols-ontour.virtual-brand.space
www.vusic.in
www.watoji.jp
www.worksheetworkshop.com
www.wvhospital-settlement.com
trackr.yadobee.com
yog-qa.yds.org
demo.yub.pe
www.zenalytics.org
Other domains in certificate