Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=b29music.co.uk
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 27, 2025
Valid Until
March 27, 2026 82 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0A:A3:DB:E8:21:AD:B5:0D:B0:32:3A:A4:A9:91:6E:1B:8A:B1:92:A8:B8:A4:53:AC:EF:DF:C2:F5:8F:F7:39:D3
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
brusketa.app

Other domains in certificate

jelorr.agnasin.com
aidanreececurtis.com
backup.alpha.al
anteskoric.com
www.appfluent.us
core.apuestainternacional.com
link.arredoassistenza.it
askrexbot.com
www.atproduct.design
b29music.co.uk
beanage.beanar.io
roterabenvilsbiburg.bfsp.app
www.bgt-family-fitness.com
www.brock-pro.com
triduum.catholicretreats.net
www.ccs-community.com
claimkey.app
solve.climate-science.com
codekidz.com.my
fable.com.ng
mta-sts.jobnet.com.vn
www.coursewright.com
www.crunchyk.com
www.dabenergy.cl
about.dailybids.ca
www.datasmartio.com
logo.decotechs.com
devdre.com
www.drcreaitivity.com
dryerventmadeeasy.com
cp.eduwingsglobal.com
entityauth.com
www.epihelper.com
www.f45techrego.com
featured-ai.com
web.fibi-app.com
www.fidooo.com
plantevern.fieldmind.ai
finditly.com
fireteam.report
auth.fishverify.com
mapfregr.frontbox.cloud
www.fwdfinancial.io
gazoole.com
www.generationsteamplanner.com
link.getbookclub.com
www.globalambitionsvc.com
goaugiecamps.com
legacy.habitify.me
haphap.app
gymapp.hashable.tech
stilaus.hero24.com
itlekt.com
kehillahfarms.com
fsummit-invitation.kerzz.com
daria.keynexis.com
www.kiaservisankara.com
kilosaurus.com
www.kpocam.com
lfed-test.logexa.com
app.logonsafe.com
pizzariabighouse.lupi.delivery
dashboard.macaron.vn
www.madamangatours.com
mischty.com
game-flappy-work.mondayclub.io
www.movinghuman.in
miplaneacion.mymoons.cl
www.myungsoo.com
mywhanau.app
naecouriers.com
nartlab.it
www.nitaysheffer.com
app.notah.io
matchcognitivo.oceangull.com.br
www.offscore.band
planked.app
support.probuild.app
sapphire.propelledbrands.com
patient-access.purview.net
www.reflex-bikers.club
www.rememberies.app
salavirtual.retransmision.mx
vespucio.rflex.io
ricardo-flores.com
link.round.tech
www.sl.rr-by2.de
sanna.band
beta.sharptools.io
www.smaranza.me
quest.smartms.net
app.societylocal.co.uk
book.swiftdoc.io
link-dev.trytrue.com
uat.tukuls.com
funcionalfit.turnosweb.app gonnetbox.turnosweb.app
tzgirls.app
hazel-cms-qa.whitecloak.com