77/100 SECURITY SCORE

Certificate Information

Subject
CN=mastertrain.com.tw
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 05, 2025
Valid Until
March 05, 2026 85 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2C:28:28:21:D9:7E:4C:7C:86:37:E1:2F:9F:3A:13:CF:76:6C:BB:55:9A:6C:B7:D9:D7:3C:77:CC:8D:A3:EB:99
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
boyoung.woodumarry.me

Other domains in certificate

www.acheleiloes.com.br
alesholman.dev
www.angularfire.com
dev.aplano.de
uat3.ab.ayun.ph
biportal.live
www.blueskyucs.eu
calcul-interessement.fr
link.cheapapp.online
cheapcarrentalvancouver.ca
test.chronogram.io
lifestatus.co.in
www.codeffekt.com
codetolive.in
mastertrain.com.tw
admin.crush-words.fr
www.deli.land
www.dgklogistics.nl
swap.diamondhands.technology
q1-myaddressbook.dpd.co.uk
egg-timer.net
www.eleganzahomes.co.uk
covid19.esconsulting.it
app.ethy.co.uk
www.evergreencattery.co.uk
projects.flexhero.de
geitaberget.com
www.glassapp.us
app.glueon.io
www.gorillasports.online
link.greff.co.jp
mymenu.gupshup.io
hareram.dev
join.hellobcs.com
hledasepremier.cz
www.iheartsoftware.com
platform.imarco.nl
goldgrid.insight-htp.com
dashboard.prod.invition.eu
inop.iroot.ro
student-kpl-stage-3.ischoolconnect.com
www.itsaayush.in
www.jimtime.it
josealonso.dev
kardia.dev
www.shop.karmapemadorje.com
khemici.com
komple.io
ankur.kotwal.me
kwadof.store
backoffice.lastationandco.fr
goodbye.liist.com
tunnus.livetaajuus.fi
ludwigsidenmark.com
www.magicseth.com
marigoldvilla.com
marinacodda.com
med.medi-banx.com
mnschoolofhorseshoeing.com
learn-dev.mobilemind.io
www.mrsiefensrobotemporium.com
mystellar.co
namer-brushes.com
auth.nftking.jp
www.novomileniobotucatu.com.br
ohsomyo.com
admin.oncities.org
orto.website
grdc.parkalot.io
comunication.paroledevie-orleans.fr
auth.test.playhenry.net
plutomap.com
buy.popcorp.org
portfolioyanni.website
www.rbasouth.com
hrm-apex.rcloudsoft.app
www.rightsourceyiwu.com
saiit.co.uk
settlesmart.pro
sidelabs.com
smartdojo.club
snoble.ca
auth.sportinghood.com
sriharinicrackers.com
staffing-react-sandbox.staffshift.com
schooladmin.stride.studio
reports.sustcoscore.com
tee-factory.es
www.thalitapassos.com.br
dashboard.thelevelupnutrition.com
www.timemaster.me
de-lart.timp.io
practice.urdulearner.com
app.viddi8.com
www.vzljotasia.uz
auth.whenx.io
whoof.ph
dev.wisbu.net
app.zipmerge.com