Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=dado-pilates.timp.io
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 24, 2026
Valid Until
April 24, 2026
73 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
84:C6:7A:A4:AB:BF:9C:6F:26:B4:BC:55:C0:BA:C2:2D:A8:AF:BC:9B:99:88:D5:42:0C:6D:C3:C7:56:51:E6:C4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
catpat.fr
domos.4bytes.in
adaept.com
ryanshed.adzin.site
aghabogados.es
www.agrobarnsley.com
link.alifbee.com
altamarcm.com
www.andamp.com
artisanprinting.co
autoroot.ca
www.avogato.co
aykhan-elizaveta-wedding.ru
baileyhulsey.com
investors.bioceresgroup.com
bmepcgroups.com
bramtrabaho.com
v5.broxel.com
www.bybroenbolig.no
length-converter.at.calculatorhub.app
matrix.cerbero.dev
chillerfreezerrepair.com
staging.aryadesigns.co.in
tv.coibong30.app
collegesportsadvocate.com
rastrear-guias-test.coordinadora.com
www.crudetech.se
cuis.app
cvchamp.com
dahling.no
define.ag
easycurb.app
www.ektaengineers.in
estudioenjambre.com
staging.onyx.fastsigns.com
fembelling.com.au
www.flightlinevr.com
app.floment.ai
www.fmahub.com
www.francisgallardo.com
frontendnorth.com
getvoxie.com
us-link.gipl.io
gpprincipe.com
resources.gymnasticssa.co.za
hacibababesi.com
app.hotelconciergeapp.com
hudsonrha.com
www.hudsonrha.com
share.iconnections.io
www.ictechnology.nl
nconceptclasses.indiandevelopers.org
insightcheck.app
internet-of-unthings.com
www.jgsolutions.ca
keeb.info
labs.keycloak.academy
knowtion.ca
www.leivaycia.com
lianncreative.com
www.linfieldinternational.com
listingview.video
littleplanet.studio
maby.app
majtbee.se
meetupmonkey.com
www.muwarehouse.com
staging.myairpay.io
nationalrock.co.za
app.navitabi.co.jp
food-app.neuon.ai
notes.run
novaio.academy
astro.orbyd.app
kelseyanddan.pasmans.ca
paymate.live
app.pickie.me
www.pl4za.com
www.polipay.io
www.primepubservice.in
link.procsin.com
www.prodentalperu.com
reachsummit.app
www.rearwing.jp
robosparks.in
console.skillrhino.com
dyn.splitsies.net
stickercon.in
surendrareddy.com
game.sushilapublicschool.com
www.thecryptomasters.com
thehoods.app
theidiot.ru
thrifteddrip.in
dado-pilates.timp.io
admin.tisanz.com
demo.velocitytalent.com
wekeep.app
go.wing.co
tenant.woonig.app
Other domains in certificate