77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.groovegym.app
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 06, 2025
Valid Until
February 04, 2026 82 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BE:C3:A1:E1:F8:12:DC:1B:A5:F7:F8:AA:6F:8A:55:AD:D8:F2:F4:26:34:9E:32:9E:9A:0A:B6:97:43:03:86:7B
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
cabinet.dah-dev.top

Other domains in certificate

11520682.peerly.app
www.606academy.com
workhub-admin.acuizen.com
vogue-dev.adssets.com
ajnuman.com
artifexprint.com
asherwisco.com
autov.be
axisinfinite.com
bequali.com.br
bumbaki.com
clap.biz
neya.tams.com.ng
cortexwaves.cl
fos-i.dev-ltl-xpo.com
dev.dev-team.club
dials.cloud
www.didyoudonexx.com
www.donpat.ch
admin.ecopcion.com
www.feminist.dev
fimatica.com
www.floriangrasser.com
3457-k4.gamefp.dev
getconello.com
goldener-morgen.de
etank.goldeneyeplatform.com
www.groovegym.app
www.hakkiharmankaya.com
hellopuregold.com
hl.fund
help.htmlside.com
hoshiyomi.id.vn
careertracker.indiandevelopers.org
informaticaactual.es
inkline.jp
isnix.gay
www.jaimeosvaldo.com
www.jeremiahlynn.dev
www.jp-machine.com
juicyballs.club
kapthat.com
www.kinxlist.app
kr3.in
www.laurasiddallcreative.co.uk
www.lavoznicaragua.com
comms.linktgo.com
walls.little.cloud
tracking.luminix.cloud
app.makewonder.com
mallikahome.org
mister-tee.eu
portofolio.rainaldi.my.id
app.myeximbusiness.com
napmester.app
www.neylaconstruction.com
www.nftyoself.com
qr.me.nu.it
entrevistadesligamento.numerapeopleanalytics.com.br
www.oblizujeme.cz
omniflyer.com
primefitnessacademia.com
blogroom.programfinder.in
project-fortytwo.com
api.prontoo.com.br
auth.google.playnet.psi.br
ralsei.net
auth.raya-rideasyouare.com
realcreativetech.com
regalisto.es
reparadordomestico.com.br
prayas.sahikadam.org
sahyadritoursandtravels.com
wp.secureaccess.com.br
www.slasher.cc
solholt.dk
sonetransport888.com
www.spdpuncut.com
srrp.in
logistic.stradevn.com
subgraph.dev
tag-along.co
bridge.ternality.xyz
app.thecoin.io
www.tipsymobilebars.com
transpose.video
v2.tufirma.digital
unisoft.events
urii.com.co
vancouverartcompass.ca
connect.vivechurch.org
vocablly.com
www.vtgsoftware.com
wardspy.com
agent.wink.codes
www.withfaleh.com
www.zealluxe.com
u.zir.li
zkblock.app