Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=shuttle.uvu.kz
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 08, 2025
Valid Until
January 07, 2026 51 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A2:41:4E:DB:F7:D6:11:B0:E2:3D:09:CD:3A:B0:C4:1E:6F:F5:AA:C7:0D:0E:10:28:6B:A8:EC:16:4A:1F:D0:23
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
capestack.com

Other domains in certificate

stag-test.app.1on1navi.com
20questions.de
golmol.aimcomely.com
www.amitnagdev.com
www.atakanyigit.com
benedict-schaschko.info
netzhoppersvolley.deeplinks.bfansports.com
www.bigtreescorvallis.com
api.billingcrow.com
web.bitappcloud.com
www.bountifarm.com
logs.brodythedog.com
capitolnoir.com
analytics.carilionclinic.org
www.cchsoft.com
admin-qa.chowin.co.za
www.clickboom.site
www.simsak.com.ng
www.connyonair.com
feedback.crickingdom.com
cyberdryad.com
disneywaits.com
tools.dungeon-stories.com
flightbox.flugplatzwangen.ch
geeksalon-exsys.tech
getworkouts.io
gmhairstudio.de
greenwalkway.com
dev-marketingdashboard.gupshup.io
www.helloqaya.com
www.hillisbrosfishing.ca
demo.hire10x.ai
hospii.jp
hotpinkneutrinos.ca
judge.hrawards.ie
d.huey.co
www.idesignshop.online
institutosetas.com.br
services-kbs.intechvalue.com
www.justicode.com
www.kappapaint.com
cms.koph.co
kuwaithub.info
v2.lavchat-user-stg.lavenirapps.co
leukprogrammeren.nl
like.lhzhang.com
www.ludo.co.nz
madscent.com
maechu.jp
calendar.maksellent.com
www.mooimakerijanemoon.be
react.mpix.de
pp.mrgutter.app
mybadges.es
www.neorigin.me
app.notabletherapy.com
www.o2xygen.be
ohhardscapebuilders.com
admin.learn.omicslogic.com
pablobariola.com
patrickfboyne.com
myapawar.piticommerce.com
www.planetventura.com
portaservicios.com
posterbuoy.com
project-iguana.com
www.qataroutletexhibition.net
p.qlean.ru
refalign.com
app.relance.io
api.returnplease.com
beta.runwithzeal.com
sakura688.com
santonio-industrial.com
static.sceneopsis.com
sistemaagiliza.com.br
stayfreeapps.com
surveyally.com
techgizmoguide.com
therealtypa.com
demo.thescraperfactory.com
admin.thndr.io
chat.timelesswallet.xyz
tippingjar.net
tonelaje.com
uglypeople.art
www.usurp.tech
www.utsab.in
shuttle.uvu.kz
www.vaquita.me
presentation.vielo.cc
volksleads.com.br
wallet.vvll.be
www.wartaonline.pl
www.we-balaton.com
websitewiseguys.com
www.webthree.biz
member-staging.westsidemarket.com
ricohjapanwd001.wowdesk.jp