Open
Cached
·
just now
77/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=stage.spext.co
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
April 22, 2026
Valid Until
July 21, 2026
86 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4E:8A:3F:F3:B7:A8:B5:C3:14:C3:DC:5F:C1:EE:2F:9C:A8:FC:7D:1E:06:DF:B4:AA:75:2C:04:83:D3:69:02:6D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
bot.albansah.com
www.108hill.la
dashboard-sicollection.advocatively.com
karateanna.aimcomely.com
sanbyakugari.airdata.co.jp
airsideconsult.com.br
alpencrest.com
alphavisionuae.com
anasalinas.es
giha.apexhockeysystems.com
appfabric.net.tr
beejai.com
bldkorea.com
bridgefundbd.com
locataire.brivazacetu.fr
civicdesigndevelopment.com
www.cmplmnts.com
definy.app
dewerkvoorbereider.nl
drsombra.com
www.el-resbalon.com
ellis-joyce.com
emoji.chat
www.fajfka.cz
farmaciasettimomiglio.it
focusfirestudio.com
giovannimariaferri.it
covid-19.greagori.com
b-n-h.greenspace.info
www.helena-ruao.com
www.heronbatteries.com
hexcreators.com
3d.holosplash.com
ar.holosplash.com
i-powertech.com
imersao.igrejadatrindade.com
www.itcg.life
www.joemilham.com
jorongo.dev
karatecrush.com
www.kartsyapp.com
www.kaveritaidot.fi
kinematicsclasses.com
www.kovats.biz
ladac.online
lattedigital.com
lilynovaart.com
tracker.little.domains
api.littlehelp.eu
app.londonita.com
lovesrom.com
azure-test.mayamd.ai
molekular.mbitgames.cloud
meganandpage.com
mindfullock.com
mmsimcard.com
www.msmc.jp
quintessentially.my-e-health.com
nemitzam.com
dietnu.nutrilia.es
oldmissiontechnologies.com
www.oldmissiontechnologies.com
appadmin.onedesignsails.com
app.openwings.com.br
paulinaliwanag.com
www.paulshotel.com
pdvpizzaria.com.br
simulatorepac.primaltoinvestimenti.it
quantum-operation.com
rajanequipments.com
auth.redground.org
regmedai.com
remecad.fr
richautoclinic.com
www.richautoclinic.com
prod.condo.ricmasoft.com
riusalo.it
roadtrippark.com
www.rrdroptaxi.in
samtech.solutions
ordename.sanpabloalimentos.cl
sitemax.showitmax.com
eurohunt-app.speakylink.com
stage.spext.co
dentaire.sylo-hygiene.com
tawakalteknik.com
gestion.taxiar.com.ar
excelcom-ote.tgif.com.my
app.tglogistiques.net
thriftella.dev
www.tradeparse.com
tuneskrd.com
trends.tweetyai.com
www.upcanyonapp.com
virtualgardenparkhanahaku2024.jp
www.wearltc.com
webjor.live
auth.woosh.it
www.yumlendar.com
clone.zappychat.com
Other domains in certificate