Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=firebase.ebrdev.co.za
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 14, 2025
Valid Until
March 14, 2026 88 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
52:C6:C6:C8:3E:C7:2E:AE:62:49:9E:2B:F6:4F:0C:84:88:9D:2D:D0:F6:17:F8:27:68:A6:CA:05:55:5F:38:B7
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
bolloconcept.com

Other domains in certificate

1181.pontuax.com.br
jeu-concours.acal-levallois.fr
adamsapartment.cz
admin.hibi.aereal.org
adp.avgidea.io
www.backlight.dev
boost-mod.ru
games.campese.com.br
co-partner.site
hax.co.in
oro-nissan-malaysia-fincal.swiftlet.co.th
www.collinpham.com
app.comunitaenergeticarinnovabile.net
demo.daivson.com
order.digitalrestro.com
moon.dotordinals.io
web.drd.at
easydiavgeia.gr
firebase.ebrdev.co.za
www.engineeringstrong.com
www.esightcompany.com
www.etherfishing.com
eximia-eng.gr
expertmind.com.ar
demo.f4tek.com
fast247courier.com
feder.ar
geotekmed.com
couturepro.glooteck.com
ott.grpconecta.com.br
get.staging.hoam.tech
www.i-am-in.org
ibraheemhamada.jp
admin.inspiredmonster.com
www.ivan.pt
jmbretro.shop
joinfriendlyforce.com
www.jopit.com.ar
feast.kaniksu.org
portal.kydsapp.com
alllabels.labelprodigy.com
www.staging.larozemultiservices.com
www.lidger.com
www.lucchettaia.it
www.lumexis-solutions.com
marketingsolutions.shop
www.medelco.com.pe
pay-invoice.memberwizard.com.au
murdashop.it
my-travel-diary.de
www.nautilusxray.com
www.niceyg.com
www.nirika.com.mx
michelangelo.nomad-technologies.com
www.numerat.de
ohbrowser.website
hml-api.ointegrador.com.br
app.okioapp.com
www.omnixdigital.com.br
ftc.overengineering.hu
www.oxunrowing.com
www.panchosgarage.com
apps.parkquility.com
polamagnetyczne.com
prepagram.com
propeloai.com
horne-pr-qa.psg-labs.com
realestaid.net
www.salavirtual.retransmision.mx
rx-bayes.com
safenestglobal.com
sajiloinvoice.com
scopewithin.com
www.seifeddinenouara.com
staging.senetlab.com
sentryian.com
shahdappartement.com
admin-vendor1.showitbig.com
auth.southpole.com
specificarchitectures.com
sportlytics.com
sprel.io
chat.syneidesislabs.com
flappybird.tanuki3d.com
tomoshibeee.com
toppings.com.co
turantunde.com
www.vamelon.com
vikingluna69.com www.vikingluna69.com
wikishorts.vksl.uk
wealthnestbrokerage.com
wearetheorigin.com
links.well-made.it
winsharedglobal.com
wordlinks.online
ystudiox.com
staging-auth.yta.se
zaca.in