Open Cached · just now
88/100 SECURITY SCORE

Certificate Information

Subject
CN=shop.tedxriga.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 27, 2025
Valid Until
February 25, 2026 84 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DC:BF:0A:25:FD:46:62:4B:55:7D:89:8C:56:58:A0:C7:79:09:49:84:48:53:6C:D1:68:43:BE:95:20:29:63:EE
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Good
max-age=31536000; includeSubDomains
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
no-referrer
Permissions-Policy
Missing
Not configured
Recommendations
  • Consider adding 'preload' to HSTS for maximum security
  • Add Content-Security-Policy header to prevent XSS attacks
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
bfi.org.uk

Other domains in certificate

www.aiqrix.com
sso.airreading.com
admin.alpop.com.br alpop.com.br
www.arthaus.site
alg.uat.bankabc.me
data-visualizations.barisozcetin.me
staging.batterylearning.com
www.bearbearandbunny.com
blendiqo.com
app.bonealimentos.com
admin-order.bookinggood.net
metrics.brightwrite-staging.com
test.calendr.it
calvinkoch.ch
preview.canalsidecoach.app
www.carlosmello.work
app.carpsa.co.za
decodeinstallations.com
deepscoring.com
app.diglot.ai
dev.dkmemorial.in
admin.durin.co
dynaree.com
editionsgrandschamps.fr
l.eirinc.jp
eksonic.com
eratechnologyservices.com
ref.eremit.com.au
gen3.escea.com
app.everette.io
fltraining.es
gaming.frerestoque.fr
athena.frontiergroup.info
fyrestack.com
www.hair-nice.fr
hanryuspa.com
www.haveandhold.app
hollinc.store
www.hontru.com
painel.horizoncontent.com.br
hyperjournal.info
formulir.indonesiana.tv
inouz.fr
www.integraone.ca
kairos-compass.com
kinni.eu www.kinni.eu
www.leaguelife.net
nabokos.lion-and-bear.de
ats.livve.io
m.londonbuspal.co.uk
lovemealapp.com
gethido.marchewczyk.eu
memoboard.org
mandala.metodocharlie.com
www.motolabskenya.com
khurkot.nepaldrivinglicense.site
www.noryan.com.mx
dev.numicircular.com
scd-uat.order.place
www.paulbuchan.com
www.petteriranto.com
app.pixipie.com
www.pluskarla.org
www.primevlsi.in
www.puyogo.app
www.qrcodereader.app
rudiqtech.co.uk
beta.seedtospoon.net
www.sensoryapparel.in
sequencity.xyz
sololo.app
www.sortedbranding.com
ajuda.squidit.com.br
www.stamconference.com
demo.sushilkaran.me
cloud.t-con.co.uk
tapx.me
control.taxivery.mx
www.tedsamaha.com
shop.tedxriga.com
www.toejambacklot.com
tpmap-fragile-dev.tpmap.xyz
trivias.com.mx
fbentrenamiento.turnosweb.app
www.vapecentralsupply.co.uk
vedikfoodscr.com
silicon.velorum.games
ihospital.vilnek.in
johnsoncontrols-ontour.virtual-brand.space
www.vusic.in
www.watoji.jp
www.worksheetworkshop.com
www.wvhospital-settlement.com
trackr.yadobee.com
yog-qa.yds.org
demo.yub.pe
www.zenalytics.org