Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.pingcaodesign.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 08, 2025
Valid Until
January 06, 2026
56 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C9:B0:FE:08:AB:C8:35:4D:5F:D5:EA:9C:8C:43:EF:39:A9:B8:6B:04:70:BE:64:EE:AA:60:DA:15:DC:83:A9:19
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
brandonban.com
www.180go.com
risenroll.order.3bapps.com
3leaves.dev
www.ahighercallingpnw.com
apeironportal.com
arakis.ltd
it.ayoublamchichi.com
staging-go2.b-guest.com
app.babacofulfillment.com
bettersyncadvisory.com
bhaktient.com
bigoventure.com
www.bootsschulen-bedarf.de
www.brbbq.org
www.buscadorvegano.uy
camping.lv
canoegy.ca
chateroo.app
adapt-staging.closedcaptioncreator.com
app.collagia.ai
ajvision.com.pl
firebase.comidev.com
cuttingsoup.com
dataflow-ai.de
www.dawidfrontend.com
www.daytradejournal.com
diamondbsaudi.com
digitaltxc.com
www.discerningtoday.com
drschnellwehrheim.de
eatluncake.com.au
iwik.edu.vn
www.ehrbar.info
www.escape-envelope.co.uk
etusersgroup.org
fauxmajeure.com
firedup360.com
flossipay.com
www.foodsolutionsth.com
gamerguides101.com
hakolkal.com
www.happylove.studio
hology.de
forward-hp-ultra.horensoplus.com
mbl.idnkhtw.space
avigeya-vasiliy.invito.link
izidcars.com
lbphotos.co.za
studio.lotussoftware.solutions
mascara-admin.m1studio.co
www.matkortet.com
admin.medoc.com.mx
memoryfuturelb.org
www.midiproxy.com
links.dev.myheartspace.com
www.neighborh.app
nununc.com
ocimumcdn.net
house.olimou.com
chat.oranj.dev
oscarpetrov.com
paperandform.com
dormagen.parklab.app
www.pennet.biz
www.pingcaodesign.com
plywoodlab.com
lpny-1107.porcupine.live
devapp.qstore.in
mobile-test.quincus.com
ricambi-epoca.it
geefty.rsquare.fr
www.scordle.app
shmopevote.com
corpus.sogafit.net
ask.stargazeapp.ru
supposetherefore.com
eastergame.synlab.ch
szarokvagytok.com
who.tea.parts
www.tedxhcmussh.com
www.testohack.com
tetherhomeloans.com
open.thecrypto.app
thefashionlucky.com
thenewbridgecoleraine.com
tonysoftware.com
devmanager.treembo.com.mx
uat-app.trustmile.co
www.ubytovanievelkalomnica.sk
www.uftonedef.com
umadiagram.com
expedom.valentin.consulting
www.video-up.app
videsign.it
www.westcs.club
whitesoft.com.au
winqi.dev
www.workon.info
www.yralapp.com
Other domains in certificate