Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=giuly.gabrielerossi.dev
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 26, 2025
Valid Until
January 24, 2026
56 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1A:5F:85:01:4C:CF:BD:4C:FF:88:95:C2:49:22:FE:67:75:C6:FD:E0:D8:F2:94:FF:49:83:D9:EB:BA:1E:A6:AC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
buetalumni.club
www.akbon.dev
nagapattinam.akdroptaxi.com
perambalur.akdroptaxi.com
demo.algoritmi.org
admin.fares.anyware.software
innovation-day.arian.ee
beeper.bcare.baby
beautifycard.com
burmsverzekeringen.be
catolicopractico.com
link-dev.chaizer.com
classifieds.visiongroup.co.ug
www.linkinterior.com.tw
staging.designmat.ch
detonidigital.com
cust-l.dev-ltl-xpo.com
www.djlabs.cc
social.dsfootball.io
eden4.tech
edveloper.dev
admin.staging.exchange.art
link.findify.app
piattaforma.formatoriitaliani.com
giuly.gabrielerossi.dev
getprivy.io
www.hansgurbig.de
harithwickramasinghe.com
www.heatingarash.com
himadriagri.com
hopo.cl
bryngwyn.horseriding.app
immediatestart.app
itamericano.com
jardovamapa.cz
share.jobbabu.co
kemalturk.com
khemarawestman.se
www.lacasetera.com.mx
www.learningstudioai.com
liftascend.com
public.simplemath.linkpc.net
crossroads.lioncross.dev
app-dev.logibud.com
thegradhat.metis.club
mistadikay.com
nedcargo-wdxv.motivate.nl
onebubble.ai
mgt.oz-tms.com
works.pato.today
www.pauloregina.com
www.perle.me
blog.photogrid.app
pinestrat.com
admin.piticommerce.com
predict-r.com
prettybirdwedding.com
staging.promoguadeloupe.com
stagingftcchatengine.proxtera.app
quickpass.app
no.radioplayer.app
rentease.com
riderwala.com
rifatv-demo.com
rpg-offers.com
rustinedave.com
www.santythibaut.be
schronk.com
stolen.scj.io
hacken.scouthub.app
seerium.com
shoptokapp.com
sinos.dev
app.slimmeboodschappen.nl
southeastenergybrokers.ie
insights-lab.spaceknow.com
www.stockgenie.co
supremeximp.com
www.susanvanderpool.com
crazyvan.mg.synkgames.com
themoles.synopsystems.com
talenthy.com
app.tantetoe.com
my.teamtap.app
appclips.tekhcorp.com
teluguloislamahamed.com
www.tgfi.com.br
themovielog.com
thevibeaura.com
tm-vu.com
emailfooter.trudoc.com.br
twowheelstowork.com
cdie.uanl.mx
www.vollit.ca
tsuburaya.app2.wakuas.com
www.waxedbymolly.co.uk
whoami-game.com
www.wolfardsolutions.nl
writingactinglove.com
demo.zaitark.com
Other domains in certificate